[nsp-sec] Chinanet SIP attack

Saunders, D'Wayne S DWayne.Saunders at team.telstra.com
Thu Aug 11 20:10:46 EDT 2011


Hi all,
	Anyone got a contact for CHINANET-BACKBONE? One of our ADSL customers has
been getting some SIP packet love from 122.227.235.162
We have filtered it by ACL and tried to contact the ISP with no joy.
Hoping others may have a better way to contact the ISP or help stop
traffic.



Source:
122.227.235.162Destination:
165.228.95.76



whois -h whois.cymru.com 122.227.235.162
AS      | IP               | AS Name
4134    | 122.227.235.162  | CHINANET-BACKBONE No.31,Jin-rong Street





Regards,
 
D'Wayne Saunders
 
Ph: (03) 8647 5889






More information about the nsp-security mailing list