[nsp-sec] Potential DoS data for 89.45.193.200 and 204.188.216.183

Buraglio, Nicholas D buraglio at illinois.edu
Thu Dec 16 14:27:45 EST 2010


I'm looking for data that anyone can provide us on the addresses 89.45.193.200 from 11:43:23  to 11:53:22  and 204.188.216.183 from  11:38:44 to 11:48:45 All times are GMT -6.  We (AS38 in this case) believe we were the source of a port 80 DoS attack toward those two hosts.  Specifically, I'm looking for any other networks sourcing to those addresses during this same timeframe. We saw a very large amount of single packet flows in a relatively short amount of time and are trying to drill down if we were part of something larger.  

AS      | IP               | AS Name
34358   | 89.45.193.200    | CLAXTELECOM CLAX TELECOM SRL

AS      | IP               | AS Name
46844   | 204.188.216.183  | ST-BGP - SHARKTECH INTERNET SERVICES



Thanks,

nb

---
Nick Buraglio   
Network Engineer
University of Illinois CITES / ICCN
GPG key 0x2E5B44F4
Phone: 217.244.6428
buraglio at illinois.edu



More information about the nsp-security mailing list