·¢²¼Ê±¼ä:2020-09-11 08:30:26 ÎÄÕÂÀ´Ô´:ÓêÁÖľ·çϵͳÏÂÔØ ×÷Õß: ±Ê¼Ç±¾°áש¹¤
ËÄ¡¢ÔËÐÐÃüÁîÖ®ºó£¬´ò¿ªµçÄÔÖеÄÍøÂçÁ¬½Ó£¬Ö®ºó¾Í»á¿´µ½¶à³öÀ´Ò»¸ö±¾µØÁ¬½Ó
ÔÚÉÏ°à·ÉÏ£¬¿´µ½ÊÖ»ú¶ÌÐÅÀïÃæ·¢Ëͱ¨¾¯ÐÅÏ¢£¬Ò»Ì¨·þÎñÆ÷Á賿4µãÏÂÏßÁË.´Òæµ½¹¤Î»£¬¼ì²é»úÆ÷¹ûÈ»ÏÂÏßÁË£¬±¨¸æÀϰ壬ȻºóÁªÏµ»ú·¿.´ó¸ÅÊ®·ÖÖÓºó»ú·¿»Ø¸´£¬»úÆ÷Êܵ½¹¥»÷£¬»ú·¿ÇжÏÁËIp.
»úÆ÷ÓõçÐÅÁªÍ¨Ë«ÍøÂ磬¼ÈÈ»µçÐÅip±»·â£¬ÄǾÍÓÃÁªÍ¨µÄip½øÈë»úÆ÷.
ÒªËØÒ»£º»úÆ÷win7ϵͳµÄÔËÐÐÔÚÄĶùµÄÓ²¼þÐÅÏ¢ÒÔ¼°IpÐÅϢƽʱһ¶¨Òª±£¹ÜºÃ.ÃâµÃÓÐÎÊÌâÁË»¹ÒªÈ¥ÎÊ»ú·¿£¬°×°×À˷Ѻܶàʱ¼ä.
½øÈë»úÆ÷ºótopµÈ·¢ÏÖ»úÆ÷Ó²¼þÐÔÄÜok£¬ÓêÁÖľ·çϵͳһ¼ü°²×°£¬ÔÙÓÃiptraf£¬Á÷Á¿Ò²²»¸ß£¨µ±È»²»¸ß£¬Ö÷ip¶¼±»ÇÐÁË£©.
»úÆ÷ÅܵÄÊÇÍøÕ¾ÒµÎñ£¬ËùÒÔÒªÕÒÎÊÌ⣬ȥÈÕÖ¾ÎļþÀïÃæÕÒ·ÃÎÊÁ¿×î¸ßµÄip¼´¿É.
ÒªËضþ£ºÕÒµ½ÈÕÖ¾ÎļþÕÒµ½¹¥»÷ip,Ç°ÃæΪ·ÃÎÊÊýÁ¿£¬ºóÃæΪ·ÃÎÊip
[root@localhost logs]# awk '{print $1}' xxx.xxx.com.access.log-20160616| sort | uniq -c | sort -n -k 1 -r | head -n 20
91653 106.185.53.124
59492 113.116.56.80
56556 106.186.18.224
48629 106.187.45.172
26962 103.61.136.93
22825 191.101.1.49
21068 103.61.136.168
8947 207.46.13.2
7508 157.55.39.95
&win7ϵͳµçÄÔÍü¼Ç¿ª»úÃÜÂëÆƽânbsp; 6392 40.77.167.49
3673 62.210.247.93
2827 46.4.94.226
2670 207.46.13.1
2576 58.60.220.128
2402 61.143.205.246
2035 157.55.39.80
2029 45.33.44.22
1953 157.55.39.105
1872 157.55.39.242
1862 183.8.3.47
ÕâÊÇÎÒµÚÒ»´ÎÏëµ½µÄÃüÁwin7ϵͳÒþ²ØÎļþ¼ÐÆäʵÔÚÍøÕ¾·ÃÎÊÈÕÖ¾ÀïÃæÓ¦¸Ã¹ýÂ˵ô¸÷ÖÖÖ©ÖëÅÀ³æ²Å¶Ô£¬ÓêÁÖľ·çwin7ÔõôÑù£¬·â´íÁË£¬ÀÏ°å»á¸úÄã¼±ÑÛ.ËùÒÔ£¬ÕýÈ·µÄÃüÁîÓ¦¸ÃÊÇ£º
[root@localhost logs]# cat xxx.xxx.com.access.log-20160616|grep -i -v -E "bing|baidu|google|sougou"|awk '{print $1}'|sort | uniq -c | sort -n -k 1 -r | head -n 20
91653 106.185.53.124
59492 113.116.56.80
56556 106.186.18.224
48629 106.187.45.172
26962 103.61.136.93
22825 191.101.1.49
21068 103.61.136.168
3661 62.210.247.93
2814 46.4.94.226
2576 58.60.220.128
2402 61.143.205.246
2029 45.33.44.22
1862 183.8.3.47
1300 103.61.136.164
1066 218.6.71.194
880 14.125.142.195
683 61.158.163.117
682 61.158.180.226
680 218.29.54.198
678 118.212.147.71
°ÑÇ°¼¸¸öip²éѯ£¬¶¼ÊÇÈÕ±¾£¬Ì¨Í壬µÂ¹ú.ÔÙÅäºÏ·ÃÎÊÈÕÖ¾£¬µÃÖªÊÇcc¹¥»÷.
ÏÈ°ÑÕ⼸¸öIpÓÃiptables·âµô.ÊäÈë·âɱÄÚÈÝ£¬ÖØÆôiptables.
[root@localhost logs]# vim /etc/sysconfig/iptables
-A INPUT -s 106.185.53.124 -p tcp -m state --state NEW -j DROP
[root@localhost logs]# service iptables restart
ʹÓÃiptables²é¿´¾Í¿ÉÒÔ¿´µ½£¬ºÜ¶àÁ÷Á¿°ü±»¶ªÆú;
[root@localhost logs]# iptables -nvL
Chain INPUT (policy ACCEPT 4045K packets, 604M bytes)
pkts bytes target prot opt in out source destination
0 0 DROP tcp -- * * 103.61.136.167 0.0.0.0/0 state NEW
382K 18M DROP tcp -- * * 106.186.18.85 0.0.0.0/0 state NEW
97 4920 DROP tcp -- * * 183.8.3.47 0.0.0.0/0 state NEW
380K 18M DROP tcp -- * * 106.187.45.172 0.0.0.0/0 state NEW
300 15204 DROP tcp -- * * 46.4.94.226 0.0.0.0/0 state NEW
Õâ¸öʱºò»ú·¿ÄDZßÒ²½â·âÁ˵çÐÅIp.¹Û²ìÒ»¶Îʱ¼ä£¬Á÷Á¿Õý³£.
ʺó£¬Ñо¿Ð´¹ý½Å±¾£¬°Ñ·ÃÎÊÁ¿Òì³£µÄip»ñÈ¡È»ºó·ÅÔÚÒ»¸öÎļþÀïÃ棬ʹÓÃiptbales·âɱ.
[root@localhost logs]# cat /sbin/cc.sh
#!/bin/sh
LOG_FILE=/usr/local/nginx/logs/xxx.xxx.com.access.log #·ÃÎÊÈÕÖ¾
ËäÈ»²»ÊǾø¶ÔµÄÄܽâ¾ö£¬µ«¿ÉÒÔ°ÑËü×÷ΪһÖÖ½â¾ö·½°¸£¬Èç¹ûÎÞЧ£¬¿ÉÒÔ¿¼ÂÇÆäËûµÄÔÒòÔì³ÉÒÔÉÏÇé¿ö!
ÄǾÍÊÇÒ»¸öºÜ¼òµ¥µÄcmdÃüÁ
~ ÔËÐÐ ÊäÈëcmd »Ø³µÔÚÃüÁîÌáʾ·ûÏÂÊäÈë
for %1 in (%windir%system32*.dll) do regsvr32.exe /s %1xu249208605
Èçͼ£º
3¡¢ÕâÑù¾Í¶à³öÀ´Ò»¿éδ·ÖÅäµÄ¿Õ¼ä£¬ºÚÉ«µÄÄÇÒ»¿é(1)¼ÓÈó»¬ÓÍÇ°£¬ÏÈ˺¿ª²»¸É½º±êÇ©£¬Óüâ×ìǯÌô³öÏð½ºÃÜ·âƬ£¬ÕÒµ½µç»úÖá³Ðºó£¬¿ÉÒÔʹÓÃÃÞÇ©ÂýÂýµÄÔö¼ÓÈó»¬ÓÍ£¬Ò»±ßÓÃÊÖ²¦¶¯·çÉÈ£¬ÈÃÈó»¬ÓÍÑØ×ÅÖá³Ð¾ùÔÈÁ÷Èë¡£
¿áî£i3 8350k´îÅäÀ¶±¦Ê¯RX580 8GµçÄÔÅäÖõ¥
Åä¼þÃû³Æ | Æ·ÅÆÐͺŠ| ²Î¿¼¼Û¸ñ |
´¦ÀíÆ÷ | Ó¢Ìضû ¿áî£i3 8350k£¨É¢Æ¬£© | £¤1188 |
·çÉÈ | ¾ÅÖÝ·çÉñ£¨DEEPCOOL£© Ðþ±ù | £¤109 |
ÏÔ¿¨ | À¶±¦Ê¯£¨Sapphire£©RX580 8G D5 ³¬°×½ð OC | £¤2149 |
ÄÚ´æ | ½ðÊ¿¶Ù(Kingston)DDR4 2400 8GB | £¤799 |
Ö÷°å | »ªË¶£¨ASUS£©PRIME Z370-P | £¤1299 |
Ó²ÅÌ | Óû§×ÔÑ¡ | --- |
SSD | ÆÖ¿ÆÌØ M7VG 256G M.2 2280¹Ì̬ӲÅÌ | £¤729 |
»úÏä | °®¹úÕߣ¨aigo£© ºÚÂü°Í ºÚÉ« Ö÷¶¯Ê½¾²Òô | £¤299 |
µçÔ´ | ³¤³Ç£¨GreatWall£© ¶î¶¨600W | £¤369 |
Ö÷»ú | µçÄÔÖ÷»ú²Î¿¼¼Û¸ñ | £¤6941 |
À¶±¦Ê¯RX580 8G D5 °×½ð OCÏÔ¿¨²ÉÓÃÁ˳¬Ç¿µÄ¹©µçÉè¼ÆºÍ³öÉ«µÄÉ¢ÈÈ·½°¸£¬8GB³¬´óÈÝÁ¿GDDR5¸ßËÙÏÔ´æºÍTri-XXµÈÌØÉ«¹¦ÄÜÅäÖøüÈÃÆäÓÎÏ·±íÏÖÁ¦·Ç³£Ç¿´ó£¬ÖµµÃÓÎÏ·Íæ¼ÒÑ¡Ôñ£¬Óë×îеĿáî£i3 8350k´îÅä¿ÉÒÔÂú×ã¸÷À൥»úÓëÍøÂçÓÎÏ·µÄÔËÐÐÐèÇó,´ø¸øÍæ¼ÒÃÇ×îºÃµÄÓÎÏ·ÌåÑé
×î½üÒ»¸ö¿Í»§µÄµçÄÔ³öÏÖ¿ª»úÀ¶ÆÁÌáʾӢÎÄSTOP:c000021a {Fatal System Error} The session Manager Initialization system process terminated unexpectedly with a status of 0xc000003a (0x00000000 0x00000000). The system has been shut down.ÕâÈúܶàûÓÐÏà¹ØµçÄÔάÐÞ֪ʶµÄÊøÊÖÎ޲ߣ¬ÏÂÃæ678µçÄÔ֪ʶÍøС±à¾Í½Ì´ó¼ÒÈçºÎ½â¾öÕâ¸öϵͳ¹ÊÕÏ
°´“win+R”¿ì½Ý¼ü´ò¿ªÔËÐжԻ°¿ò£¬ÊäÈë“regedit”ÃüÁ´ò¿ª×¢²á±í±à¼Æ÷£¬ÒÀ´ÎÕÒµ½“HKEY_USERS→.DEFAULT→Control Panel→Keyboard”£¬½«ÆäÓұߵēInitialKeyboardIndicators”¼üֵϵͳĬÈÏΪ2147483648ÐÞ¸ÄΪ“2”£¬Í˳ö×¢²á±í±à¼Æ÷£¬ÖØÐÂÆô¶¯¼ÆËã»ú£¬Äã¾Í»á·¢ÏÖÊý×ÖС¼üÅ̵ĵƲ»ÔÙϨÃðÁËuÅÌ°²×°xpϵͳװһ°ëû·´Ó¦ÁË
¡££¬winxp ghost ÓêÁÖľ·ç±¾ÎÄÊôÓÚÔ´´ÎÄÕ£¬ÈçÈôתÔØ£¬Çë×¢Ã÷À´Ô´£ºÓêÁÖľ·çϵͳÏÂÔØ¡£ÎÒÃDZ¾ÎÄ»°Ìâ¾ÍÊÇ£º32λϵͳʲôÒâ˼uÅÌװϵͳµÄ²½Öèͼ½â£¬ÒÔÉϵÄÈ«²¿ÄÚÈݲ»´ú±í±¾Õ¾µãÆÀ,½ö´Ë²Î¿¼£¬ÏëÒªÁ˽â¸ü¶à£¬Çë¹Ø×¢±¾ÎÄ×÷Õß:±Ê¼Ç±¾°áש¹¤,Ó¦Óо¡ÓС£