EZF3 ยท Observed attack

UDP template flood on FDCservers.net in United States

ยท Event #8

WhatsApp

Country-level precision. botnet.cl stores the target country, never a city or coordinates, so the marker sits at the country's center.

What this method does

EZF3 vector 2 sends UDP payloads selected from a bank of service-query templates, including DNS and SSDP. Template presence alone does not establish a working reflection attack.

All UDP template flood observations
Observed
2026-09-27T17:00:18.280Z
Recorded

Recorded 291ms after observation

Affected network
23.237.36.148/32
Network operator
FDCservers.netAS30058
Method
UDP template floodVector 2
Protocol
udp
Destination port
53
Commanded duration
30s
Observed via
176.53.159.21

All controllers with retained sightings of this order. Older records may have incomplete source coverage.

Geolocation data
ipinfo-lite ยท 2026-07

Snapshot taken at ingestion; it is never re-resolved later.

botnet.cl reports infrastructure it observed. An address appearing here identifies a target or a relay, not a person responsible for the attack.