Originally Posted by
Richard_Rides
One of their machines, a router or a firewall was sending TCP resets back down against incoming traffic. This is countermeasure against TCP SYN floods and other resource swamping attacks. There was quite a war being waged, it was DEFINITELY NOT a situation where a device simply failed. I don't know the network topology, but I'd guess that BikeForums was under attack and the upstream bandwidth provider was defending.
Thank you for the the interesting information, Richard, and it does make sense to me. I suspect without making any stabs at it, that IB may have a large media contract or two and that the BF servers were a collateral hit in an attack on that other account.
If you want to investigate James Bond may have to shake you and stir