IP Geolocation

Valdis Kl=?utf-8?Q?=c4=93?=tnieks valdis.kletnieks at vt.edu
Wed Oct 16 14:38:31 UTC 2019


On Wed, 16 Oct 2019 12:50:17 -0000, Ryland Kremeier said:
> >I believe we have found 1 customer that is infected with a botnet or malware.

> I've dealt with plenty of botnets working as a repair technician in the past
> but never had one change the public IP address of the user. Not entirely sure
> what this would accomplish aside from making it much easier to detect.

To detect that somebody isn't doing BCP38 filtering of their customers, you mean? :)
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 832 bytes
Desc: not available
URL: <http://mailman.nanog.org/pipermail/nanog/attachments/20191016/66444176/attachment.sig>


More information about the NANOG mailing list