North American Network Operators Group

Date Prev | Date Next | Date Index | Thread Index | Author Index | Historical

RE: How should ISPs notify customers about Bots (Was Re: DNS Hijacking

  • From: Raymond L. Corbin
  • Date: Mon Jul 23 19:26:38 2007

>The practice of blocking public EFnet servers?

Its not just EFnet servers. It doesn't seem to be targeting them
specifically as there are other domains they are redirecting. I am
curious how they came up with their list. Did they find see an unusual
amount of customers connecting there? Etc...its happening to a few
public domains, but how many private domains are they doing it to?

Others are irc.nsane.net irc.criten.net which are notorious for DDoS'ing
other IRC Networks, but not necessarily hosting the botnets on their
servers. They do have an abundance of XDCC Bots on their servers that
usually come from DDoS bots.

Raymond Corbin
Support Analyst
HostMySite.com