[nsp-sec] 200Kpps UDP/53 flood against 80.168.88.251
David Freedman
david.freedman at uk.clara.net
Mon May 31 13:00:15 EDT 2010
AS | IP | AS Name
4812 | 218.1.71.144 | CHINANET-SH-AP China Telecom (Group)
Seems to be the main culprit, no idea if this is for real or not (upstream
being useless in tracing it back), seems to have been ongoing since 17:00
UTC on Saturday , customer was disconnected completely for a day (it was
only one of their hosts so they took it offline) and lo and behold plugging
back in today it is still ongoing!
Any help appreciated,
------------------------------------------------
David Freedman
Group Network Engineering
Claranet Limited
http://www.clara.net
More information about the nsp-security
mailing list