• We’re currently investigating an issue related to the forum theme and styling that is impacting page layout and visual formatting. The problem has been identified, and we are actively working on a resolution. There is no impact to user data or functionality, this is strictly a front-end display issue. We’ll post an update once the fix has been deployed. Thanks for your patience while we get this sorted.

MASSIVE DDOS ATTACKS ALL OVER U.S.

Page 3 - Seeking answers? Join the AnandTech community: where nearly half-a-million members share solutions and discuss the latest tech.
Originally posted by: CorporateRecreation
Originally posted by: SnapIT
Originally posted by: CorporateRecreation
Don't blame microsoft too hard, almost every platform has programs with buffer overflow errors. You only see the Microsoft servers get hit because they are the most popular platform, and they are easy to target. Buffer overflow is a VERY common thing, and it just so happens that MS's SQL is the target this time. If you run a MS Server, look out. Personally I am glad both my servers run unix.

No, MS SQL server is far from the most popular SQL server on or off the internet...

Did I say Microsoft SQL servers?
No.

Read.Comprehend.Post.

Oh, i just thought we were talking about the MS SQL exploit in this thread...

But you're still wrong, MS servers aren't the most popular platform on the internet... Not even close...

January 2003, MS: 27%, Apache: 62.23%, Zeus: 2.08, SunONE: 1.33 Source

So maybe you should check your facts before you post?
 
Originally posted by: BCYL
Is the DoS attack over? everything seems to be back to normal now...

The problem is still far from over I'd say (all of those unpatched SQL2K servers), but the DDoS effects of it should at least taper off a bit as ISPs/backbones will start filtering that port.

I woke my girlfriend up so she could check her servers at work. Some of their SQL2K servers were unpatched but luckily their firewall managed to hold everything off. She axed all outbound in the meantime just in case, and she'll go in later today to patch everything up.
 
so far my brother hasnt been woken up. The last time we had a problem like this it was Nimda or something like that cause us to get up at 3 am and help him patch the servers.

Now they are all Linux/freeBSD etc... only 2 win boxes.. they had 10 earlier..
The two win boxes are test boxes apparently so they dont care if it goes down or gets infected they just reinstall from teh image.
 
Originally posted by: RossMAN
Who could/would put on such an attack of this scale?

Literally bringing half the world's internet to it's knees, whoa.



The internet has knees?? 😛

Hmmm, I wonder what other parts it may have... hehe
 
Originally posted by: morkinva
Originally posted by: RossMAN
Who could/would put on such an attack of this scale?

Literally bringing half the world's internet to it's knees, whoa.



The internet has knees?? 😛

Hmmm, I wonder what other parts it may have... hehe



Morning Dr. Morkinva
 
Originally posted by: VBboy
I turned off my DDOS appliance in the kitchen. Service should be restoring as we speak 🙂

Hey...it took you almost 3 hours to get to your kitchen and turn that thing off??? Damn...you must have a big house! 😛 😉


😀
 
Originally posted by: Insane3D
Originally posted by: VBboy
I turned off my DDOS appliance in the kitchen. Service should be restoring as we speak 🙂

Hey...it took you almost 3 hours to get to your kitchen and turn that thing off??? Damn...you must have a big house! 😛 😉


😀

Nah, man, I had to please my girlfriend on my way to the kitchen 🙂
 
Ah, that splains a few things. I can't even find a Spearhead server, AT is slow as hell, other sites slow too. Suckage!
 
Soooo many slow browsing calls at work tonight... and of course you have to troubleshoot everything as usual, because none of the tech's know theres a DDOS attack going on. 🙁
 
Originally posted by: VBboy
Originally posted by: Insane3D
Originally posted by: VBboy
I turned off my DDOS appliance in the kitchen. Service should be restoring as we speak 🙂

Hey...it took you almost 3 hours to get to your kitchen and turn that thing off??? Damn...you must have a big house! 😛 😉


😀

Nah, man, I had to please my girlfriend on my way to the kitchen 🙂

Then you still have a big house 😛
 
Yeah.. just woke up and looked at my router log

204.48.128.111 1434
24.247.24.62 1434
130.235.133.23 1434
65.90.208.170 1434
212.179.201.52 1434
205.247.194.146 1434
130.85.5.92 1434
130.207.15.25 1434
203.190.69.149 1434
152.66.214.99 1434
61.115.237.77 80
67.96.17.252 1434
217.65.70.6 1434
66.74.197.78 135
66.168.191.251 1434
66.74.197.78 135
24.159.31.102 1434
128.218.192.242 1434
131.234.218.60 1434
63.127.10.85 1434
128.103.182.222 1434
128.59.153.106 1434
168.156.112.154 1434
209.186.12.6 1434
66.128.96.8 1434
194.221.105.205 1434
216.81.223.80 1434
148.204.189.49 1434
195.251.211.180 1434
199.111.154.18 1434
12.83.28.28 135
216.102.50.37 1434
194.221.90.250 1434
216.205.68.132 1434
212.191.166.21 1434
138.23.119.148 1434
212.65.230.11 1434
66.190.0.102 1434
216.111.211.93 1434
196.40.46.67 1434
193.10.166.36 1434
129.219.219.5 1434
212.45.47.129 1434
200.46.136.217 1434
80.85.68.19 1434
206.47.17.12 1434
198.239.145.197 1434
203.70.85.170 1434
129.125.140.112 1434
131.234.218.60 1434
140.142.157.156 1434
130.85.105.204 1434
193.48.209.3 1434
62.210.156.50 1434
209.47.174.6 1434
212.61.71.2 1434
130.235.133.23 1434
139.30.71.61 1434
12.107.200.146 1434
204.48.128.111 1434
65.90.208.170 1434
141.201.100.166 1434
194.97.1.197 1434
129.215.168.236 1434
209.115.132.175 1434
24.247.24.62 1434
210.114.220.152 1434
62.149.128.54 1434
209.245.183.75 1434
134.129.126.226 1434

That's not pretty...
 
Hmm.. guess I need to actually wake up before I start reading OT... I could have sworn the headline said "Massive DOGS attack all over us"

I was like "whoa, cool, massive dogs..."
 
I was just now able to reconnect to the net.

My ISP has been down since like 2am EST this morning. It was affecting their login servers (At least it was giving me an invalid UN and PW). It is still running pretty slow..... especially UUNet from what I can tell.
 
Back
Top