cNotes 検索 一覧 カテゴリ

不正なSIP着信 62

Published: 2013/09/07

8月のSIPサーバーへの攻撃です。

自動でツールが動いてるっぽい感じで、国際電話を掛ける踏み台にしてその課金で儲ける系の攻撃だとは思いますがかなり多くなってます。

PS,USあたりのASが目立つのはいつもどおりです。

IPnameASAS NumberCountryCount
204.101.27.220NONE577BACOM_-_Bell_CanadaCA13546
96.8.100.2NONE3361DF-TUKWILA01_-_Digital_Fortress_Inc.US21556
119.192.169.46NONE4766KIXS-AS-KR_Korea_TelecomKR13546
81.218.117.14bzq-218-117-14.red.bezeqint.net.8551BEZEQ-INTERNATIONAL-AS_Bezeqint_Internet_BackboneIL1
81.218.117.6bzq-218-117-6.red.bezeqint.net.8551BEZEQ-INTERNATIONAL-AS_Bezeqint_Internet_BackboneIL5076
85.25.157.173static-ip-85-25-157-173.inaddr.ip-pool.com.8972PLUSSERVER-AS_intergenia_AGDE787
85.25.78.20static-ip-85-25-78-20.inaddr.ip-pool.com.8972PLUSSERVER-AS_intergenia_AGDE7742
72.22.64.222server222.ihsystem.com.14872YNC_-_@YourNet_Connection_Inc.US9902
162.13.9.158NONE15395Rackspace_Ltd.GB23
37.8.10.145NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS108617
37.8.11.65NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS30100
37.8.15.134NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS373059
37.8.15.220NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS20030
37.8.16.221NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS52354
37.8.21.237NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS30140
37.8.25.42NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS74837
37.8.28.122NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS50061
37.8.30.196NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS129
37.8.30.43NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS30054
37.8.32.116NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS244
37.8.34.226NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS19
37.8.39.7NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS40062
37.8.42.154NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS141
37.8.42.176NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS113281
37.8.43.143NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS50079
37.8.54.34NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS42069
37.8.57.178NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS60062
37.8.60.225NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS50819
37.8.61.119NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS10
37.8.72.86NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS30082
37.8.74.185NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS10032
37.8.76.59NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS30159
37.8.77.148NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS42875
37.8.79.247NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS30051
37.8.8.67NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS40048
37.8.88.111NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS110270
37.8.9.140NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS48
82.205.1.12NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS40
82.205.1.133NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS10003
82.205.14.108NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS18
82.205.14.218NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS90182
82.205.19.126NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS66858
82.205.21.151NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS32827
82.205.23.156NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS30053
82.205.23.174NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS20041
82.205.26.50NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS97
82.205.3.0NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS20019
82.205.3.241NONE15975HADARA-AS_Hadara_Technologies_Private_Shareholding_CompanyPS313478
188.165.254.170ks381071.kimsufi.com.16276OVH_OVH_SystemsFR253938
198.27.70.5ns4008594.ip-198-27-70.net.16276OVH_OVH_SystemsCA485
91.121.136.136ns202175.ovh.net.16276OVH_OVH_SystemsFR579112
94.23.165.136NONE16276OVH_OVH_SystemsDE114
94.23.165.174NONE16276OVH_OVH_SystemsDE23
94.23.202.102ns3346122.ovh.net.16276OVH_OVH_SystemsFR157453
54.249.81.161ec2-54-249-81-161.ap-northeast-1.compute.amazonaws.com.16509AMAZON-02_-_Amazon.com_Inc.JP25375
114.79.12.113NONE18004WIRELESSNET-ID-AP_WIRELESSNET_ASID197783
192.157.196.9999.196-157-192.rdns.scalabledns.com.18978ENZUINC-US_-_Enzu_IncUS6286
23.31.57.13823-31-57-138-static.hfc.comcastbusiness.net.20214COMCAST-20214_-_Comcast_Cable_Communications_Holdings_IncUS28072
198.15.88.174NONE20454SSASN2_-_SECURED_SERVERS_LLCUS20291
198.15.88.177NONE20454SSASN2_-_SECURED_SERVERS_LLCUS20
95.170.83.14895-170-83-148.colo.transip.net.20857TRANSIP-AS_TransIP_B.V.NL122
184.22.245.124c50.completecenter.net.21788NOC_-_Network_Operations_Center_Inc.US9901
184.82.23.160184-82-23-160.static.hostnoc.net.21788NOC_-_Network_Operations_Center_Inc.US20287
193.111.136.27NONE24961MYLOC-AS_myLoc_managed_IT_AGDE15215
108.59.12.8NONE30633LEASEWEB-US_-_Leaseweb_USA_Inc.US40
185.19.223.215NONE31408ORANGE-PALESTINE_Orange_Palestine_Group_Co._for_Technological_Investment_Joint_Stock_Private_CompanyPS36
5.11.44.107NONE31408ORANGE-PALESTINE_Orange_Palestine_Group_Co._for_Technological_Investment_Joint_Stock_Private_CompanyPS63
5.11.44.47NONE31408ORANGE-PALESTINE_Orange_Palestine_Group_Co._for_Technological_Investment_Joint_Stock_Private_CompanyPS44
173.208.159.18NONE32097WII-KC_-_WholeSale_Internet_Inc.US10141
204.12.242.186NONE32097WII-KC_-_WholeSale_Internet_Inc.US15239
172.245.14.13host.8bitmc.com.36352AS-COLOCROSSING_-_ColoCrossingUS20289
172.245.24.222portal.internalplace.us.36352AS-COLOCROSSING_-_ColoCrossingUS41
192.3.6.142.36352AS-COLOCROSSING_-_ColoCrossingUS30
192.3.6.94.36352AS-COLOCROSSING_-_ColoCrossingUS81282
42.96.154.182NONE37963CNNIC-ALIBABA-CN-NET-AP_Hangzhou_Alibaba_Advertising_Co.Ltd.CN5076
142.0.37.79NONE46664VOLUMEDRIVE_-_VolumeDriveUS3521107
199.168.139.165NONE46664VOLUMEDRIVE_-_VolumeDriveUS198255
176.58.69.26NONE56995NETSTREAM_NetStream_Technology_Joint-Stock_Private_Ltd.PS15220
37.140.235.115NONE57872PHOENIXNAP-EU_PHOENIX_NAP_LLC.NL1145
185.21.196.42NONE198725UT-AS_Ultimum_Technologies_s.r.o.CZ20286

[カテゴリ:IP電話観察日記]

by jyake