Tag Archives: Sophos Central

Sophos Services FQDN and IP Address List

This list includes some of the FQDNs and IP Addresses used by Sophos Services, this may be useful for identifying outgoing traffic and creating web filtering exceptions.

*.cloudfront.net
*.ctr.sophos.com
*.hydra.sophos.com
*.sophos.com
*.sophosupd.com
*.sophosupd.net
*.sophosxl.net
108.128.21.191
108.128.75.57
176.34.202.39
18.200.140.39
18.200.233.166
18.200.76.187
18.201.4.220
23.56.184.93
3.248.161.254
3.248.236.19
3.248.239.225
34.240.132.250
34.240.132.63
34.240.70.198
34.240.87.136
34.241.47.153
34.242.175.229
34.242.189.0
34.242.190.168
34.243.109.72
34.243.155.26
34.243.46.159
34.246.1.161
34.246.93.20
34.247.133.51
34.247.19.150
34.248.0.181
34.249.116.122
34.249.16.38
34.249.213.108
34.249.56.234
34.249.75.71
34.250.177.130
34.250.201.204
34.250.232.147
34.251.0.214
34.251.206.176
34.252.99.77
34.253.34.19
34.254.24.5
4.sophosxl.net
46.137.119.69
46.51.205.49
52.16.156.95
52.16.224.248
52.18.132.38
52.18.142.239
52.18.201.121
52.19.111.54
52.19.130.35
52.19.133.193
52.208.138.248
52.208.151.187
52.208.47.80
52.208.61.137
52.209.113.230
52.209.174.16
52.209.74.179
52.211.118.19
52.211.181.255
52.211.215.132
52.211.33.11
52.211.40.77
52.212.179.152
52.212.19.181
52.212.243.39
52.212.80.79
52.213.185.15
52.213.222.108
52.213.224.21
52.213.227.181
52.213.81.142
52.214.122.237
52.214.193.2
52.215.191.67
52.31.157.236
52.48.158.77
52.48.251.68
52.49.52.52
52.49.55.251
52.51.136.43
52.51.19.238
54.154.78.113
54.155.110.171
54.155.150.168
54.155.54.127
54.171.179.249
54.171.2.113
54.171.211.242
54.171.39.210
54.171.82.87
54.194.136.103
54.194.149.107
54.194.158.193
54.194.23.13
54.194.31.233
54.216.250.187
54.220.121.131
54.228.154.173
54.229.182.239
54.229.193.103
54.229.26.205
54.229.29.253
54.246.206.153
54.246.225.42
54.73.159.85
54.73.59.214
54.75.131.11
54.76.53.13
54.77.101.166
54.77.103.108
54.77.109.237
54.77.183.40
54.77.190.39
54.78.168.73
54.78.85.182
63.32.154.88
63.32.247.92
63.34.49.237
63.35.134.40
99.81.41.145
99.81.95.11
amazonaws.com
api.stn100yul.ctr.sophos.com
api-cloudstation-us-east-2.prod.hydra.sophos.com
az416426.vo.msecnd.net
central.sophos.com
cloud.sophos.com
cloud-assets.sophos.com
d1.sophosupd.com
d1.sophosupd.net
d2.sophosupd.com
d2.sophosupd.net
d3.sophosupd.com
d3.sophosupd.net
dc.services.visualstudio.com
dci.sophosupd.com
dci.sophosupd.net
downloads.sophos.com
dzr-api-amzn-eu-west-1-9af7.api-upe.p.hmr.sophos.com
dzr-mcs-amzn-eu-west-1-9af7.upe.p.hmr.sophos.com
dzr-mcs-amzn-us-west-2-fa88.upe.p.hmr.sophos.com
http.00.a.sophosxl.net
http.00.s.sophosxl.net
id.sophos.com
mcs.stn100hnd.ctr.sophos.com
mcs.stn100syd.ctr.sophos.com
mcs.stn100yul.ctr.sophos.com
mcs2.stn100hnd.ctr.sophos.com
mcs2.stn100syd.ctr.sophos.com
mcs2.stn100yul.ctr.sophos.com
mcs2-cloudstation-eu-central-1.prod.hydra.sophos.com
mcs2-cloudstation-eu-west-1.prod.hydra.sophos.com
mcs2-cloudstation-us-east-2.prod.hydra.sophos.com
mcs2-cloudstation-us-west-2.prod.hydra.sophos.com
mcs-cloudstation-eu-central-1.prod.hydra.sophos.com
mcs-cloudstation-eu-west-1.prod.hydra.sophos.com
mcs-cloudstation-us-east-2.prod.hydra.sophos.com
mcs-cloudstation-us-west-2.prod.hydra.sophos.com
samples.sophosxl.net
sdds3.sophosupd.com
sdds3.sophosupd.net
sdu-feedback.sophos.com
sophos.com
sophosupd.com
sophosxl.net
ssp.feedback.sophos.com
sus.sophosupd.com
sus.sophosupd.net
t1.sophosupd.com

Apple Services FQDN and IP Address List

This list includes some of the FQDNs and IP Addresses used by Apple Services, this may be useful for identifying outgoing traffic and creating web filtering exceptions.

xp-cdn.apple.com
xp.apple.com
xkp-p1.apple.com
www.apple.com
weather-data.apple.com
vp2110202002c.connectivity.mj2kh.icloud.com
vp2110202002c.connectivity.fg1ad.icloud.com
vp2110202001c.connectivity.mj2kh.icloud.com
vp2110202001c.connectivity.fg1ad.icloud.com
vp2110201002c.connectivity.mj2kh.icloud.com
vp2110201002c.connectivity.fg1ad.icloud.com
vp2110201001c.connectivity.fg1ad.icloud.com
vp2110102002c.connectivity.mj2kh.icloud.com
vp2110102002c.connectivity.fg1ad.icloud.com
vp2110102001c.connectivity.mj2kh.icloud.com
vp2110101002c.connectivity.mj2kh.icloud.com
vp2110101002c.connectivity.fg1ad.icloud.com
vp2110101001c.connectivity.mj2kh.icloud.com
vp2110101001c.connectivity.fg1ad.icloud.com
usw2-tdm-prod.apple.com
usw2-mia-aws-uat-stage.apple.com
usw2-fsi-platform-partner-it01.apple.com
usqas2-epclient-vpn2.apple.com
usqas2-epclient-vpn1.apple.com
use2-osvcomm-dr.apple.com
use1-talk-prod.apple.com
use1-ppq-ext-prod.apple.com
use1-fsi-platform-partner-it02.apple.com
usauspl4-corpclient-vpn1-pat1.apple.com
usauspl4-client-vpn10.apple.com
tj-lt1-smp-apple-pay-gateway.asia.apple.com
swdist.apple.com
swcatalog.apple.com
swallow.apple.com
supportmetrics.apple.com
support.apple.com
stix-partner-ui-usw2.apple.com
stix-partner-ui-use1.apple.com
smtp.mail-old.icloud.com
smp-device-content.apple.com
sift-renoedge01.apple.com
sgsin3-3pclient-vpn.asia.apple.com
setup.icloud.com
securemetrics.apple.com
s02-keyvalueservice002.icloud.com
s02im-imap.mail.icloud.com
s02-documentvip001.icloud.com
s02-ckdevice.icloud.com
s02-ckdatabase-old.icloud.com
s01-keyvalueservice001.icloud.com
s01im-imap.mail.icloud.com
s01-content-old.icloud.com
s01-ckdevice.icloud.com
s01-ckdatabase-old.icloud.com
s00im-imap.mail.icloud.com
rv30.apple.com
rv250.apple.com
rv230.apple.com
rv220.apple.com
rv210.apple.com
rv200.apple.com
rv120.apple.com
rv110.apple.com
rv10.apple.com
rsvp-use2.apple.com
rss-cma-pod4.apple.com
rss-cma-pod3.apple.com
rss-cma-pod2.apple.com
rn-b2b-as2.apple.com
rn2-aquila.apple.com
reserve-prime-2.apple.com
radar-ext-usw2.apple.com
px30.apple.com
px250.apple.com
px240.apple.com
px150.apple.com
px130.apple.com
px110.apple.com
px10.apple.com
pvp00-e3.icloud.com
pv-e3sh.icloud.com
pv-e3-origin.icloud.com
pv37z00ce-sgr802.apple.com
pr3-bomgar-lapp03.apple.com
portal-ma.apple.com
payments-partner-qa.apple.com
partner-resources-rn3.apple.com
p98-iworkpreviewapi-old.icloud.com
p98-iworkextstore-old.icloud.com
p97-iworkpreviewapi-old.icloud.com
p80-smtp.mail.icloud.com
p80-mailws.icloud.com
p80-imap.mail.icloud.com
p79-mailws.icloud.com
p79-imap.mail.icloud.com
p78-mailws.icloud.com
p78-imap.mail.icloud.com
p77-mailws.icloud.com
p77-imap.mail.icloud.com
p76-mailws.icloud.com
p76-imap.mail.icloud.com
p75-mailws.icloud.com
p75-imap.mail.icloud.com
p74-smtp.mail.icloud.com
p74-mailws.icloud.com
p74-imap.mail.icloud.com
p73-smtp.mail.icloud.com
p73-mailws.icloud.com
p73-imap.mail.icloud.com
p72-fmfmobile.icloud.com
p72-contacts.icloud.com
p71-contacts.icloud.com
p70-contacts.icloud.com
p69-contacts.icloud.com
p68-contacts.icloud.com
p67-contacts.icloud.com
p66-contacts.icloud.com
p65-contacts.icloud.com
p64-contacts.icloud.com
p63-contacts.icloud.com
p62-contacts.icloud.com
p61-contacts.icloud.com
p60-contacts.icloud.com
p59-contacts.icloud.com
p58-contacts.icloud.com
p57-contacts.icloud.com
p56-contacts.icloud.com
p55-contacts.icloud.com
p54-contacts.icloud.com
p53-contacts.icloud.com
p52-contacts.icloud.com
p51-contacts.icloud.com
p50-contacts.icloud.com
p49-contacts.icloud.com
p48-contacts.icloud.com
p47-contacts.icloud.com
p46-contacts.icloud.com
p45-contacts.icloud.com
p44-contacts.icloud.com
p43-contacts.icloud.com
p42-contacts.icloud.com
p41-contacts.icloud.com
p40-contacts.icloud.com
p39-contacts.icloud.com
p38-contacts.icloud.com
p37-contacts.icloud.com
p36-contacts.icloud.com
p35-contacts.icloud.com
p34-contacts.icloud.com
p33-contacts.icloud.com
p32-contacts.icloud.com
p31-contacts.icloud.com
p30-contacts.icloud.com
p29-contacts.icloud.com
p28-contacts.icloud.com
p27-contacts.icloud.com
p26-contacts.icloud.com
p25-contacts.icloud.com
p24-contacts.icloud.com
p23-contacts.icloud.com
p22-contacts.icloud.com
p21-contacts.icloud.com
p21-caldav.icloud.com
p20-contacts.icloud.com
p204-smtp.mail-china-old.icloud.com
p203-smtp.mail-china-old.icloud.com
p203-imap.mail-china-old.icloud.com
p19-contacts.icloud.com
p18-contacts.icloud.com
p17-contacts.icloud.com
p16-contacts.icloud.com
p15-contacts.icloud.com
p14-contacts.icloud.com
p143-contacts.icloud.com
p13-contacts.icloud.com
p12-imap.mail.icloud.com
p12-contacts.icloud.com
p11-imap.mail.icloud.com
p11-contacts.icloud.com
p10-mailws-old.icloud.com
p10-imap.mail.icloud.com
p10-contacts.icloud.com
p09-mailws-old.icloud.com
p09-imap.mail.icloud.com
p09-contacts.icloud.com
p08-mailws-old.icloud.com
p08-mailws.icloud.com
p08-imap.mail.icloud.com
p08-contacts.icloud.com
p07-mailws-old.icloud.com
p07-imap.mail.icloud.com
p07-contacts.icloud.com
p07-conduit.connectivity-old.icloud.com
p06-mailws.icloud.com
p06-imap.mail.icloud.com
p06-contacts.icloud.com
p05-mailws-old.icloud.com
p05-contacts.icloud.com
p05-conduit.connectivity-old.icloud.com
p04-mailws-old.icloud.com
p04-imap.mail.icloud.com
p04-contacts.icloud.com
p04-conduit.connectivity-old.icloud.com
p03-mailws-old.icloud.com
p03-imap.mail.icloud.com
p03-contacts.icloud.com
p02-mailws-old.icloud.com
p02-imap.mail.icloud.com
p02-contacts.icloud.com
p02-conduit.connectivity-old.icloud.com
p02-btmmconduit.connectivity.mj2kh.icloud.com
p02-btmmconduit.connectivity.fg1ad.icloud.com
p01-mailws-old.icloud.com
p01-imap.mail.icloud.com
p01-contacts.icloud.com
p01-conduit.connectivity-old.icloud.com
p01-btmmconduit.connectivity.mj2kh.icloud.com
ocsp2.apple.com
ns-activateiphone10.apple.com
newspublisherapi-old.icloud.com
news-edge.apple.com
mx-in-vib.apple.com.
mx-in-rno.apple.com.
mx-in-mdn.apple.com
mx-in-hfd.apple.com
mx-in.g.apple.com.
mx6.mail.icloud.com
mx5.mail.icloud.com
mx4.mail.icloud.com
mx3.mail.icloud.com
mx2.mail.icloud.com
mx1.mail.icloud.com
mx02.mail.icloud.com.
mx02.mail.icloud.com
mx01.mail.icloud.com.
mx01.mail.icloud.com
mx001.icloud.com
msbadger1210.apple.com
msbadger1010.apple.com
msbadger0910.apple.com
msbadger0810.apple.com
msbadger0610.apple.com
msbadger0310.apple.com
msbadger0110.apple.com
mr-e3sh.icloud.com
metrics.icloud.com
mesu.apple.com
mdn-txn-msbadger0310.apple.com
mdn-txn-msbadger0210.apple.com
mdn-txn-msbadger0110.apple.com
mdn-epsmtap-mkt-lsndr20.apple.com
mdn-epsmtap-mkt-lsndr10.apple.com
mb12sa-x02.apple.com
mask-h2.icloud.com
mailws-old.icloud.com.cn
mailws.icloud.com
ma-ds-aquila.apple.com
ma-b2b-as2.apple.com
km.support.apple.com
jptyo5-dcvpnclient-vpn2.asia.apple.com
jptyo5-corpclient-vpn11.asia.apple.com
ivpn-ausyd2.asia.apple.com
itunes.apple.com
iphonesubmissions.apple.com
iphone-ld.apple.com
iphone-cdn-client.fitbit.com
iphone-cdn-api.fitbit.com
ioss-callbackservices-sh-rn2.apple.com
ioss-callbackservices-sh-qa5.apple.com
ioss-callbackservices-sh-nc5.apple.com
init-p01st.push.apple.com
init-p01md.apple.com
init.push.apple.com
init.itunes.apple.com
init.ess.apple.com
iei-uat1-asia.apple.com
icloud4-hubble.icloud.com
icloud.com
ic4-wopi.icloud.com
ic3-wopi.icloud.com
ic2-wopi.icloud.com
ic1-wopi.icloud.com
guzzoni.apple.com
gsp-ssl.ls.apple.com
gspe35-ssl.ls.apple.com
gspe19-ssl.ls.apple.com
gsp85-ssl.ls.apple.com
gsp64-ssl.ls.apple.com
gsp10-ssl.apple.com
gs-loc.apple.com
gidget210.apple.com
gdmf.apple.com
gateway.icloud.com
fodlabserver10.apple.com
fod40.apple.com
fod30.apple.com
fod250.apple.com
fod230.apple.com
fod220.apple.com
fod210.apple.com
fod200.apple.com
fod20.apple.com
fod160.apple.com
fod150.apple.com
fod110.apple.com
fmfmobile.icloud.com
fbs.smoot.apple.com
education-origin-nonprod-qa.apple.com
ec2-13-236-219-31.ap-southeast-2.compute.amazonaws.com
dns38.online.tj.cn
diagnostics-mdn1.apple.com
demo50.apple.com
demo40.apple.com
demo30.apple.com
demo240.apple.com
demo120.apple.com
demo100.apple.com
d.ns.apple.com.
cs-callbackservices-usw2-cx01.apple.com
courier.push.apple.com
contacts.icloud.com
contacts.fe.apple-dns.net
configuration.ls.apple.com
concierge-pod3.apple.com
cntnj1-3pclient-vpn.asia.apple.com
cnsha4-3pclient-vpn1.asia.apple.com
cl4.apple.com
cl3.apple.com
cl2.apple.com
cl1.apple.com
cdn.apple.com
caldav.icloud.com
c.ns.apple.com
buyiphone10.apple.com
bomgar5.asia.apple.com
bomgar2.asia.apple.com
bananajr6000.apple.com
b.ns.apple.com
axm-scim-qa12.apple.com
aws-static-use1-cx04.apple.com
aws-cs-callbackservices-perf.apple.com
ausyd2-corpclient-vpn12.asia.apple.com
ausyd2-3pclient-vpn11.asia.apple.com
atp-bgcheck-usw2.apple.com
appleteacher-origin-nonprod-qa.apple.com
apple.com.sg
apple.com
api-glb-aeuw3c.smoot.apple.com
api-ausw2b.smoot.apple.com
api.smoot.apple.com
adcbzapp10.apple.com
a.ns.apple.com
96.17.179.67
96.17.179.45
95.100.245.53
95.100.244.21
92.122.149.120
60.29.205.118
54.77.160.229
54.220.133.225
52.18.143.40
35.181.25.252
23.5.208.22
23.215.181.103
23.207.212.20
218.104.29.38
204.26.57.1
204.19.119.1
180.168.33.36
17.84.76.229
17.84.76.228
17.84.106.107
17.84.100.126
17.83.6.70
17.8.129.14
17.57.8.140
17.57.8.138
17.57.8.134
17.57.172.16
17.57.172.11
17.57.170.2
17.57.165.2
17.57.156.25
17.57.146.88
17.57.146.87
17.57.146.86
17.57.146.6
17.57.146.5
17.56.136.196
17.56.136.171
17.56.136.136
17.47.160.209
17.47.160.136
17.47.0.77
17.42.251.62
17.33.200.235
17.33.194.222
17.33.193.247
17.33.192.87
17.32.227.29
17.32.222.242
17.32.219.4
17.32.214.187
17.32.214.121
17.32.208.244
17.32.208.200
17.32.208.18
17.255.78.241
17.255.60.50
17.255.60.40
17.255.60.30
17.255.60.240
17.255.60.120
17.255.60.100
17.254.6.91
17.254.6.237
17.254.6.215
17.254.6.191
17.254.6.141
17.254.6.131
17.254.6.106
17.254.3.53
17.254.3.210
17.254.12.57
17.253.37.209
17.253.37.206
17.253.37.203
17.253.29.203
17.253.29.199
17.253.207.1
17.253.200.1
17.253.144.10
17.250.83.9
17.250.83.7
17.250.83.6
17.250.83.51
17.250.83.49
17.250.83.45
17.250.83.43
17.250.83.42
17.250.83.41
17.250.83.40
17.250.83.37
17.250.83.3
17.250.83.2
17.250.83.19
17.250.83.17
17.250.83.15
17.250.83.14
17.250.83.12
17.250.83.11
17.250.80.6
17.250.80.5
17.250.80.179
17.250.80.177
17.250.80.174
17.250.80.173
17.250.80.172
17.250.80.170
17.250.80.17
17.250.80.169
17.250.80.165
17.250.80.15
17.250.80.149
17.250.80.145
17.250.80.144
17.250.80.141
17.250.80.14
17.250.80.136
17.250.80.134
17.250.80.13
17.250.80.118
17.250.80.116
17.250.80.115
17.250.80.114
17.250.80.11
17.250.80.108
17.250.80.107
17.250.80.106
17.250.80.101
17.250.80.100
17.248.211.133
17.248.180.43
17.248.180.228
17.248.180.172
17.248.180.144
17.248.180.136
17.248.180.107
17.248.128.46
17.201.232.80
17.201.232.60
17.201.232.250
17.201.232.230
17.201.232.220
17.201.232.210
17.201.232.200
17.201.232.120
17.201.232.110
17.201.220.80
17.201.220.60
17.201.220.250
17.201.220.240
17.201.220.150
17.201.220.130
17.201.220.110
17.201.216.90
17.201.216.80
17.201.216.70
17.201.216.250
17.201.216.230
17.201.216.220
17.201.216.210
17.201.216.200
17.201.216.160
17.201.216.150
17.201.216.110
17.188.23.49
17.188.22.91
17.188.22.42
17.188.22.102
17.188.182.196
17.179.32.170
17.179.253.242
17.179.244.12
17.179.241.3
17.179.240.3
17.179.240.2
17.179.124.161
17.178.97.79
17.178.97.77
17.178.103.11
17.177.80.31
17.176.242.186
17.176.242.185
17.176.242.184
17.176.242.153
17.176.242.148
17.176.242.147
17.176.242.146
17.176.242.145
17.176.242.100
17.176.240.89
17.176.240.12
17.176.240.11
17.176.240.106
17.176.240.104
17.176.240.103
17.176.240.102
17.176.240.101
17.172.208.94
17.172.208.83
17.172.192.94
17.172.192.54
17.172.116.70
17.172.100.84
17.172.100.76
17.171.98.3
17.171.49.195
17.171.49.159
17.171.37.47
17.171.37.37
17.171.37.27
17.171.27.33
17.167.156.6
17.164.0.92
17.158.8.118
17.158.52.53
17.158.52.1
17.158.36.85
17.158.36.76
17.158.28.93
17.158.28.82
17.158.10.92
17.157.44.45
17.151.224.95
17.143.165.6
17.143.165.5
17.142.162.9
17.142.162.8
17.141.138.39
17.137.161.4
17.137.160.36
17.133.251.8
17.133.251.19
17.133.251.17
17.133.251.12
17.133.233.102
17.133.229.7
17.133.229.6
17.133.229.5
17.133.224.9
17.125.248.8
17.125.248.20
17.125.248.19
17.125.248.17
17.122.193.90
17.122.193.82
17.111.161.24
144.178.19.7
144.178.19.6
144.178.19.4
144.178.19.21
144.178.16.85
144.178.16.84
13.236.219.31
108.128.193.124
104.86.110.83
104.77.160.90
104.16.66.50
104.16.65.50
104.106.197.66

Reporting Malicious or Phishing Sites

A useful list of providers where you can report Malicious or Phishing Sites

Virus Total – https://www.virustotal.com/gui/home/url

SPAM404 – https://www.spam404.com/report.html

BrightCloud – https://www.brightcloud.com/tools/url-ip-lookup.php

ESET – https://phishing.eset.com/en-us/report

Sophos – https://support.sophos.com/support/s/filesubmission?language=en_US

Google – https://safebrowsing.google.com/safebrowsing/report_general/

Microsoft – https://www.microsoft.com/en-us/wdsi/support/report-unsafe-site-guest

Cyren – https://www.cyren.com/security-center/url-category-check-gate

Dr.Web – https://vms.drweb.com/sendvirus/

Fortinet – https://www.fortiguard.com/faq/wfratingsubmit

Forcepoint – https://csi.forcepoint.com/

Bitdefender – https://www.bitdefender.com/consumer/support/answer/29358/#scroll-to-heading-2

SCUMWARE.ORG – https://www.scumware.org/add_url.php