I cant tell a thing but we can always presume. Sorry for those who lost up DOGE and LTC. Luckily they havent able bypass BTC withdrawals.
Though they can.
Informations on the alleged IPs: they aren't tor nodes and one of them is used by a cellular network so it's unlikely behind a proxy. They are all from the same country. So it give an idea about where the attack does come from.
$ whois 196.221.127.186
% This is the AfriNIC Whois server.
% Note: this output has been filtered.
% To receive output for a database update, use the "-B" flag.
% Information related to '196.221.49.0 - 196.221.255.255'
% No abuse contact registered for 196.221.49.0 - 196.221.255.255
inetnum: 196.221.49.0 - 196.221.255.255
netname: ADSL-Customers
descr: RT-ADSL-project
country: eg
admin-c: RT864-AFRINIC
tech-c: RT864-AFRINIC
status: Assigned PA
mnt-by: RAYA-MNT
source: AFRINIC # Filtered
parent: 196.221.0.0 - 196.221.255.255
role: Raya Telecom
address: RAYA Telecom
address: 23 Nahda St.,off Saad-el-aali st.,Maadi
address: 11431, Cairo, Egypt
phone: tel:+20-2-7680900
fax-no: tel:+20-2-7680901
admin-c: MG4315-AFRINIC
tech-c: SB1-AFRINIC
nic-hdl: RT864-AFRINIC
remarks: For any abuse complaint contact
[email protected]mnt-by: RAYA-MNT
source: AFRINIC # Filtered
$ whois 156.161.167.35
#
# ARIN WHOIS data and services are subject to the Terms of Use
# available at: https://www.arin.net/whois_tou.html
#
# If you see inaccuracies in the results, please report at
# https://www.arin.net/resources/whois_reporting/index.html
#
# Copyright 1997-2018, American Registry for Internet Numbers, Ltd.
#
NetRange: 156.161.0.0 - 156.161.255.255
CIDR: 156.161.0.0/16
NetName: AFRINIC-ERX-156-161-0-0
NetHandle: NET-156-161-0-0-1
Parent: NET156 (NET-156-0-0-0-0)
NetType: Transferred to AfriNIC
OriginAS:
Organization: African Network Information Center (AFRINIC)
RegDate: 2010-11-03
Updated: 2010-11-17
Comment: This IP address range is under AFRINIC responsibility.
Comment: Please see http://www.afrinic.net/ for further details,
Comment: or check the WHOIS server located at whois.afrinic.net.
Ref: https://rdap.arin.net/registry/ip/156.161.0.0
ResourceLink: http://afrinic.net/en/services/whois-query
ResourceLink: whois.afrinic.net
OrgName: African Network Information Center
OrgId: AFRINIC
Address: Level 11ABC
Address: Raffles Tower
Address: Lot 19, Cybercity
City: Ebene
StateProv:
PostalCode:
Country: MU
RegDate: 2004-05-17
Updated: 2015-05-04
Comment: AfriNIC - http://www.afrinic.net
Comment: The African & Indian Ocean Internet Registry
Ref: https://rdap.arin.net/registry/entity/AFRINIC
ReferralServer: whois://whois.afrinic.net
ResourceLink: http://afrinic.net/en/services/whois-query
OrgAbuseHandle: GENER11-ARIN
OrgAbuseName: Generic POC
OrgAbusePhone: +230 4666616
OrgAbuseEmail:
[email protected]OrgAbuseRef: https://rdap.arin.net/registry/entity/GENER11-ARIN
OrgTechHandle: GENER11-ARIN
OrgTechName: Generic POC
OrgTechPhone: +230 4666616
OrgTechEmail:
[email protected]OrgTechRef: https://rdap.arin.net/registry/entity/GENER11-ARIN
#
# ARIN WHOIS data and services are subject to the Terms of Use
# available at: https://www.arin.net/whois_tou.html
#
# If you see inaccuracies in the results, please report at
# https://www.arin.net/resources/whois_reporting/index.html
#
# Copyright 1997-2018, American Registry for Internet Numbers, Ltd.
#
Found a referral to whois.afrinic.net.
% This is the AfriNIC Whois server.
% Note: this output has been filtered.
% To receive output for a database update, use the "-B" flag.
% Information related to '156.161.128.0 - 156.161.191.255'
% No abuse contact registered for 156.161.128.0 - 156.161.191.255
inetnum: 156.161.128.0 - 156.161.191.255
netname: EM-3
descr: Etisalat-Misr 2G/3G subscribers
country: EG
org: ORG-EM1-AFRINIC
admin-c: SMM2-AFRINIC
tech-c: SMM2-AFRINIC
status: ASSIGNED PA
remarks: For any abuse, please direct your queries to
[email protected]mnt-by: Sherif-Magdy-MNT
mnt-lower: Sherif-Magdy-MNT
source: AFRINIC # Filtered
parent: 156.160.0.0 - 156.191.255.255
organisation: ORG-EM1-AFRINIC
org-name: ETISALAT MISR
org-type: LIR
country: EG
address: Etisalat Misr
address: S4, Down Town, 90th Street,
address: 5th Compound,
address: New Cairo, Egypt.
address: Cairo 11835
phone: tel:+20-2-35381889
phone: tel:+20-2-35381889
phone: tel:+20-2-35381889
phone: tel:+20-2-35381889
fax-no: tel:+20-2-35381072
admin-c: AFE1-AFRINIC
tech-c: AFE1-AFRINIC
mnt-ref: AFRINIC-HM-MNT
mnt-ref: etisalat-mnt
mnt-by: AFRINIC-HM-MNT
source: AFRINIC # Filtered
person: Sherif Magdy Mohamed
address: Etisalat Misr
address: S4, Down Town, 90th Street,
address: 5th Compound,
address: New Cairo, Egypt.
address: Cairo 11835
address: Egypt
phone: tel:+20-2-35381000
fax-no: tel:+20-2-35381072
nic-hdl: SMM2-AFRINIC
mnt-by: GENERATED-BDVY6DBBH98KLPSUIXSD5SUX8WDCVXTF-MNT
source: AFRINIC # Filtered
$ whois 156.218.142.74
#
# ARIN WHOIS data and services are subject to the Terms of Use
# available at: https://www.arin.net/whois_tou.html
#
# If you see inaccuracies in the results, please report at
# https://www.arin.net/resources/whois_reporting/index.html
#
# Copyright 1997-2018, American Registry for Internet Numbers, Ltd.
#
NetRange: 156.218.0.0 - 156.218.255.255
CIDR: 156.218.0.0/16
NetName: AFRINIC-ERX-156-218-0-0
NetHandle: NET-156-218-0-0-1
Parent: NET156 (NET-156-0-0-0-0)
NetType: Transferred to AfriNIC
OriginAS:
Organization: African Network Information Center (AFRINIC)
RegDate: 2010-11-03
Updated: 2010-11-17
Comment: This IP address range is under AFRINIC responsibility.
Comment: Please see http://www.afrinic.net/ for further details,
Comment: or check the WHOIS server located at whois.afrinic.net.
Ref: https://rdap.arin.net/registry/ip/156.218.0.0
ResourceLink: http://afrinic.net/en/services/whois-query
ResourceLink: whois.afrinic.net
OrgName: African Network Information Center
OrgId: AFRINIC
Address: Level 11ABC
Address: Raffles Tower
Address: Lot 19, Cybercity
City: Ebene
StateProv:
PostalCode:
Country: MU
RegDate: 2004-05-17
Updated: 2015-05-04
Comment: AfriNIC - http://www.afrinic.net
Comment: The African & Indian Ocean Internet Registry
Ref: https://rdap.arin.net/registry/entity/AFRINIC
ReferralServer: whois://whois.afrinic.net
ResourceLink: http://afrinic.net/en/services/whois-query
OrgAbuseHandle: GENER11-ARIN
OrgAbuseName: Generic POC
OrgAbusePhone: +230 4666616
OrgAbuseEmail:
[email protected]OrgAbuseRef: https://rdap.arin.net/registry/entity/GENER11-ARIN
OrgTechHandle: GENER11-ARIN
OrgTechName: Generic POC
OrgTechPhone: +230 4666616
OrgTechEmail:
[email protected]OrgTechRef: https://rdap.arin.net/registry/entity/GENER11-ARIN
#
# ARIN WHOIS data and services are subject to the Terms of Use
# available at: https://www.arin.net/whois_tou.html
#
# If you see inaccuracies in the results, please report at
# https://www.arin.net/resources/whois_reporting/index.html
#
# Copyright 1997-2018, American Registry for Internet Numbers, Ltd.
#
Found a referral to whois.afrinic.net.
% This is the AfriNIC Whois server.
% Note: this output has been filtered.
% To receive output for a database update, use the "-B" flag.
% Information related to '156.218.0.0 - 156.218.255.255'
% No abuse contact registered for 156.218.0.0 - 156.218.255.255
inetnum: 156.218.0.0 - 156.218.255.255
netname: All-39
descr: TE Data
country: EG
admin-c: TDCR1-AFRINIC
tech-c: TDCR2-AFRINIC
status: ASSIGNED PA
remarks: ====================================================
remarks: For Internet Abuse & Spam reports :
[email protected]remarks: ====================================================
mnt-by: TE-Data-MNT
source: AFRINIC # Filtered
parent: 156.192.0.0 - 156.223.255.255
role: TE Data Contact Role
address: 94 Tahrir Street, Dokki, 12311, Giza, Egypt
phone: tel:+20-2-33320700
fax-no: tel:+20-2-33320800
admin-c: TDCR2-AFRINIC
tech-c: MH7-AFRINIC
nic-hdl: TDCR1-AFRINIC
abuse-mailbox:
[email protected]mnt-by: TE-Data-MNT
source: AFRINIC # Filtered
role: TE Data Contact Role-2
address: 94 Tahrir Street, Dokki, 12311, Giza, Egypt
phone: tel:+20-2-33320700
fax-no: tel:+20-2-33320800
admin-c: TDCR2-AFRINIC
tech-c: MH7-AFRINIC
nic-hdl: TDCR2-AFRINIC
abuse-mailbox:
[email protected]mnt-by: TE-Data-MNT
source: AFRINIC # Filtered
% Information related to '156.218.128.0/18AS8452'
route: 156.218.128.0/18
descr: Telecom-Egypt-Data
origin: AS8452
mnt-lower: GEGA-MNT
mnt-by: AFRINIC-HM-MNT
source: AFRINIC # Filtered
$