Cereal2 路 Network
Attacks observed on China Telecom (Group) (AS4811)
Cereal2 attack observations affecting AS4811 China Telecom (Group): targeted prefixes, attack methods, destination ports, and timing over the last 30 days.
40 observations 路 Last 30 days 路 Latest observation
Most affected countries
Last 30 days
Most observed methods
- Stateful TCP connection and session flood23
- High-concurrency TCP connection-pool flood12
- UDP flood with large datagrams (default 1400-byte payload)2
- Raw IPv4/TCP packet flood variant 21
- Nonblocking TCP connection and session-pool flood1
- TCP connection and session-pool flood variant 11
Last 30 days
Recent observations
- Stateful TCP connection and session flood14.103.241.249/32TCP/80001mChina
- Stateful TCP connection and session flood14.103.235.251/32TCP/800430sChina
- UDP flood with large datagrams (default 1400-byte payload)14.103.110.210/32UDP/8030sChina
- Raw IPv4/TCP packet flood variant 214.103.230.122/32TCP/800530sChina
- UDP flood with large datagrams (default 1400-byte payload)14.103.231.29/32UDP/800430sChina
- Nonblocking TCP connection and session-pool flood14.103.231.29/32TCP/80041mChina
- Stateful TCP connection and session flood14.103.231.29/32TCP/80041mChina
- Stateful TCP connection and session flood14.103.231.29/32TCP/800430sChina
- Stateful TCP connection and session flood118.196.69.26/32TCP/800030sChina
- Stateful TCP connection and session flood118.196.69.26/32TCP/800030sChina
- Stateful TCP connection and session flood118.196.52.65/32TCP/800430sChina
- TCP connection and session-pool flood variant 1118.196.52.65/32TCP/800430sChina
- Stateful TCP connection and session flood118.196.52.65/32TCP/80041mChina
- Stateful TCP connection and session flood118.196.52.65/32TCP/80041mChina
- Stateful TCP connection and session flood118.196.69.120/32TCP/80011mChina
- Stateful TCP connection and session flood14.103.228.131/32TCP/802830sChina
- Stateful TCP connection and session flood14.103.240.1/32TCP/800030sChina
- Stateful TCP connection and session flood14.103.240.1/32TCP/800130sChina
- Stateful TCP connection and session flood118.196.69.120/32TCP/800130sChina
- Stateful TCP connection and session flood118.196.69.26/32TCP/800030sChina
- Stateful TCP connection and session flood14.103.240.1/32TCP/800330sChina
- Stateful TCP connection and session flood14.103.230.128/32TCP/800330sChina
- Stateful TCP connection and session flood180.184.171.211/32TCP/800330sChina
- Stateful TCP connection and session flood118.196.52.65/32TCP/800230sChina
- Stateful TCP connection and session flood118.196.52.65/32TCP/800630sChina
- Stateful TCP connection and session flood14.103.225.220/32TCP/800130sChina
- Stateful TCP connection and session flood14.103.253.134/32TCP/801430sChina
- Stateful TCP connection and session flood14.103.235.251/32TCP/800130sChina
- High-concurrency TCP connection-pool flood14.103.229.120/32TCP/800130sChina
- High-concurrency TCP connection-pool flood118.196.69.215/32TCP/800530sChina
- High-concurrency TCP connection-pool flood14.103.228.131/32TCP/802830sChina
- High-concurrency TCP connection-pool flood180.184.170.45/32TCP/800630sChina
- High-concurrency TCP connection-pool flood14.103.231.29/32TCP/800230sChina
- High-concurrency TCP connection-pool flood118.196.69.215/32TCP/800030sChina
- High-concurrency TCP connection-pool flood180.184.171.211/32TCP/800130sChina
- High-concurrency TCP connection-pool flood14.103.242.224/32TCP/800530sChina
- High-concurrency TCP connection-pool flood180.184.178.22/32TCP/801930sChina
- High-concurrency TCP connection-pool flood14.103.225.220/32TCP/800630sChina
- High-concurrency TCP connection-pool flood14.103.253.134/32TCP/802030sChina
- High-concurrency TCP connection-pool flood118.196.69.215/32TCP/800330sChina
botnet.cl reports infrastructure it observed. An address appearing here identifies a target or a relay, not a person responsible for the attack.