Skip to content

Commit 841f842

Browse files
authored
add more via Phenomite/AMP-Research
1 parent 4efb6f0 commit 841f842

File tree

1 file changed

+190
-0
lines changed

1 file changed

+190
-0
lines changed

methods.json

Lines changed: 190 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,190 @@
1+
{
2+
"attack_types_readable": {
3+
"[Ookla Speedtest": "0x00000010\t\t8080",
4+
"[UDP": "17\t\t",
5+
"[ICMP": "1\t\t",
6+
"[ICMP Dest Unreachable": "1,17\t\t",
7+
"[IPv4/Fragmented": "4\t\t",
8+
"[GRE": "47\t\t",
9+
"[IPX": "111\t\t",
10+
"[AH": "51\t\t",
11+
"[ESP": "50\t\t",
12+
"[OpenVPN Reflection": "17\t\t1194",
13+
"[VSE Flood/1": "17\t\t27015",
14+
"[RRSIG DNS Query Reflection": "002e0001",
15+
"[ANY DNS Query Reflection": "00ff0001",
16+
"[NTP Reflection": "17\t\t123",
17+
"[Chargen Reflection": "17\t\t19",
18+
"[MDNS Reflection": "17\t\t5353",
19+
"[BitTorrent Reflection": "17\t\t6881",
20+
"[CLDAP Reflection": "17\t\t389",
21+
"[STUN Reflection": "17\t\t3478",
22+
"[MSSQL Reflection": "17\t\t1434",
23+
"[SNMP Reflection": "17\t\t161",
24+
"[WSD Reflection": "17\t\t3702",
25+
"[DTLS Reflection": "17\t\t443\t\t40",
26+
"[OpenAFS Reflection": "17\t\t7001",
27+
"[ARD Reflection": "17\t\t3283",
28+
"[BFD Reflection": "17\t\t3784",
29+
"[SSDP Reflection": "17\t\t1900",
30+
"[ArmA Reflection/1": "17\t\t2302",
31+
"[ArmA Reflection/2": "17\t\t2303",
32+
"[vxWorks Reflection": "17\t\t17185",
33+
"[Plex Reflection": "17\t\t32414",
34+
"[TeamSpeak Reflection": "17\t\t9987",
35+
"[Lantronix Reflection": "17\t\t30718",
36+
"[DVR IP Reflection": "17\t\t37810",
37+
"[Jenkins Reflection": "17\t\t33848",
38+
"[Citrix Reflection": "17\t\t1604",
39+
"[NAT-PMP Reflection": "008000",
40+
"[Memcache Reflection": "17\t\t11211",
41+
"[NetBIOS Reflection": "17\t\t137",
42+
"[SIP Reflection": "17\t\t5060",
43+
"[Digiman Reflection": "17\t\t2362",
44+
"[Crestron Reflection": "17\t\t41794",
45+
"[CoAP Reflection": "17\t\t5683",
46+
"[BACnet Reflection": "17\t\t47808",
47+
"[FiveM Reflection": "17\t\t30120",
48+
"[Modbus Reflection": "17\t\t502",
49+
"[QOTD Reflection": "17\t\t17",
50+
"[ISAKMP Reflection": "17\t\t500",
51+
"[XDMCP Reflection": "17\t\t177",
52+
"[IPMI Reflection": "17\t\t623",
53+
"[Apple serialnumberd Reflection": "17\t\t626",
54+
"[UDPMIX DNS Flood": "7065616365636f7270",
55+
"[Hex UDP Flood": "2f78",
56+
"[Flood of 0x00": "0000000000000000000",
57+
"[TSource Engine Query": "54536f75726365",
58+
"[Known Botnet UDP Flood/1": "52794d47616e67",
59+
"[Known Botnet UDP Flood/2": "a6c300",
60+
"[OVH-BYPASS/1": "fefefefe",
61+
"[OVH-BYPASS/2": "4a4a4a4a",
62+
"[TeamSpeak Status Flood": "545333494e49",
63+
"[Flood of 0xFF": "fffffffffff",
64+
"[UDP getstatus Flood": "676574737461747573",
65+
"[TCP Reflection from HTTPS/1": "0x00000012\t\t443",
66+
"[TCP Reflection from HTTPS/2": "0x00000010\t\t443",
67+
"[TCP Reflection from HTTP/1": "0x00000012\t\t80",
68+
"[TCP Reflection from HTTP/2": "0x00000010\t\t80",
69+
"[TCP Reflection from BGP/1": "0x00000012\t\t179",
70+
"[TCP Reflection from BGP/2": "0x00000010\t\t179",
71+
"[TCP Reflection from SMTP/1": "0x00000012\t\t465",
72+
"[TCP Reflection from SMTP/2": "0x00000010\t\t465",
73+
"[TCP SYN-ACK": "0x00000012",
74+
"[TCP PSH-ACK": "0x00000018",
75+
"[TCP RST-ACK": "0x00000014",
76+
"[TCP FIN": "0x00000001",
77+
"[TCP SYN": "0x00000002",
78+
"[TCP PSH": "0x00000008",
79+
"[TCP URG": "0x00000020",
80+
"[TCP RST": "0x00000004",
81+
"[TCP ACK": "0x00000010",
82+
"[Unset TCP Flags": "0x00000000",
83+
"[TCP SYN-ECN-CWR": "0x000000c2",
84+
"[TCP SYN-ECN": "0x00000042",
85+
"[TCP SYN-CWR": "0x00000082",
86+
"[TCP SYN-PSH-ACK-URG": "0x0000003a",
87+
"[TCP SYN-ACK-ECN-CWR": "0x000000d2",
88+
"[TCP PSH-ACK-URG": "0x00000038",
89+
"[TCP FIN-SYN-RST-PSH-ACK-URG": "0x0000003f",
90+
"[TCP RST-ACK-URG-CWR-Reserved": "0x000004b4",
91+
"[TCP SYN-PSH-URG-ECN-CWR-Reserved": "0x000004ea",
92+
"[TCP FIN-RST-PSH-ECN-CWR-Reserved": "0x00000ccd",
93+
"[TCP FIN-RST-PSH-ACK-URG-ECN-CWR-Reserved": "0x00000cfd",
94+
"[Apple serial number Reflection": "17 626"
95+
},
96+
"attack_types": {
97+
"[Ookla Speedtest": "0x00000010\t\t8080",
98+
"[UDP": "17\t\t",
99+
"[ICMP": "1\t\t",
100+
"[ICMP Dest Unreachable": "1,17\t\t",
101+
"[IPv4/Fragmented": "4\t\t",
102+
"[GRE": "47\t\t",
103+
"[IPX": "111\t\t",
104+
"[AH": "51\t\t",
105+
"[ESP": "50\t\t",
106+
"[OpenVPN Reflection": "17\t\t1194",
107+
"[VSE Flood/1": "17\t\t27015",
108+
"[RRSIG DNS Query Reflection": "002e0001",
109+
"[ANY DNS Query Reflection": "00ff0001",
110+
"[NTP Reflection": "17\t\t123",
111+
"[Chargen Reflection": "17\t\t19",
112+
"[MDNS Reflection": "17\t\t5353",
113+
"[BitTorrent Reflection": "17\t\t6881",
114+
"[CLDAP Reflection": "17\t\t389",
115+
"[STUN Reflection": "17\t\t3478",
116+
"[MSSQL Reflection": "17\t\t1434",
117+
"[SNMP Reflection": "17\t\t161",
118+
"[WSD Reflection": "17\t\t3702",
119+
"[DTLS Reflection": "17\t\t443\t\t40",
120+
"[OpenAFS Reflection": "17\t\t7001",
121+
"[ARD Reflection": "17\t\t3283",
122+
"[BFD Reflection": "17\t\t3784",
123+
"[SSDP Reflection": "17\t\t1900",
124+
"[ArmA Reflection/1": "17\t\t2302",
125+
"[ArmA Reflection/2": "17\t\t2303",
126+
"[vxWorks Reflection": "17\t\t17185",
127+
"[Plex Reflection": "17\t\t32414",
128+
"[TeamSpeak Reflection": "17\t\t9987",
129+
"[Lantronix Reflection": "17\t\t30718",
130+
"[DVR IP Reflection": "17\t\t37810",
131+
"[Jenkins Reflection": "17\t\t33848",
132+
"[Citrix Reflection": "17\t\t1604",
133+
"[NAT-PMP Reflection": "008000",
134+
"[Memcache Reflection": "17\t\t11211",
135+
"[NetBIOS Reflection": "17\t\t137",
136+
"[SIP Reflection": "17\t\t5060",
137+
"[Digiman Reflection": "17\t\t2362",
138+
"[Crestron Reflection": "17\t\t41794",
139+
"[CoAP Reflection": "17\t\t5683",
140+
"[BACnet Reflection": "17\t\t47808",
141+
"[FiveM Reflection": "17\t\t30120",
142+
"[Modbus Reflection": "17\t\t502",
143+
"[QOTD Reflection": "17\t\t17",
144+
"[ISAKMP Reflection": "17\t\t500",
145+
"[XDMCP Reflection": "17\t\t177",
146+
"[IPMI Reflection": "17\t\t623",
147+
"[Apple serialnumberd Reflection": "17\t\t626",
148+
"[UDPMIX DNS Flood": "7065616365636f7270",
149+
"[Hex UDP Flood": "2f78",
150+
"[Flood of 0x00": "0000000000000000000",
151+
"[TSource Engine Query": "54536f75726365",
152+
"[Known Botnet UDP Flood/1": "52794d47616e67",
153+
"[Known Botnet UDP Flood/2": "a6c300",
154+
"[OVH-BYPASS/1": "fefefefe",
155+
"[OVH-BYPASS/2": "4a4a4a4a",
156+
"[TeamSpeak Status Flood": "545333494e49",
157+
"[Flood of 0xFF": "fffffffffff",
158+
"[UDP getstatus Flood": "676574737461747573",
159+
"[TCP Reflection from HTTPS/1": "0x00000012\t\t443",
160+
"[TCP Reflection from HTTPS/2": "0x00000010\t\t443",
161+
"[TCP Reflection from HTTP/1": "0x00000012\t\t80",
162+
"[TCP Reflection from HTTP/2": "0x00000010\t\t80",
163+
"[TCP Reflection from BGP/1": "0x00000012\t\t179",
164+
"[TCP Reflection from BGP/2": "0x00000010\t\t179",
165+
"[TCP Reflection from SMTP/1": "0x00000012\t\t465",
166+
"[TCP Reflection from SMTP/2": "0x00000010\t\t465",
167+
"[TCP SYN-ACK": "0x00000012",
168+
"[TCP PSH-ACK": "0x00000018",
169+
"[TCP RST-ACK": "0x00000014",
170+
"[TCP FIN": "0x00000001",
171+
"[TCP SYN": "0x00000002",
172+
"[TCP PSH": "0x00000008",
173+
"[TCP URG": "0x00000020",
174+
"[TCP RST": "0x00000004",
175+
"[TCP ACK": "0x00000010",
176+
"[Unset TCP Flags": "0x00000000",
177+
"[TCP SYN-ECN-CWR": "0x000000c2",
178+
"[TCP SYN-ECN": "0x00000042",
179+
"[TCP SYN-CWR": "0x00000082",
180+
"[TCP SYN-PSH-ACK-URG": "0x0000003a",
181+
"[TCP SYN-ACK-ECN-CWR": "0x000000d2",
182+
"[TCP PSH-ACK-URG": "0x00000038",
183+
"[TCP FIN-SYN-RST-PSH-ACK-URG": "0x0000003f",
184+
"[TCP RST-ACK-URG-CWR-Reserved": "0x000004b4",
185+
"[TCP SYN-PSH-URG-ECN-CWR-Reserved": "0x000004ea",
186+
"[TCP FIN-RST-PSH-ECN-CWR-Reserved": "0x00000ccd",
187+
"[TCP FIN-RST-PSH-ACK-URG-ECN-CWR-eserved": "0x00000cfd",
188+
"[Apple serial number Reflection": "17 626"
189+
}
190+
}

0 commit comments

Comments
 (0)