nanog mailing list archives

Re: Comcast and DGA like behavior


From: Christopher Morrow <morrowc.lists () gmail com>
Date: Wed, 25 Apr 2018 11:34:33 -0400

On Wed, Apr 25, 2018 at 11:28 AM, J. Oquendo <joquendo () e-fensive net> wrote:
Anyone else seeing DGA (1) like behavior for Comcast based
customers? If so, is there any information on it? Seeing a
lot of traffic to bogus domains all synonymous with their
networks.


don't they have a anti-botnet-automagic-walled-garden thing that's
supposed to stop this?
(also, example request RRs?)


Current thread: