Cereal2 ยท Observed attack

AS270764 UDP flood on 104.234.119.157 | 2026-10-11 18:52:27Z

ยท Event #326022

WhatsApp

Country-level precision. botnet.cl stores the target country, never a city or coordinates, so the marker sits at the country's center.

What this method does

Cereal2 vector 2: UDP flood with minimal datagrams (default 1-byte payload).

All UDP flood with minimal datagrams (default 1-byte payload) observations
Observed
2026-10-11T18:52:27.504Z
Recorded

Recorded 387ms after observation

Affected network
104.234.119.157/32
Network operator
Ecxon Datacenter LTDAAS270764
Method
UDP flood with minimal datagrams (default 1-byte payload)Vector 2
Protocol
udp
Destination port
30120
Commanded duration
1m
Observed via
101.34.239.216119.45.12.154130.94.16.10130.94.17.15130.94.32.1438.60.199.12638.60.238.10977.232.43.2182.157.209.4194.183.235.1194.183.235.14294.183.235.15994.183.235.249

All controllers with retained sightings of this order. Older records may have incomplete source coverage.

Geolocation data
ipinfo-lite ยท 2026-09

Snapshot taken at ingestion; it is never re-resolved later.

botnet.cl reports infrastructure it observed. An address appearing here identifies a target or a relay, not a person responsible for the attack.