Home page logo

fulldisclosure logo Full Disclosure mailing list archives

lots of connections to port 80
From: Ganbold <ganbold () micom mng net>
Date: Fri, 18 Apr 2008 15:54:24 +0800


Recently I have seen a lots of connections to port 80 in 
one of our clients network.
Connections are coming from all over the Internet (various different 
IPs) specifically to this IP.
Due to this problem (I guess it is DDoS) one of our router's CPU usage 
grew up to 100% and stopped a service
for a while.
What kind of problem this could be?
Has anybody seen this kind of attack before?
I appreciate if somebody can enlighten me in this regard.

thanks in advance,


The more control, the more that requires control.

Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]