diff --git a/VERSION_2/README.md b/VERSION_2/README.md index b682e4b..d1362a8 100644 --- a/VERSION_2/README.md +++ b/VERSION_2/README.md @@ -3,8 +3,8 @@ Nginx Bad Bot Blocker ===================== _______________ -#### Version: V2.2017.08.24 -#### Bad Referrer Count: 5622 +#### Version: V2.2017.08.26 +#### Bad Referrer Count: 5641 #### Bad Bot Count: 504 ____________________ diff --git a/VERSION_2/_pull_requests/bad-referrers.list b/VERSION_2/_pull_requests/bad-referrers.list index 3579493..0c2f721 100644 --- a/VERSION_2/_pull_requests/bad-referrers.list +++ b/VERSION_2/_pull_requests/bad-referrers.list @@ -270,6 +270,7 @@ airmaxshoes-2016.com akama.com akita.kz aktivator-windows10.blogspot.com +aktobe.xkaz.org akuhni.by akusherok.ru akvamaster.dp.ua @@ -516,6 +517,7 @@ autoblogger24.info autobrennero.it autobudpostach.club autochoixspinelli.com +autodo.info autogrep.ru autoloans.com autolombard-krasnodar.ru @@ -573,6 +575,7 @@ azbukafree.com azlex.uz azte.ch b-styles.xyz +b00kmarks.com b2b-lounge.com babespcs.com babieca.com @@ -1221,6 +1224,7 @@ cookielawblog.wordpress.com cookingmeat.ru cool-wedding.net coolbar.pro +coolgamechannel.com coolgramgoods.com coolingoods.com coolwallpapers-hd.com @@ -1599,6 +1603,7 @@ eloxal.ru elstal.com.pl elvel.com.ua elvenar.com +elvenmachine.com emailaccountlogin.co embedle.com emediate.eu @@ -1739,6 +1744,7 @@ factorynightclub.com failingmarriege.blogspot.com fakehandbags.xyz falcoware.com +falllow.gq familienzahnaerzte.com family1st.ca familyholiday.ml @@ -1759,6 +1765,7 @@ fashionindeed.ml fast-wordpress-start.com fastcrawl.com fastfixing.tech +fatfasts-4tmz.com fatmaelgarny.com favorcosmetics.com favoritemoney.ru @@ -1801,6 +1808,7 @@ filerockstar298.weebly.com filesmonster.porn filesvine.com filkhbr.com +fillmewithhappiness.com film-one.ru filmbokep69.com filmetricsasia.com @@ -1994,6 +2002,7 @@ gamewrath.com gaming-journal.com gamingspark.com gardene.ru +gate5.co.za gay-file.com gay.adultgalls.com gaygalls.net @@ -2243,6 +2252,7 @@ hermesreplica.win herokuapp.com hesteel.pl hetmanship.xyz +hexpilot.com heygidday.biz hidefiles.org hidemyass.com @@ -2357,6 +2367,7 @@ i-service.kz i4track.net iamsport.org ibb.com.ua +iboss.com icaseclub.ru iccornacircri.cf ico.re @@ -2467,6 +2478,7 @@ io9.com iomoio.net iopeninghours.co.uk ip-guide.com +iphantom.com iplogger.org iplusbit.blogspot.co.za ipostroika.ru @@ -2479,6 +2491,7 @@ iqs.biz.ua iqupdatetmz.win iradiology.ru irkutsk.online-podarki.com +irkutsk.zrus.org irunfar.com iscblog.info isistaylorporn.info @@ -2565,6 +2578,7 @@ jrpmakati.com juliadiets.com juliaworld.net jumptap.com +junglenet-a.akamaihd.net jus0wil.pp.ua justbcause.com justdating.online @@ -2586,6 +2600,7 @@ kamorel.com kanimage.com karachev-city.ru karadene.com +karaganda.xkaz.org kareliatobacco.ru karpun-iris.ru karting196.ru @@ -2892,6 +2907,7 @@ luxup.ru lyngdalhudterapi.no lyrster.com m-google.xyz +m.b00kmarks.com m0r0zk0-krava.ru m1media.net m3gadownload.pl @@ -3097,6 +3113,7 @@ mmostrike.ru mmstat.com mncrftpcs.com mnogabukaff.net +mnogolok.info mobifunapp.weebly.com mobilemedia.md mobilierland.com @@ -3399,6 +3416,7 @@ odesproperty.com odoratus.net odywpjtw.bloger.index.hr offer.camp +offer.wpsecurity.website offergroup.info offers.bycontext.com offf.info @@ -3548,11 +3566,13 @@ partners-ship.pro partnersafe.men partnerworkroom.men partybunny.ru +pastaleads.com pateaswing.com pathwhelp.org patol01.pw patterntrader-en.com pattersonsweb.com +pavlodar.xkaz.org pay2me.pl paydayloanslocal.com paydayonlinecom.com @@ -3906,6 +3926,7 @@ randalljhoward.com randki-sex.com rank-checker.online rankexperience.com +rankia.com ranking2017.ga rankingchart.de rankings-analytics.com @@ -4026,6 +4047,7 @@ rn-to-bsn.com robot-forex.biz rockingclicks.com rockma.se +rockprogblog.com rogervivierforsale.com roleforum.ru roll123.com @@ -4326,6 +4348,7 @@ shopvilleroyboch.com.ua shopwme.ru shtaketniki.ru shtora66.ru +shymkent.xkaz.org si-unique.com sibdevice.ru sibecoprom.ru @@ -4492,6 +4515,7 @@ spammen.de spamnuker.com spasswelt.net spasswelt.xyz +spb-plitka.ru spb.afora.ru spb.ru spbchampionat.ru @@ -4556,6 +4580,7 @@ stoki.ru stop-gepatit.te.ua store-rx.com storehouse.ua +stpicks.com stpolice.com strag-invest.ru strana-krasoty.ru @@ -4576,6 +4601,7 @@ stroiminsk.org stromerrealty.com strongholdsb.ru strongsignal-a.akamaihd.net +stroy-portal22.ru stroydetali.ru stroyhelp-dv.ru stroymonolit.su @@ -4632,6 +4658,7 @@ swinon.site swiped.su swsociety.se sygraem.com +symbaloo.com symphonyintegratedhealthcare.com syvertsen-da.no szamponrevita.pl @@ -4643,6 +4670,7 @@ taboola.com tacbelarus.ru tagil.zrus.org taihouse.ru +takeflyte.com takeprofitsystem.com takethatad.com tako3.com @@ -4652,6 +4680,7 @@ tandvardshuset.net tanieaukcje.com.pl taqywu51.soup.io tarad.com +taraz.xkaz.org tasteidea.com tastyfoodideas.com tattomedia.com @@ -4690,6 +4719,7 @@ teslathemes.com tetracsaudi.com texbaza.by textads.men +tfxiq.com thaisamkok.com the-torrent-tracker.blogspot.com the-trader.net @@ -4899,6 +4929,7 @@ trkur.com trubywriting.com truck-addzilla.life truck-land.life +truck-rece.life trucri.me trudogolik.net truemfilelj.gq @@ -4926,6 +4957,7 @@ tupper-posuda.ru tupper-shop.ru turbabitload.weebly.com turbo-suslik.org +turbodsp.com turist-strani.ru turizm.bz turkeyreport.tk @@ -5322,6 +5354,7 @@ wonderfulflowers.biz woodyguthrie.se word-vorlagen.net word-vorlagen.xyz +wordkeyhelper.com wordpress-crew.net wordpresscore.com works.if.ua @@ -5337,6 +5370,7 @@ wormix-cheats.ru wosik-dach.service-for-web.de wowas31.ucoz.ru woweb.com.ua +wpsecurity.website wpthemedetector.co.uk writersgroup580.web.fc2.com writingservices17.blogspot.ru @@ -5496,6 +5530,7 @@ yoopsie.com yopoint.in yorkshire.com yorkshireccc.com +yoshkarola.zrus.org yottos.com you-shall-not-pass.is74.ru youandcredit.ru diff --git a/VERSION_2/_pull_requests/bad-user-agents.list b/VERSION_2/_pull_requests/bad-user-agents.list index aa602fa..5a009ad 100755 --- a/VERSION_2/_pull_requests/bad-user-agents.list +++ b/VERSION_2/_pull_requests/bad-user-agents.list @@ -137,6 +137,8 @@ GetRight GetWeb Gigablast Gigabot +G-i-g-a-b-o-t +G\-i\-g\-a\-b\-o\-t Go-Ahead-Got-It Gotit GoZilla diff --git a/VERSION_2/conf.d/blacklist.conf b/VERSION_2/conf.d/blacklist.conf index 6365557..2a28bfc 100644 --- a/VERSION_2/conf.d/blacklist.conf +++ b/VERSION_2/conf.d/blacklist.conf @@ -2,15 +2,32 @@ ### NGINX BAD BOT BLOCKER ### ********************* +### Copyright MMitchell Krog +### https://github.com/mitchellkrogza + ### VERSION INFORMATION # ################################################### -### Version: V2.2017.08.24 -### Updated: Thu Aug 24 16:23:36 SAST 2017 -### Bad Referrer Count: 5622 +### Version: V2.2017.08.26 +### Updated: Sat Aug 26 12:58:20 SAST 2017 +### Bad Referrer Count: 5641 ### Bad Bot Count: 504 ################################################### ### VERSION INFORMATION ## + +############################################################################## +# _ __ _ # +# / |/ /__ _(_)__ __ __ # +# / / _ `/ / _ \\ \ / # +# /_/|_/\_, /_/_//_/_\_\ # +# __/___/ __ ___ __ ___ __ __ # +# / _ )___ ____/ / / _ )___ / /_ / _ )/ /__ ____/ /_____ ____ # +# / _ / _ `/ _ / / _ / _ \/ __/ / _ / / _ \/ __/ '_/ -_) __/ # +# /____/\_,_/\_,_/ /____/\___/\__/ /____/_/\___/\__/_/\_\\__/_/ # +# # +############################################################################## + + ### Project URL: https://github.com/mariusv/nginx-badbot-blocker ### This file implements a checklist / blacklist for good user agents, bad user agents and @@ -20,7 +37,6 @@ ### Version 1 Created By: https://github.com/mariusv/ ### Version 2 Created By: https://github.com/mitchellkrogza/ -### Copyright MariusV and Mitchell Krog ### Version 2 has been rewritten from the ground up by mitchellkrogza who first started off using ### the original Nginx Bot Blocker created by MariusV. Due to formatting issues, complicated and uneccessary @@ -60,11 +76,23 @@ ### If that is the case then you can ignore the above include statement as Nginx will ### load anything in the conf.d folder and make it available to all sites. -### All you then need to do is use the include statements below in the server {} block of a vhost file for it to take effect. +################################################################### +# # +# _____ ____ __ _ # +# / ___/__ ___ / _(_)__ ___ _________ _/ /_(_)__ ___ # +# / /__/ _ \/ _ \/ _/ / _ `/ // / __/ _ `/ __/ / _ \/ _ \ # +# \___/\___/_//_/_//_/\_, /\_,_/_/ \_,_/\__/_/\___/_//_/ # +# /___/ # +# # +################################################################### + +### All you then need to do is use the include statements below in the server {} block +### of a vhost file for it to take effect. + # server { # #Config stuff here -# include /etc/nginx/bots.d/blockbots.conf -# include /etc/nginx/bots.d/ddos.conf +# include /etc/nginx/bots.d/blockbots.conf; +# include /etc/nginx/bots.d/ddos.conf; # #Other config stuff here # } @@ -348,6 +376,8 @@ map $http_user_agent $bad_bot { "~*\bGetWeb\b" 3; "~*\bGigablast\b" 3; "~*\bGigabot\b" 3; + "~*\bG-i-g-a-b-o-t\b" 3; + "~*\bG\-i\-g\-a\-b\-o\-t\b" 3; "~*\bGo-Ahead-Got-It\b" 3; "~*\bGotit\b" 3; "~*\bGoZilla\b" 3; @@ -1097,6 +1127,7 @@ map $http_referer $bad_referer { "~*akama\.com" 1; "~*akita\.kz" 1; "~*aktivator\-windows10\.blogspot\.com" 1; + "~*aktobe\.xkaz\.org" 1; "~*akuhni\.by" 1; "~*akusherok\.ru" 1; "~*akvamaster\.dp\.ua" 1; @@ -1341,6 +1372,7 @@ map $http_referer $bad_referer { "~*autobrennero\.it" 1; "~*autobudpostach\.club" 1; "~*autochoixspinelli\.com" 1; + "~*autodo\.info" 1; "~*autogrep\.ru" 1; "~*autoloans\.com" 1; "~*autolombard\-krasnodar\.ru" 1; @@ -1400,6 +1432,7 @@ map $http_referer $bad_referer { "~*azbuka\-mo\.ru" 1; "~*azlex\.uz" 1; "~*azte\.ch" 1; + "~*b00kmarks\.com" 1; "~*b2b\-lounge\.com" 1; "~*babespcs\.com" 1; "~*babieca\.com" 1; @@ -2048,6 +2081,7 @@ map $http_referer $bad_referer { "~*cookie\-law\-enforcement\-hh\.xyz" 1; "~*cookingmeat\.ru" 1; "~*coolbar\.pro" 1; + "~*coolgamechannel\.com" 1; "~*coolgramgoods\.com" 1; "~*coolingoods\.com" 1; "~*coolwallpapers\-hd\.com" 1; @@ -2426,6 +2460,7 @@ map $http_referer $bad_referer { "~*elstal\.com\.pl" 1; "~*elvel\.com\.ua" 1; "~*elvenar\.com" 1; + "~*elvenmachine\.com" 1; "~*emailaccountlogin\.co" 1; "~*embedle\.com" 1; "~*emediate\.eu" 1; @@ -2565,6 +2600,7 @@ map $http_referer $bad_referer { "~*failingmarriege\.blogspot\.com" 1; "~*fakehandbags\.xyz" 1; "~*falcoware\.com" 1; + "~*falllow\.gq" 1; "~*familienzahnaerzte\.com" 1; "~*family1st\.ca" 1; "~*familyholiday\.ml" 1; @@ -2585,6 +2621,7 @@ map $http_referer $bad_referer { "~*fastcrawl\.com" 1; "~*fastfixing\.tech" 1; "~*fast\-wordpress\-start\.com" 1; + "~*fatfasts\-4tmz\.com" 1; "~*fatmaelgarny\.com" 1; "~*favorcosmetics\.com" 1; "~*favoritemoney\.ru" 1; @@ -2626,6 +2663,7 @@ map $http_referer $bad_referer { "~*filesmonster\.porn" 1; "~*filesvine\.com" 1; "~*filkhbr\.com" 1; + "~*fillmewithhappiness\.com" 1; "~*filmbokep69\.com" 1; "~*filmetricsasia\.com" 1; "~*filmfanatic\.com" 1; @@ -2821,6 +2859,7 @@ map $http_referer $bad_referer { "~*gaming\-journal\.com" 1; "~*gamingspark\.com" 1; "~*gardene\.ru" 1; + "~*gate5\.co\.za" 1; "~*gay\.adultgalls\.com" 1; "~*gay\-file\.com" 1; "~*gaygalls\.net" 1; @@ -3071,6 +3110,7 @@ map $http_referer $bad_referer { "~*herokuapp\.com" 1; "~*hesteel\.pl" 1; "~*hetmanship\.xyz" 1; + "~*hexpilot\.com" 1; "~*heygidday\.biz" 1; "~*hidefiles\.org" 1; "~*hidemyass\.com" 1; @@ -3182,6 +3222,7 @@ map $http_referer $bad_referer { "~*i4track\.net" 1; "~*iamsport\.org" 1; "~*ibb\.com\.ua" 1; + "~*iboss\.com" 1; "~*icaseclub\.ru" 1; "~*iccornacircri\.cf" 1; "~*ico\.re" 1; @@ -3294,6 +3335,7 @@ map $http_referer $bad_referer { "~*iomoio\.net" 1; "~*iopeninghours\.co\.uk" 1; "~*ip\-guide\.com" 1; + "~*iphantom\.com" 1; "~*iplogger\.org" 1; "~*iplusbit\.blogspot\.co\.za" 1; "~*ipostroika\.ru" 1; @@ -3306,6 +3348,7 @@ map $http_referer $bad_referer { "~*iqupdatetmz\.win" 1; "~*iradiology\.ru" 1; "~*irkutsk\.online\-podarki\.com" 1; + "~*irkutsk\.zrus\.org" 1; "~*irunfar\.com" 1; "~*iscblog\.info" 1; "~*i\-service\.kz" 1; @@ -3393,6 +3436,7 @@ map $http_referer $bad_referer { "~*juliadiets\.com" 1; "~*juliaworld\.net" 1; "~*jumptap\.com" 1; + "~*junglenet\-a\.akamaihd\.net" 1; "~*jus0wil\.pp\.ua" 1; "~*justbcause\.com" 1; "~*justdating\.online" 1; @@ -3414,6 +3458,7 @@ map $http_referer $bad_referer { "~*kanimage\.com" 1; "~*karachev\-city\.ru" 1; "~*karadene\.com" 1; + "~*karaganda\.xkaz\.org" 1; "~*kareliatobacco\.ru" 1; "~*karpun\-iris\.ru" 1; "~*karting196\.ru" 1; @@ -3802,6 +3847,7 @@ map $http_referer $bad_referer { "~*maxthon\.com" 1; "~*maxxtor\.eu" 1; "~*mazda\-roadsters\.com" 1; + "~*m\.b00kmarks\.com" 1; "~*mb140\.ru" 1; "~*mbiologi\.ru" 1; "~*mcadamssupplyco\.com" 1; @@ -3925,6 +3971,7 @@ map $http_referer $bad_referer { "~*mmstat\.com" 1; "~*mncrftpcs\.com" 1; "~*mnogabukaff\.net" 1; + "~*mnogolok\.info" 1; "~*mobifunapp\.weebly\.com" 1; "~*mobilemedia\.md" 1; "~*mobilierland\.com" 1; @@ -4223,6 +4270,7 @@ map $http_referer $bad_referer { "~*offer\.camp" 1; "~*offergroup\.info" 1; "~*offers\.bycontext\.com" 1; + "~*offer\.wpsecurity\.website" 1; "~*offf\.info" 1; "~*office\-windows\.ru" 1; "~*offside2\.5v\.pl" 1; @@ -4375,11 +4423,13 @@ map $http_referer $bad_referer { "~*partner\-trustworthy\.men" 1; "~*partnerworkroom\.men" 1; "~*partybunny\.ru" 1; + "~*pastaleads\.com" 1; "~*pateaswing\.com" 1; "~*pathwhelp\.org" 1; "~*patol01\.pw" 1; "~*patterntrader\-en\.com" 1; "~*pattersonsweb\.com" 1; + "~*pavlodar\.xkaz\.org" 1; "~*pay2me\.pl" 1; "~*paydayloanslocal\.com" 1; "~*paydayonlinecom\.com" 1; @@ -4732,6 +4782,7 @@ map $http_referer $bad_referer { "~*randki\-sex\.com" 1; "~*rank\-checker\.online" 1; "~*rankexperience\.com" 1; + "~*rankia\.com" 1; "~*ranking2017\.ga" 1; "~*rankingchart\.de" 1; "~*rankings\-analytics\.com" 1; @@ -4854,6 +4905,7 @@ map $http_referer $bad_referer { "~*robot\-forex\.biz" 1; "~*rockingclicks\.com" 1; "~*rockma\.se" 1; + "~*rockprogblog\.com" 1; "~*rogervivierforsale\.com" 1; "~*roleforum\.ru" 1; "~*roll123\.com" 1; @@ -5152,6 +5204,7 @@ map $http_referer $bad_referer { "~*shop\.xz618\.com" 1; "~*shtaketniki\.ru" 1; "~*shtora66\.ru" 1; + "~*shymkent\.xkaz\.org" 1; "~*sibdevice\.ru" 1; "~*sibecoprom\.ru" 1; "~*sibtest\.ru" 1; @@ -5322,6 +5375,7 @@ map $http_referer $bad_referer { "~*spasswelt\.xyz" 1; "~*spb\.afora\.ru" 1; "~*spbchampionat\.ru" 1; + "~*spb\-plitka\.ru" 1; "~*spb\.ru" 1; "~*special\-porn\.com" 1; "~*speedup\-my\.site" 1; @@ -5384,6 +5438,7 @@ map $http_referer $bad_referer { "~*stop\-gepatit\.te\.ua" 1; "~*storehouse\.ua" 1; "~*store\-rx\.com" 1; + "~*stpicks\.com" 1; "~*stpolice\.com" 1; "~*strag\-invest\.ru" 1; "~*strana\-krasoty\.ru" 1; @@ -5408,6 +5463,7 @@ map $http_referer $bad_referer { "~*stroyhelp\-dv\.ru" 1; "~*stroymonolit\.su" 1; "~*stroyplus\.ru" 1; + "~*stroy\-portal22\.ru" 1; "~*strv\.se" 1; "~*studiofaca\.com" 1; "~*stuff\-about\-money\.com" 1; @@ -5460,6 +5516,7 @@ map $http_referer $bad_referer { "~*swiped\.su" 1; "~*swsociety\.se" 1; "~*sygraem\.com" 1; + "~*symbaloo\.com" 1; "~*symphonyintegratedhealthcare\.com" 1; "~*syvertsen\-da\.no" 1; "~*szamponrevita\.pl" 1; @@ -5470,6 +5527,7 @@ map $http_referer $bad_referer { "~*tacbelarus\.ru" 1; "~*tagil\.zrus\.org" 1; "~*taihouse\.ru" 1; + "~*takeflyte\.com" 1; "~*takeprofitsystem\.com" 1; "~*takethatad\.com" 1; "~*tako3\.com" 1; @@ -5479,6 +5537,7 @@ map $http_referer $bad_referer { "~*tanieaukcje\.com\.pl" 1; "~*taqywu51\.soup\.io" 1; "~*tarad\.com" 1; + "~*taraz\.xkaz\.org" 1; "~*tasteidea\.com" 1; "~*tastyfoodideas\.com" 1; "~*tattomedia\.com" 1; @@ -5518,6 +5577,7 @@ map $http_referer $bad_referer { "~*tetracsaudi\.com" 1; "~*texbaza\.by" 1; "~*textads\.men" 1; + "~*tfxiq\.com" 1; "~*thaisamkok\.com" 1; "~*thebestweightlosspills\.ovh" 1; "~*thebluenoodle\.com" 1; @@ -5727,6 +5787,7 @@ map $http_referer $bad_referer { "~*trubywriting\.com" 1; "~*truck\-addzilla\.life" 1; "~*truck\-land\.life" 1; + "~*truck\-rece\.life" 1; "~*trucri\.me" 1; "~*trudogolik\.net" 1; "~*truemfilelj\.gq" 1; @@ -5753,6 +5814,7 @@ map $http_referer $bad_referer { "~*tupper\-posuda\.ru" 1; "~*tupper\-shop\.ru" 1; "~*turbabitload\.weebly\.com" 1; + "~*turbodsp\.com" 1; "~*turbo\-suslik\.org" 1; "~*turist\-strani\.ru" 1; "~*turizm\.bz" 1; @@ -6148,6 +6210,7 @@ map $http_referer $bad_referer { "~*womensterritory\.ru" 1; "~*wonderfulflowers\.biz" 1; "~*woodyguthrie\.se" 1; + "~*wordkeyhelper\.com" 1; "~*wordpresscore\.com" 1; "~*wordpress\-crew\.net" 1; "~*word\-vorlagen\.net" 1; @@ -6165,6 +6228,7 @@ map $http_referer $bad_referer { "~*wosik\-dach\.service\-for\-web\.de" 1; "~*wowas31\.ucoz\.ru" 1; "~*woweb\.com\.ua" 1; + "~*wpsecurity\.website" 1; "~*wpthemedetector\.co\.uk" 1; "~*writersgroup580\.web\.fc2\.com" 1; "~*writingservices17\.blogspot\.ru" 1; @@ -6324,6 +6388,7 @@ map $http_referer $bad_referer { "~*yopoint\.in" 1; "~*yorkshireccc\.com" 1; "~*yorkshire\.com" 1; + "~*yoshkarola\.zrus\.org" 1; "~*yottos\.com" 1; "~*youandcredit\.ru" 1; "~*youbloodyripper\.com" 1;