On monday we had a downstream customer with a hacked server (some bot net root 
kit). The server "attacked" four Facebook dns servers with 20 parallel udp 53 
"floods", each about 2.5Mbps, no idea what packet content.

Customer told me that there was a known bug in Plesk. Maybe there really was a 
botnet attack against Facebook today :) does anyone have any specific 
information? would be interesting. 



On Mar 7, 2012, at 2:39 PM, Lukas Eisenberger wrote:

> I am so glad that I deleted my account weeks ago :-D
> 
> cheers
> 
> Luke
> 
> Am 07.03.2012 08:23, schrieb Marco Fretz:
>> Good morning everyone,
>> 
>> Does anyone have an idea what happened to Facebook DNS servers? "A"
>> www.facebook.com DNS queries are not answered anymore. I'm not sure
>> but looks like the error exists since about 07:15 today.
>> 
>> on facebookdown.com were a lot of reports from around the world, now
>> this site is also dead (to many mysql connections, which possibly
>> means to many users...).
>> 
>> 
>> greets
>> Marco
>> 
>> 
>> _______________________________________________
>> swinog mailing list
>> [email protected]
>> http://lists.swinog.ch/cgi-bin/mailman/listinfo/swinog
> 
> 
> 
> _______________________________________________
> swinog mailing list
> [email protected]
> http://lists.swinog.ch/cgi-bin/mailman/listinfo/swinog



_______________________________________________
swinog mailing list
[email protected]
http://lists.swinog.ch/cgi-bin/mailman/listinfo/swinog

Antwort per Email an