[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [cobalt-users] weird error in logs



On 9/18/01 at 12:17 PM Bob Coomes wrote:

|I've started getting the messages below in my logs, it's repeated approx
|50/hour.  Any ideas?
|
|Sep 18 12:00:49 dns1 named[452]: sysquery: findns error (NXDOMAIN) on
|dns1.charlestonsolutions.com?
|Sep 18 12:00:49 dns1 named[452]: sysquery: findns error (NXDOMAIN) on
|dns2.charlestonsolutions.com?
|
=============

There appears to be some manner of widespread DDoS attack underway.  My logs are showing more hits in a second than I usually have gotten in a full day.  Most of the attacks appear to be going after Microsoft IIS services, looking for trojans that may have been planted during Microsoft's code red abomination.