Hi everybody,
is there anyone else expecting massive UDP (mostly port 53) traffic from
67.228.4.81? Destinations are (possibly random chosen) ip address out of
our AS3915.
see attached netflow graph. We've now blocked the ip address and got
over 3.7 million blocks within 10 minutes.
I just wrote this issue to the corresponding abuse (
abuse@subxtreme.net)
, a provider in Brazil as i know so far.
Thanks for any feedback.
have a nice weekend, best regards
Marco
_______________________________________________
swinog mailing list
swinog@lists.swinog.chhttp://lists.swinog.ch/cgi-bin/mailman/listinfo/swinog