通过在服务器中查看日志文件,如何日志中的连接访问地址都是同一段IP地址,基本可以肯定为cc攻击,以下:
TCP 192.168.1.3:80 192.168.1.6:2203 SYN_RECEIVED 4
TCP 192.168.1.3:80 192.168.1.6:2203 SYN_RECEIVED 4
TCP 192.168.1.3:80 192.168.1.6:2203 SYN_RECEIVED 4
TCP 192.168.1.3:80 192.168.1.6:2203 SYN_RECEIVED 4
TCP 192.168.1.3:80 192.168.1.6:2203 SYN_RECEIVED 4
本文来源:https://www.yuntue.com/post/62435.html | 云服务器网,转载请注明出处!