[nsp-sec] Potential DoS data for 89.45.193.200 and 204.188.216.183
Buraglio, Nicholas D
buraglio at illinois.edu
Thu Dec 16 14:27:45 EST 2010
I'm looking for data that anyone can provide us on the addresses 89.45.193.200 from 11:43:23 to 11:53:22 and 204.188.216.183 from 11:38:44 to 11:48:45 All times are GMT -6. We (AS38 in this case) believe we were the source of a port 80 DoS attack toward those two hosts. Specifically, I'm looking for any other networks sourcing to those addresses during this same timeframe. We saw a very large amount of single packet flows in a relatively short amount of time and are trying to drill down if we were part of something larger.
AS | IP | AS Name
34358 | 89.45.193.200 | CLAXTELECOM CLAX TELECOM SRL
AS | IP | AS Name
46844 | 204.188.216.183 | ST-BGP - SHARKTECH INTERNET SERVICES
Thanks,
nb
---
Nick Buraglio
Network Engineer
University of Illinois CITES / ICCN
GPG key 0x2E5B44F4
Phone: 217.244.6428
buraglio at illinois.edu
More information about the nsp-security
mailing list