全球主机交流论坛

 找回密码
 注册

QQ登录

只需一步,快速开始

CeraNetworks网络延迟测速工具IP归属甄别会员请立即修改密码
查看: 3932|回复: 39
打印 上一主题 下一主题

aws 还是不要乱租给别人,给坛子里的老哥们提个醒

[复制链接]
跳转到指定楼层
1#
发表于 2019-4-4 22:45:33 | 只看该作者 回帖奖励 |倒序浏览 |阅读模式
本帖最后由 ff55 于 2019-4-4 22:55 编辑

长期以来 两个号一直出租日本新加坡 lightsail给坛友,至今没有骗过一个人。今天收到aws的警告邮件

We've received a report(s) that your AWS resource(s) listed in the 'Affected resources' tab has been implicated in activity that resembles a Denial of Service attack against remote hosts; please review the information provided below about the activity.

Please take action to stop the reported activity. You would have also received an email notification from [email protected] with this same report. Please reply directly to that email with details of the corrective actions you have taken. If you do not consider the activity described in these reports to be abusive, please reply to that email with details of your use case.

If you're unaware of this activity, it's possible that your environment has been compromised by an external attacker, or a vulnerability is allowing your machine to be used in a way that it was not intended.

We are unable to assist you with troubleshooting or technical inquiries. However, for guidance on securing your instance, we recommend reviewing the following resources:

* Amazon EC2 Security Groups User Guide:
https://docs.aws.amazon.com/AWSEC2/latest/UserGuide/using-network-security.html (Linux)
https://docs.aws.amazon.com/AWSEC2/latest/WindowsGuide/using-network-security.html (Windows)

* Tips for Securing EC2 Instances:
https://aws.amazon.com/articles/1233 (Linux)
https://aws.amazon.com/articles/1767 (Windows)

* AWS Security Best Practices:
https://d0.awsstatic.com/whitepapers/Security/AWS_Security_Best_Practices.pdf

If you require further assistance with this matter, you can take advantage of our developer forums:

https://forums.aws.amazon.com/index.jspa

Or, if you are subscribed to a Premium Support package, you may reach out for one-on-one assistance here:

https://console.aws.amazon.com/support/home#/case/create?issueType=technical

Please remember that you are responsible for ensuring that your instances and all applications are properly secured. If you require any further information to assist you in identifying or rectifying this issue, please let us know in a direct reply to the email you received from [email protected].

Regards,
AWS Abuse

Abuse Case Number: XXXXXXXX

---Beginning of forwarded report(s)---



* Log Extract:
<<<
AWS Account: 596796963688
Report begin time: 03-04-2019 14:34:19 UTC
Report end time: 03-04-2019 14:35:19 UTC

Protocol: TCP
Remote IP: 183.240.72.121
Remote port(s): 8848

Total bytes sent: 248946237
Total packets sent: 273267
Total bytes received: 0
Total packets received: 0
---------------------------
>>>

* Comments:
<<<

>>>

讲的是某个人拿去攻击其他人。目前账号处于限制状态,可以登录,不能开机器,攻击机器处于黑洞,无法访问外网。这种情况几天前就发生了,我一直以为是aws的网络,换了ip就好了,直到今天登录aws账号,说我有一个事没处理,就是上面这个,让我发邮件解释。然后我登录了下邮箱。。


至于这个人,没骗人,所以就不发他的QQ号以及支付宝了,如果跟客服没py成功,一定会公布出来。
现在求问论坛老哥,怎么处理这事,怎么回复客服
2#
 楼主| 发表于 2019-4-4 22:47:51 | 只看该作者
前几天没注意,封了机器的出流量,但是可以建机器,现在新建机器都不行了
3#
 楼主| 发表于 2019-4-4 22:49:58 | 只看该作者

租了他10天,用了400G
cherbim 该用户已被删除
4#
发表于 2019-4-4 22:50:25 来自手机 | 只看该作者
提示: 作者被禁止或删除 内容自动屏蔽
5#
发表于 2019-4-4 22:53:57 来自手机 | 只看该作者
还好不是我,我租到期了虽然,楼猪人很好
6#
发表于 2019-4-4 22:56:24 | 只看该作者
你永远不知道别人会拿来干什么,所以租这个事情,不仅是aws,适用于几乎所有小鸡
7#
 楼主| 发表于 2019-4-4 22:59:37 | 只看该作者
rux 发表于 2019-4-4 22:56
你永远不知道别人会拿来干什么,所以租这个事情,不仅是aws,适用于几乎所有小鸡  ...

现在咋回复啊,这个重要,撕逼才没那个工夫
8#
发表于 2019-4-4 23:00:25 | 只看该作者
只会开机场
9#
发表于 2019-4-4 23:02:39 | 只看该作者
ff55 发表于 2019-4-4 22:59
现在咋回复啊,这个重要,撕逼才没那个工夫

不知道,没经历过这种情况
10#
发表于 2019-4-4 23:07:42 | 只看该作者
自己信息申请的号还是不要随便分享吧。。。
您需要登录后才可以回帖 登录 | 注册

本版积分规则

Archiver|手机版|小黑屋|全球主机交流论坛

GMT+8, 2025-12-7 23:47 , Processed in 0.113579 second(s), 9 queries , Gzip On, MemCache On.

Powered by Discuz! X3.4

© 2001-2023 Discuz! Team.

快速回复 返回顶部 返回列表