Wednesday, May 8, 2013

[US] 66.102.253.120 - AS4134

General Information:


Attacked IP: 66.102.253.120
Country: United States

Start: 2013-05-06 20:19:14
End: 2013-05-06 20:22:13
Duration: 2 minute(s)
Average query rate: 297 per minute

Requested DNS record: ripe.net
Query count: 594

IPrange: 66.102.240.0/20
AS Number: China Telecom Americas
ISP: AS4134

This IP has been seen on the following days:

  • 06-May-2013 594x
  • 07-May-2013 1746x

Observed 1 attack:
  • Attack 1 from 20:00 till 21:00
Details of the DNS Amplification attack:


Requested DNS record: ripe.net
Query count: 594


Start: 2013-05-06 20:19:14
End: 2013-05-06 20:22:13
Duration: 2 minute(s)
Average query rate: 297 per minute

Amount of different query ID's observed: 215

Average query size: 91 bytes
Average response size: 811 bytes

Amplification: 791%

Total query size: 54054 bytes / 52 kilobytes
Response size: 481734 bytes / 470 kilobytes
TotalBandwidth: 535788 bytes / 523 kilobytes

Unique TTL values observed: 11
11 hosts or spoofed TTL values.

Unique query UDP source ports observed: 589


>>Read Before Rage<<<

No comments:

Post a Comment