North American Network Operators Group|
Date Prev | Date Next | Date Index | Thread Index | Author Index | Historical
RE: Abusive traffic from Microsoft China?
Looks fishy. Why would a company the size of Microsoft register a single /25? I doubt MS really owns that block. Sounds more like a hacker playground to me. Chuck -----Original Message----- From: owner-nanog@xxxxxxxxx [mailto:owner-nanog@xxxxxxxxx] On Behalf Of David Hubbard Sent: Thursday, November 08, 2007 12:23 PM To: nanog@xxxxxxxxx Subject: Abusive traffic from Microsoft China? Just wondering if anyone else is seeing huge random floods of traffic from: inetnum: 18.104.22.168 - 22.214.171.124 netname: MICROSOFT-CO descr: Microsft (China) Co.Ltd country: CN admin-c: CH455-AP tech-c: SY21-AP mnt-by: MAINT-CNCGROUP-BJ changed: suny@xxxxxxxxxxxxxxxxxx 20060926 status: ALLOCATED NON-PORTABLE source: APNIC changed: suny@xxxxxxxxxxxxxxxxxx 20060926 On a nearly daily basis we see them randomly open thousands of connections from a variety of addresses in that block to multiple servers. I've emailed of coruse but that results in nothing. Probably will just end up blocking them. Thanks, David