这是一个创建于 5180 天前的主题,其中的信息可能已经有所发展或是发生改变。
我只在linode后台装了个Debian 5.0 64bit,boot了之后啥都没做,连ssh都没连过,就去做别的事儿了。
今天突然收到邮件,各项指标超标,我就无语了。
We have received a report of malicious activity from an IP address assigned to you. Please investigate this issue and update this ticket within 24 hours to avoid disruptions in service.
Regards,
Dave
==
Note: Local timezone is -0500 (EST)
[Dec 20 16:45:01] NOTICE[17075] chan_sip.c: Registration from '"328516435"<sip:328516435@216.23.39.170>' failed for '173.255.192.126' - No matching peer found
[Dec 20 16:45:01] NOTICE[17075] chan_sip.c: Registration from '"3288103834"<sip:3288103834@216.23.39.170>' failed for '173.255.192.126' - No matching peer found
[Dec 20 16:45:01] NOTICE[17075] chan_sip.c: Registration from '"100"<sip:100@216.23.39.170>' failed for '173.255.192.126' - No matching peer found
[Dec 20 16:45:01] NOTICE[17075] chan_sip.c: Registration from '"101"<sip:101@216.23.39.170>' failed for '173.255.192.126' - No matching peer found
[Dec 20 16:45:01] NOTICE[17075] chan_sip.c: Registration from '"102"<sip:102@216.23.39.170>' failed for '173.255.192.126' - No matching peer found
[Dec 20 16:45:01] NOTICE[17075] chan_sip.c: Registration from '"103"<sip:103@216.23.39.170>' failed for '173.255.192.126' - No matching peer found
[Dec 20 16:45:01] NOTICE[17075] chan_sip.c: Registration from '"104"<sip:104@216.23.39.170>' failed for '173.255.192.126' - No matching peer found
......................
..............
我问客服是怎么回事,他的回复:“As we are an unmanaged service, we do not have access to the internals of customer Linodes and cannot advise what the specific cause of this issue is.”
我一看全是同一个ip的,我估计是这个ip在攻击我,难道linode没有防攻击的吗?
4 条回复 • 1970-01-01 08:00:00 +08:00
 |
|
1
bighearted 2010-12-21 14:44:35 +08:00
没有防攻击,国外有防攻击的少
|
 |
|
2
xinzhi 2010-12-21 14:47:32 +08:00
什么攻击能用掉100G的流量呢。可能是重灌系统产生的,每个系统大概3~5g.
|
 |
|
3
kukat 2010-12-21 14:50:31 +08:00
楼主中奖了,很可能是之前用这个ip的家伙得罪人了,人家DDOS,这家伙受不了换服务器/ip了,然后你就拿到这个ip了,然后人家DDOS还在继续,哈哈
|
 |
|
4
apple 2010-12-21 14:56:19 +08:00
@ kukat @ xinzhi 购买是3天前的事儿,而且当天晚上挂上系统之后就没动过了。不会是我重装系统的流量;如果真是被人DDOS了,那我真悲剧了,哎。
|