North American Network Operators Group

Date Prev | Date Next | Date Index | Thread Index | Author Index | Historical

Re: probable DDOS to 195.238.3.33

  • From: Martin Hannigan
  • Date: Mon Feb 10 17:14:46 2003

On Mon, Feb 10, 2003 at 12:05:55PM -0800, Bulger, Tim wrote:
> 
> We're seeing packets with spoofed source addresses destined to
> 195.238.3.33 getting dropped on firewalls at several locations going
> outbound.  Googling has turned up nothing relating to that destination
> IP address.  Is anyone else seeing this?  Anyone know what it is?
> 
> Thanks,
> Tim
> 


This should help

> server ns1.skynet.be
Default Server:  ns1.skynet.be
Address:  195.238.3.17

> 195.238.3.33
Server:  ns1.skynet.be
Address:  195.238.3.17

Name:    userspool1.skynet.be
Address:  195.238.3.33

>