小鸡莫名其妙的被D了,从昨天开始,最近并没有使用我那个域名。自己暴露的可能性很小。把我的流量给打没了。
大佬们帮我分析下哪个ip最可疑吧。谢谢了
34.222.231.188 – – [17/Jul/2019:01:50:32 +0800] "GET / HTTP/1.1" 200 6677 "-" "Go-http-client/1.1" "qxu1194740091.my3w.com" "text/html" "/usr/home/qxu1194740091/htdocs/index.php" 1529887
183.136.190.62 – – [17/Jul/2019:03:41:07 +0800] "GET / HTTP/1.1" 200 29827 "-" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/35.0.1916.153 Safari/537.36" "qxu1194740091.my3w.com" "text/html" "/usr/home/qxu1194740091/htdocs/index.php" 513572
183.136.190.62 – – [17/Jul/2019:04:15:16 +0800] "GET / HTTP/1.1" 200 29827 "-" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/35.0.1916.153 Safari/537.36" "qxu1194740091.my3w.com" "text/html" "/usr/home/qxu1194740091/htdocs/index.php" 772588
104.198.98.142 – – [17/Jul/2019:06:31:52 +0800] "GET /admin/kcfinder/browse.php HTTP/1.1" 404 – "-" "Mozilla/5.0 (Windows NT 5.1; rv:22.0) Gecko/20100101 Firefox/22.0 Paros/3.2.13" "qxu1194740091.my3w.com" "text/html" "/usr/home/qxu1194740091/htdocs/index.php" 550066
124.88.112.253 – – [17/Jul/2019:08:01:20 +0800] "GET / HTTP/1.1" 200 6677 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64; rv:7.0.1) Gecko/20100101 Firefox/7.0.1" "qxu1194740091.my3w.com" "text/html" "/usr/home/qxu1194740091/htdocs/index.php" 578536
124.88.112.145 – – [17/Jul/2019:08:12:34 +0800] "GET / HTTP/1.1" 200 6677 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64; rv:7.0.1) Gecko/20100101 Firefox/7.0.1" "qxu1194740091.my3w.com" "text/html" "/usr/home/qxu1194740091/htdocs/index.php" 686465
124.88.112.145 – – [17/Jul/2019:08:12:42 +0800] "GET /%e5%85%a8%e9%83%a8%e5%9c%b0%e5%9d%80.txt HTTP/1.1" 404 20 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64; rv:7.0.1) Gecko/20100101 Firefox/7.0.1" "qxu1194740091.my3w.com" "text/html" "/usr/home/qxu1194740091/htdocs/index.php" 333957
124.88.112.145 – – [17/Jul/2019:08:12:42 +0800] "GET /photo3.asp HTTP/1.1" 404 20 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64; rv:7.0.1) Gecko/20100101 Firefox/7.0.1" "qxu1194740091.my3w.com" "text/html" "/usr/home/qxu1194740091/htdocs/index.php" 310096
124.88.112.145 – – [17/Jul/2019:08:12:42 +0800] "GET /yt9077.asp HTTP/1.1" 404 20 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64; rv:7.0.1) Gecko/20100101 Firefox/7.0.1" "qxu1194740091.my3w.com" "text/html" "/usr/home/qxu1194740091/htdocs/index.php" 313449
124.88.112.145 – – [17/Jul/2019:08:12:42 +0800] "GET /feng.txt HTTP/1.1" 404 20 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64; rv:7.0.1) Gecko/20100101 Firefox/7.0.1" "qxu1194740091.my3w.com" "text/html" "/usr/home/qxu1194740091/htdocs/index.php" 453602
124.88.112.145 – – [17/Jul/2019:08:12:42 +0800] "GET /index.htm HTTP/1.1" 404 20 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64; rv:7.0.1) Gecko/20100101 Firefox/7.0.1" "qxu1194740091.my3w.com" "text/html" "/usr/home/qxu1194740091/htdocs/index.php" 562821
124.88.112.145 – – [17/Jul/2019:08:12:42 +0800] "GET /yl.txt HTTP/1.1" 404 20 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64; rv:7.0.1) Gecko/20100101 Firefox/7.0.1" "qxu1194740091.my3w.com" "text/html" "/usr/home/qxu1194740091/htdocs/index.php" 611345
124.88.112.145 – – [17/Jul/2019:08:12:42 +0800] "GET /zk.asp HTTP/1.1" 404 20 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64; rv:7.0.1) Gecko/20100101 Firefox/7.0.1" "qxu1194740091.my3w.com" "text/html" "/usr/home/qxu1194740091/htdocs/index.php" 637733
124.88.112.145 – – [17/Jul/2019:08:12:42 +0800] "GET /xc.asp HTTP/1.1" 404 20 "-" "Mozilla/5.0 (Windows NT 6.1; WOW64; rv:7.0.1) Gecko/20100101 Firefox/7.0.1" "qxu1194740091.my3w.com" "text/html" "/usr/home/qxu1194740091/htdocs/index.php" 618171
这是刚开始的几个ip。下面都是同一个了。
广西网友:也有同样的疑问
河北网友:我的小鸡是在阿里上的,是不是躺枪了啊
河北网友:183.136.190.62 这个IP
河北网友:大佬把ip指给你了
北京网友:又有新发现,
http://xinshich.com/%E6%9D%A5%E8%AE%BF%E8%AE%B0%E5%BD%95/
这个好像也被打了。而且也有这个183.136.190.62
北京网友:知道哪个可疑也没什么用吧。。
广东网友:我又看到一家,然后查了下这两家都是阿里数据中心的
http://www.manfenwx.com/ls/2018-10-22.html
看来我是被躺枪了
贵州网友:我看了下都是阿里数据中心,我估计是躺枪了
河南网友:被dd的话看ip没啥用吧
楼主你站点什么内容?
黑龙江网友:被dd的话看ip没啥用吧
楼主你站点什么内容?