[Dshield] AOL Probing Me Big Time

Joseph Stahley 3rd jestahley3 at cox.net
Tue Jan 27 02:16:58 GMT 2004


Just took a look at my log..from 14:51 - 14:54 I had about 15 attempts each
on Local Ports 1394 - 1397 from 64.236.44.31 remote port 80. never seen this
before, any ideas?
 
01/26/04 18:11:04 IP block 64.236.44.31
Trying 64.236.44.31 at ARIN
Trying 64.236.44 at ARIN
 
OrgName:    AOL Transit Data Network 
OrgID:      ATDN
Address:    12100 Sunrise Valley Drive
City:       Reston
StateProv:  VA
PostalCode: 20191
Country:    US
 
NetRange:   64.236.0.0 - 64.236.255.255 
CIDR:       64.236.0.0/16 
NetName:    ATDN-ISP
NetHandle:  NET-64-236-0-0-1
Parent:     NET-64-0-0-0-0
NetType:    Direct Allocation
NameServer: DNS-01.ATDN.NET
NameServer: DNS-02.ATDN.NET
Comment:    ADDRESSES WITHIN THIS BLOCK ARE NON-PORTABLE
RegDate:    2000-02-02
Updated:    2002-06-19
 
TechHandle: AOL-NOC-ARIN
TechName:   America Online, Inc. 
TechPhone:  +1-703-265-4670
TechEmail:  domains at aol.net 
 
OrgAbuseHandle: AOL382-ARIN
OrgAbuseName:   Abuse 
OrgAbusePhone:  +1-703-265-4670
OrgAbuseEmail:  abuse at aol.net
 
OrgNOCHandle: AOL236-ARIN
OrgNOCName:   NOC 
OrgNOCPhone:  +1-703-265-4670
OrgNOCEmail:  noc at aol.net
 
OrgTechHandle: AOL-NOC-ARIN
OrgTechName:   America Online, Inc. 
OrgTechPhone:  +1-703-265-4670
OrgTechEmail:  domains at aol.net
 
Joseph




More information about the list mailing list