vps stop, IP 被 DDOS,之后取消路由 15 分钟。 - V2EX
V2EX = way to explore
V2EX 是一个关于分享和探索的地方
Sign Up Now
For Existing Member  Sign In
通过以下 Referral 链接购买 DigitalOcean 主机,你将可以帮助 V2EX 持续发展
DigitalOcean - SSD Cloud Servers
xinghen57
V2EX    VPS

vps stop, IP 被 DDOS,之后取消路由 15 分钟。

  •  
  •   xinghen57 Feb 5, 2024 1944 views
    This topic created in 812 days ago, the information mentioned may be changed or developed.

    昨晚把 VPS stop 了,早期看到邮件,IP 被 DDOS 然后被取消路由 15 分钟。

    各位遇到过类似情况么?不太理解这背后逻辑。

    我关了 vps ,IP 还会存在么?

    Email 原文

    IP 45.x.x.x is currently under a (D)DoS attack and has been nullrouted by our IP transit providers for a period of 900 seconds.

    To see more details about the attack please login to KiwiVM while attack is active.

    14 replies    2024-02-05 22:11:26 +08:00
    x86
        1
    x86  
       Feb 5, 2024
    搬瓦工吗,被轮段打了
    xinghen57
        2
    xinghen57  
    OP
       Feb 5, 2024
    @x86 #1
    我不太理解的是机器 stop ,ip 应该相当于不存在了。这时还能扫段?

    还是说机器虽然 stop ,但其实网卡(或虚拟网卡)还出于工作状态,所以 ip 可以正常被扫到?
    PerFectTime
        3
    PerFectTime  
       Feb 5, 2024   1
    流量还是会进机房路由,关机没用
    xinghen57
        4
    xinghen57  
    OP
       Feb 5, 2024
    @PerFectTime #3 感谢解惑
    Comyn
        5
    Comyn  
       Feb 5, 2024
    我也收到邮件了
    xinghen57
        6
    xinghen57  
    OP
       Feb 5, 2024
    @Comyn #5 握个手
    someonedeng
        7
    someonedeng  
       Feb 5, 2024
    看来都收到了哈哈
    xinghen57
        8
    xinghen57  
    OP
       Feb 5, 2024
    @someonedeng #7 攻击者的做法有什么意义?影响不大,时间又在深夜。怎么有点拿钱后意思意思?
    Nin
        9
    Nin  
       Feb 5, 2024
    @xinghen57 #8 瓦工把 hk 拉直了,影响到某些人的利益罢了
    azraeljack
        10
    azraeljack  
       Feb 5, 2024 div class="sep5">
    瓦工的机器吧,我的也收到了
    xinghen57
        11
    xinghen57  
    OP
       Feb 5, 2024
    @Nin #9 时间拉长估计用处会打点
    xinghen57
        12
    xinghen57  
    OP
       Feb 5, 2024
    @xinghen57 #11 同道中人
    wayne77
        13
    wayne77  
       Feb 5, 2024
    我也收到了,同 45 段,瓦工 hk
    galaxyskyknight2
        14
    galaxyskyknight2  
       Feb 5, 2024
    经测试,只有去程是 cn2 的路由受影响,去程是 cmi 的不受影响。所以,攻击者针对性很明显。
    About     Help     Advertise     Blog     API     FAQ     Solana     3570 Online   Highest 6679       Select Language
    创意工作者们的社区
    World is powered by solitude
    VERSION: 3.9.8.5 62ms UTC 04:51 PVG 12:51 LAX 21:51 JFK 00:51
    Do have faith in what you're doing.
    ubao msn snddm index pchome yahoo rakuten mypaper meadowduck bidyahoo youbao zxmzxm asda bnvcg cvbfg dfscv mmhjk xxddc yybgb zznbn ccubao uaitu acv GXCV ET GDG YH FG BCVB FJFH CBRE CBC GDG ET54 WRWR RWER WREW WRWER RWER SDG EW SF DSFSF fbbs ubao fhd dfg ewr dg df ewwr ewwr et ruyut utut dfg fgd gdfgt etg dfgt dfgd ert4 gd fgg wr 235 wer3 we vsdf sdf gdf ert xcv sdf rwer hfd dfg cvb rwf afb dfh jgh bmn lgh rty gfds cxv xcv xcs vdas fdf fgd cv sdf tert sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf shasha9178 shasha9178 shasha9178 shasha9178 shasha9178 liflif2 liflif2 liflif2 liflif2 liflif2 liblib3 liblib3 liblib3 liblib3 liblib3 zhazha444 zhazha444 zhazha444 zhazha444 zhazha444 dende5 dende denden denden2 denden21 fenfen9 fenf619 fen619 fenfe9 fe619 sdf sdf sdf sdf sdf zhazh90 zhazh0 zhaa50 zha90 zh590 zho zhoz zhozh zhozho zhozho2 lislis lls95 lili95 lils5 liss9 sdf0ty987 sdft876 sdft9876 sdf09876 sd0t9876 sdf0ty98 sdf0976 sdf0ty986 sdf0ty96 sdf0t76 sdf0876 df0ty98 sf0t876 sd0ty76 sdy76 sdf76 sdf0t76 sdf0ty9 sdf0ty98 sdf0ty987 sdf0ty98 sdf6676 sdf876 sd876 sd876 sdf6 sdf6 sdf9876 sdf0t sdf06 sdf0ty9776 sdf0ty9776 sdf0ty76 sdf8876 sdf0t sd6 sdf06 s688876 sd688 sdf86