Cereal2 ยท Observed attack

AS29124 TCP flood on 81.200.9.158 | 2026-09-29 15:52:26Z

ยท Event #285797

WhatsApp

Country-level precision. botnet.cl stores the target country, never a city or coordinates, so the marker sits at the country's center.

What this method does

Cereal2 vector 3: Raw IPv4/TCP packet flood variant 1.

All Raw IPv4/TCP packet flood variant 1 observations
Observed
2026-09-29T15:52:26.786Z
Recorded

Recorded 31s after observation

Affected network
81.200.9.158/32
Network operator
Iskratelecom JSCAS29124
Method
Raw IPv4/TCP packet flood variant 1Vector 3
Protocol
tcp
Destination port
443
Commanded duration
1m
Geolocation data
ipinfo-lite ยท 2026-09

Snapshot taken at ingestion; it is never re-resolved later.

botnet.cl reports infrastructure it observed. An address appearing here identifies a target or a relay, not a person responsible for the attack.