[nsp-sec] Chinanet SIP attack
Saunders, D'Wayne S
DWayne.Saunders at team.telstra.com
Thu Aug 11 20:10:46 EDT 2011
Hi all,
Anyone got a contact for CHINANET-BACKBONE? One of our ADSL customers has
been getting some SIP packet love from 122.227.235.162
We have filtered it by ACL and tried to contact the ISP with no joy.
Hoping others may have a better way to contact the ISP or help stop
traffic.
Source:
122.227.235.162Destination:
165.228.95.76
whois -h whois.cymru.com 122.227.235.162
AS | IP | AS Name
4134 | 122.227.235.162 | CHINANET-BACKBONE No.31,Jin-rong Street
Regards,
D'Wayne Saunders
Ph: (03) 8647 5889
More information about the nsp-security
mailing list