I spoke to tier 3 tech support as well as security/abuse. I was told by the abuse department to send this email over and send an additional one to the ISP these attacks are originating from.
My TWC account phone number is ----------, but you can reach me directly at---------- at any time of the day. My billing name and address is:
---
---
---
I am a contractor for CWA Local 1109 but there is only so much I can do to dodge a DDoS attack on a home network, and I would not tamper with a network that I do not manage directly (TWC).
Below is the most recent log. The ICMP request source IP addresses is the Comcast user I am being attacked by.
2015-07-23 20:08:54.00 [DOS] SOURCE IP=195.64.149.123 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-23 20:08:54.00 [DOS] SOURCE IP=195.64.149.123 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-23 20:09:05.00 ICMP-request: SOURCE IP=68.32.149.197 DESTINATION IP=24.168.16.90 PROTOCOL=ICMP
2015-07-23 20:09:09.00 UNPRIV UDP packet: SOURCE IP=70.70.184.157 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-23 20:09:25.00 ICMP-request: SOURCE IP=68.32.149.197 DESTINATION IP=24.168.16.90 PROTOCOL=ICMP
2015-07-23 20:09:45.00 ICMP-request: SOURCE IP=68.32.149.197 DESTINATION IP=24.168.16.90 PROTOCOL=ICMP
2015-07-23 20:09:46.00 UNPRIV UDP packet: SOURCE IP=85.24.198.178 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-23 20:09:46.00 UNPRIV UDP packet: SOURCE IP=85.24.198.178 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-23 20:10:10.00 ICMP-request: SOURCE IP=68.32.149.197 DESTINATION IP=24.168.16.90 PROTOCOL=ICMP
2015-07-23 20:10:11.00 UNPRIV UDP packet: SOURCE IP=50.71.98.158 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-23 20:10:11.00 UNPRIV UDP packet: SOURCE IP=50.71.98.158 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-23 20:10:22.00 UNPRIV UDP packet: SOURCE IP=76.172.69.126 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-23 20:10:35.00 ICMP-request: SOURCE IP=68.32.149.197 DESTINATION IP=24.168.16.90 PROTOCOL=ICMP
2015-07-23 20:10:54.00 UNPRIV UDP packet: SOURCE IP=86.52.54.1 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-23 20:10:54.00 UNPRIV UDP packet: SOURCE IP=86.52.54.1 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-23 20:10:55.00 ICMP-request: SOURCE IP=68.32.149.197 DESTINATION IP=24.168.16.90 PROTOCOL=ICMP
2015-07-23 20:11:20.00 ICMP-request: SOURCE IP=68.32.149.197 DESTINATION IP=24.168.16.90 PROTOCOL=ICMP
2015-07-23 20:11:40.00 ICMP-request: SOURCE IP=68.32.149.197 DESTINATION IP=24.168.16.90 PROTOCOL=ICMP
2015-07-23 20:11:41.00 UNPRIV UDP packet: SOURCE IP=84.215.68.246 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-23 20:11:41.00 UNPRIV UDP packet: SOURCE IP=84.215.68.246 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-23 20:12:05.00 ICMP-request: SOURCE IP=68.32.149.197 DESTINATION IP=24.168.16.90 PROTOCOL=ICMP
2015-07-23 20:12:12.00 UNPRIV UDP packet: SOURCE IP=24.7.210.53 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-23 20:12:12.00 UNPRIV UDP packet: SOURCE IP=24.7.210.53 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-23 20:12:25.00 ICMP-request: SOURCE IP=68.32.149.197 DESTINATION IP=24.168.16.90 PROTOCOL=ICMP
2015-07-23 20:12:26.00 UNPRIV UDP packet: SOURCE IP=79.165.140.22 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-23 20:12:39.00 UNPRIV UDP packet: SOURCE IP=73.27.99.252 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-23 20:12:45.00 ICMP-request: SOURCE IP=68.32.149.197 DESTINATION IP=24.168.16.90 PROTOCOL=ICMP
2015-07-23 20

05.00 ICMP-request: SOURCE IP=68.32.149.197 DESTINATION IP=24.168.16.90 PROTOCOL=ICMP
2015-07-23 20

07.00 UNPRIV UDP packet: SOURCE IP=146.52.91.193 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-23 20

07.00 UNPRIV UDP packet: SOURCE IP=146.52.91.193 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
Below you will find the DDoS attacks that originated from the prior night. It started at 8:30pm EST and lasted roughly an hour until I plugged my router in.
2015-07-22 19:45:16.00 [DOS] SOURCE IP=24.118.61.200 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-22 19:45:28.00 [DOS] SOURCE IP=92.221.103.195 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-22 19:45:28.00 [DOS] SOURCE IP=80.167.161.174 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-22 19:45:28.00 [DOS] SOURCE IP=95.155.228.207 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-22 19:45:31.00 [DOS] SOURCE IP=95.155.228.207 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-22 19:45:31.00 [DOS] SOURCE IP=95.155.228.207 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-22 19:45:31.00 [DOS] SOURCE IP=95.155.228.207 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-22 19:45:32.00 [DOS] SOURCE IP=67.249.153.161 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-22 19:45:32.00 [DOS] SOURCE IP=87.72.9.252 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-22 19:45:32.00 [DOS] SOURCE IP=87.72.9.252 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-22 19:45:32.00 [DOS] SOURCE IP=87.72.9.252 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-22 19:45:33.00 [DOS] SOURCE IP=87.72.9.252 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-22 19:45:33.00 UNPRIV UDP packet: SOURCE IP=58.11.1.233 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-22 19:45:36.00 [DOS] SOURCE IP=79.164.241.127 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-22 19:45:42.00 [DOS] SOURCE IP=24.141.99.146 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-22 19:45:42.00 [DOS] SOURCE IP=70.119.146.245 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-22 19:45:42.00 [DOS] SOURCE IP=84.195.187.216 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-22 19:45:42.00 [DOS] SOURCE IP=96.54.163.203 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-22 19:45:43.00 [DOS] SOURCE IP=68.174.246.44 DESTINATION IP=255.255.255.255 PROTOCOL=UDP
2015-07-22 19:45:43.00 [DOS] SOURCE IP=203.79.97.67 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
2015-07-22 19:45:43.00 [DOS] SOURCE IP=203.79.97.67 DESTINATION IP=24.168.16.90 PROTOCOL=UDP
ICMP requests should not be taken unless directly from an ISP troubleshooting a customer.
Should you need additional information I will be glad to provide it.
Thank you.