全面解析DDOS攻击 – 8090安全门户
Tags
attack-pattern: Denial Of Service
Common Information
Type Value
UUID b6777027-9e33-49fa-a611-b83e486d5a69
Fingerprint 3b763171a5d9befb
Analysis status DONE
Considered CTI value 0
Text language
Published Sept. 2, 2016, midnight
Added to db Jan. 19, 2023, 12:08 a.m.
Last updated Nov. 11, 2024, 8:25 a.m.
Headline 全面解析DDOS攻击
Title 全面解析DDOS攻击 – 8090安全门户
Detected Hints/Tags/Attributes 4/1/15
Source URLs
Attributes
Details Type #Events CTI Value
Details Domain 46
www.yahoo.com
Details IPv4 1
66.218.71.87
Details IPv4 1
66.218.71.88
Details IPv4 1
66.218.71.89
Details IPv4 1
66.218.71.80
Details IPv4 1
66.218.71.81
Details IPv4 1
66.218.71.83
Details IPv4 1
66.218.71.84
Details IPv4 1
66.218.71.86
Details IPv4 132
10.0.0.0
Details IPv4 124
192.168.0.0
Details IPv4 81
172.16.0.0
Details Url 1
http://www.mytarget.com,有一个重点就是确定到底有多少台主机在支持这个站点,一个大的网站可能有很多台主机利用负载均衡技术提供同一个网站的www服务。以yahoo为例,一般会有下列地址都是提供http://www.yahoo.com
Details Url 8
http://www.yahoo.com
Details Windows Registry Key 1
HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters里