new attack: requests connection cookie
#1

Sorry for my english.

Server version 0.3.7. There is a massive flood of false log the connection, because of what the server is not displayed in the SAMP. How to solve this problem?

1 second:

[20:02:20] [connection] 186.220.89.56:34736 requests connection cookie.
[20:02:20] [connection] 186.220.89.56:34736 requests connection cookie.
[20:02:20] [connection] 24.79.204.128:6043 requests connection cookie.
[20:02:20] [connection] 24.79.204.128:6043 requests connection cookie.
[20:02:20] [connection] 80.70.137.36:43384 requests connection cookie.
[20:02:20] [connection] 217.132.101.64:10618 requests connection cookie.
[20:02:20] [connection] 217.132.101.64:10618 requests connection cookie.
[20:02:20] [connection] 80.70.137.36:43384 requests connection cookie.
[20:02:20] [connection] 80.179.104.238:55112 requests connection cookie.
[20:02:20] [connection] 194.90.226.59:27633 requests connection cookie.
[20:02:20] [connection] 194.90.226.59:27633 requests connection cookie.
[20:02:20] [connection] 80.179.104.238:55112 requests connection cookie.
[20:02:20] [connection] 93.173.183.205:24860 requests connection cookie.
[20:02:20] [connection] 93.173.183.205:24860 requests connection cookie.
[20:02:20] [connection] 109.186.253.143:38357 requests connection cookie.
[20:02:20] [connection] 109.186.253.143:38357 requests connection cookie.
[20:02:20] [connection] 109.186.28.86:19054 requests connection cookie.
[20:02:20] [connection] 31.17.229.121:50523 requests connection cookie.
[20:02:20] [connection] 109.186.28.86:19054 requests connection cookie.
[20:02:20] [connection] 31.17.229.121:50523 requests connection cookie.
[20:02:20] [connection] 212.25.90.103:23945 requests connection cookie.
[20:02:20] [connection] 99.240.134.144:45028 requests connection cookie.
[20:02:20] [connection] 212.25.90.103:23945 requests connection cookie.
[20:02:20] [connection] 99.240.134.144:45028 requests connection cookie.
[20:02:20] [connection] 79.178.113.8:40981 requests connection cookie.
[20:02:20] [connection] 85.175.111.173:36004 requests connection cookie.
[20:02:20] [connection] 79.178.113.8:40981 requests connection cookie.
[20:02:20] [connection] 85.175.111.173:36004 requests connection cookie.
[20:02:20] [connection] 80.178.252.113:55407 requests connection cookie.
[20:02:20] [connection] 80.178.66.1:14775 requests connection cookie.
[20:02:20] [connection] 80.178.252.113:55407 requests connection cookie.
[20:02:20] [connection] 80.178.66.1:14775 requests connection cookie.
[20:02:20] [connection] 212.25.64.153:53990 requests connection cookie.
[20:02:20] [connection] 80.70.131.107:21539 requests connection cookie.
[20:02:20] [connection] 80.70.131.107:21539 requests connection cookie.
[20:02:20] [connection] 212.25.64.153:53990 requests connection cookie.
[20:02:20] [connection] 109.186.197.56:51054 requests connection cookie.
[20:02:20] [connection] 82.81.149.42:12689 requests connection cookie.
[20:02:20] [connection] 109.186.197.56:51054 requests connection cookie.
[20:02:20] [connection] 82.81.149.42:12689 requests connection cookie.
[20:02:20] [connection] 176.229.0.4:44514 requests connection cookie.
[20:02:20] [connection] 31.168.131.206:11718 requests connection cookie.
[20:02:20] [connection] 176.229.0.4:44514 requests connection cookie.
[20:02:20] [connection] 31.168.131.206:11718 requests connection cookie.
[20:02:20] [connection] 31.154.183.81:22124 requests connection cookie.
[20:02:20] [connection] 5.4.112.19:22818 requests connection cookie.
[20:02:20] [connection] 31.154.183.81:22124 requests connection cookie.
[20:02:20] [connection] 5.4.112.19:22818 requests connection cookie.
[20:02:20] [connection] 87.70.185.200:16087 requests connection cookie.
[20:02:20] [connection] 46.121.5.118:28266 requests connection cookie.
[20:02:20] [connection] 46.121.5.118:28266 requests connection cookie.
[20:02:20] [connection] 87.70.185.200:16087 requests connection cookie.
[20:02:20] [connection] 82.166.227.253:36802 requests connection cookie.
[20:02:20] [connection] 82.166.227.253:36802 requests connection cookie.
[20:02:20] [connection] 5.137.109.67:52286 requests connection cookie.
[20:02:20] [connection] 5.137.109.67:52286 requests connection cookie.
[20:02:20] [connection] 177.49.11.198:9441 requests connection cookie.
[20:02:20] [connection] 187.4.212.209:33956 requests connection cookie.
[20:02:20] [connection] 187.4.212.209:33956 requests connection cookie.
[20:02:20] [connection] 177.49.11.198:9441 requests connection cookie.
[20:02:20] [connection] 94.50.134.162:5397 requests connection cookie.
[20:02:20] [connection] 82.166.94.248:52638 requests connection cookie.
[20:02:20] [connection] 94.50.134.162:5397 requests connection cookie.
[20:02:20] [connection] 82.166.94.248:52638 requests connection cookie.
[20:02:20] [connection] 84.110.19.165:18547 requests connection cookie.
[20:02:20] [connection] 81.218.79.240:32014 requests connection cookie.
[20:02:20] [connection] 84.110.19.165:18547 requests connection cookie.
[20:02:20] [connection] 81.218.79.240:32014 requests connection cookie.
[20:02:20] [connection] 179.193.128.226:25854 requests connection cookie.
[20:02:20] [connection] 179.193.128.226:25854 requests connection cookie.
[20:02:20] [connection] 83.130.35.15:6009 requests connection cookie.
[20:02:20] [connection] 83.130.35.15:6009 requests connection cookie.
[20:02:20] [connection] 109.66.102.46:31738 requests connection cookie.
[20:02:20] [connection] 31.154.50.86:44897 requests connection cookie.
[20:02:20] [connection] 109.66.102.46:31738 requests connection cookie.
[20:02:20] [connection] 31.154.50.86:44897 requests connection cookie.
[20:02:20] [connection] 66.131.176.36:41885 requests connection cookie.
[20:02:20] [connection] 194.90.138.26:28421 requests connection cookie.
[20:02:20] [connection] 66.131.176.36:41885 requests connection cookie.
[20:02:20] [connection] 194.90.138.26:28421 requests connection cookie.
[20:02:20] [connection] 187.7.114.50:12520 requests connection cookie.
[20:02:20] [connection] 77.7.152.1:54499 requests connection cookie.
[20:02:20] [connection] 77.7.152.1:54499 requests connection cookie.
[20:02:20] [connection] 187.7.114.50:12520 requests connection cookie.
[20:02:20] [connection] 24.77.153.44:39815 requests connection cookie.
[20:02:20] [connection] 24.77.153.44:39815 requests connection cookie.
[20:02:20] [connection] 5.29.206.199:23253 requests connection cookie.
[20:02:20] [connection] 5.29.206.199:23253 requests connection cookie.
[20:02:20] [connection] 186.255.41.128:18282 requests connection cookie.
[20:02:20] [connection] 176.229.44.11:53242 requests connection cookie.
[20:02:20] [connection] 186.255.41.128:18282 requests connection cookie.
[20:02:20] [connection] 176.229.44.11:53242 requests connection cookie.
[20:02:20] [connection] 95.73.166.176:35853 requests connection cookie.
[20:02:20] [connection] 192.116.58.88:43647 requests connection cookie.
[20:02:20] [connection] 95.73.166.176:35853 requests connection cookie.
[20:02:20] [connection] 192.116.58.88:43647 requests connection cookie.
[20:02:20] [connection] 176.228.185.208:25585 requests connection cookie.
[20:02:20] [connection] 176.228.185.208:25585 requests connection cookie.
[20:02:20] [connection] 5.28.153.82:47836 requests connection cookie.
[20:02:20] [connection] 31.154.40.75:24424 requests connection cookie.
[20:02:20] [connection] 31.154.40.75:24424 requests connection cookie.
[20:02:20] [connection] 5.28.153.82:47836 requests connection cookie.
[20:02:20] [connection] 176.228.119.116:7208 requests connection cookie.
[20:02:20] [connection] 187.5.24.173:5453 requests connection cookie.
[20:02:20] [connection] 176.228.119.116:7208 requests connection cookie.
[20:02:20] [connection] 187.5.24.173:5453 requests connection cookie.
[20:02:20] [connection] 192.116.6.111:24308 requests connection cookie.
[20:02:20] [connection] 192.116.6.111:24308 requests connection cookie.
[20:02:20] [connection] 177.48.127.153:23463 requests connection cookie.
[20:02:20] [connection] 177.48.127.153:23463 requests connection cookie.
[20:02:20] [connection] 84.111.201.22:5483 requests connection cookie.
[20:02:20] [connection] 66.130.181.233:29071 requests connection cookie.
[20:02:20] [connection] 84.111.201.22:5483 requests connection cookie.
[20:02:20] [connection] 66.130.181.233:29071 requests connection cookie.
[20:02:20] [connection] 192.114.75.187:29762 requests connection cookie.
[20:02:20] [connection] 85.65.146.66:24586 requests connection cookie.
[20:02:20] [connection] 85.65.146.66:24586 requests connection cookie.
[20:02:20] [connection] 192.114.75.187:29762 requests connection cookie.
[20:02:20] [connection] 70.79.181.235:52083 requests connection cookie.
[20:02:20] [connection] 5.6.4.223:48876 requests connection cookie.
[20:02:20] [connection] 70.79.181.235:52083 requests connection cookie.
[20:02:20] [connection] 5.6.4.223:48876 requests connection cookie.
[20:02:20] [connection] 80.70.129.203:53851 requests connection cookie.
[20:02:20] [connection] 80.70.129.203:53851 requests connection cookie.
[20:02:20] [connection] 177.27.177.22:54594 requests connection cookie.
[20:02:20] [connection] 177.27.177.22:54594 requests connection cookie.
[20:02:20] [connection] 85.250.5.79:33992 requests connection cookie.
[20:02:20] [connection] 80.230.10.9:42950 requests connection cookie.
[20:02:20] [connection] 85.250.5.79:33992 requests connection cookie.
[20:02:20] [connection] 80.230.10.9:42950 requests connection cookie.
[20:02:20] [connection] 176.231.169.230:56072 requests connection cookie.
[20:02:20] [connection] 31.16.56.154:41221 requests connection cookie.
[20:02:20] [connection] 176.231.169.230:56072 requests connection cookie.
[20:02:20] [connection] 31.16.56.154:41221 requests connection cookie.
[20:02:20] [connection] 179.193.26.94:52947 requests connection cookie.
[20:02:20] [connection] 179.193.26.94:52947 requests connection cookie.
[20:02:20] [connection] 53.177.92.204:18603 requests connection cookie.
[20:02:20] [connection] 53.177.92.204:18603 requests connection cookie.
[20:02:20] [connection] 194.90.237.164:21635 requests connection cookie.
[20:02:20] [connection] 85.172.95.222:14655 requests connection cookie.
[20:02:20] [connection] 194.90.237.164:21635 requests connection cookie.
[20:02:20] [connection] 85.172.95.222:14655 requests connection cookie.
[20:02:20] [connection] 179.239.64.243:26473 requests connection cookie.
[20:02:20] [connection] 80.70.129.62:37490 requests connection cookie.
[20:02:20] [connection] 179.239.64.243:26473 requests connection cookie.
[20:02:20] [connection] 80.70.129.62:37490 requests connection cookie.
[20:02:20] [connection] 24.81.222.217:47241 requests connection cookie.
[20:02:20] [connection] 37.81.35.188:23837 requests connection cookie.
[20:02:20] [connection] 24.81.222.217:47241 requests connection cookie.
[20:02:20] [connection] 37.81.35.188:23837 requests connection cookie.
[20:02:20] [connection] 91.77.135.53:38518 requests connection cookie.
[20:02:20] [connection] 186.252.129.175:35831 requests connection cookie.
[20:02:20] [connection] 186.252.129.175:35831 requests connection cookie.
[20:02:20] [connection] 91.77.135.53:38518 requests connection cookie.
[20:02:20] [connection] 24.77.206.19:10088 requests connection cookie.
[20:02:20] [connection] 99.243.126.116:44878 requests connection cookie.
[20:02:20] [connection] 24.77.206.19:10088 requests connection cookie.
[20:02:20] [connection] 99.243.126.116:44878 requests connection cookie.
[20:02:20] [connection] 85.64.16.122:16217 requests connection cookie.
[20:02:20] [connection] 217.132.12.18:45677 requests connection cookie.
[20:02:20] [connection] 85.64.16.122:16217 requests connection cookie.
[20:02:20] [connection] 217.132.12.18:45677 requests connection cookie.
[20:02:20] [connection] 95.72.48.54:6895 requests connection cookie.
[20:02:20] [connection] 177.26.50.2:33019 requests connection cookie.
[20:02:20] [connection] 95.72.48.54:6895 requests connection cookie.
[20:02:20] [connection] 177.26.50.2:33019 requests connection cookie.
[20:02:20] [connection] 192.114.61.165:16941 requests connection cookie.
[20:02:20] [connection] 85.65.98.208:29125 requests connection cookie.
[20:02:20] [connection] 192.114.61.165:16941 requests connection cookie.
[20:02:20] [connection] 85.65.98.208:29125 requests connection cookie.
[20:02:20] [connection] 187.4.55.193:35584 requests connection cookie.
[20:02:20] [connection] 109.67.200.159:10370 requests connection cookie.
[20:02:20] [connection] 187.4.55.193:35584 requests connection cookie.
[20:02:20] [connection] 109.67.200.159:10370 requests connection cookie.
[20:02:20] [connection] 31.168.24.244:12106 requests connection cookie.
[20:02:20] [connection] 93.172.163.30:47391 requests connection cookie.
[20:02:20] [connection] 93.172.163.30:47391 requests connection cookie.
[20:02:20] [connection] 31.168.24.244:12106 requests connection cookie.
[20:02:20] [connection] 94.51.247.139:35991 requests connection cookie.
[20:02:20] [connection] 94.51.247.139:35991 requests connection cookie.
[20:02:20] [connection] 89.139.75.155:53157 requests connection cookie.
[20:02:20] [connection] 89.139.75.155:53157 requests connection cookie.
[20:02:20] [connection] 80.178.153.103:28389 requests connection cookie.
[20:02:20] [connection] 5.139.13.106:22306 requests connection cookie.
[20:02:20] [connection] 80.178.153.103:28389 requests connection cookie.
[20:02:20] [connection] 5.139.13.106:22306 requests connection cookie.
[20:02:20] [connection] 82.81.30.195:43077 requests connection cookie.
[20:02:20] [connection] 84.108.243.255:47580 requests connection cookie.
[20:02:20] [connection] 82.81.30.195:43077 requests connection cookie.
[20:02:20] [connection] 84.108.243.255:47580 requests connection cookie.
[20:02:20] [connection] 177.26.234.219:52209 requests connection cookie.
[20:02:20] [connection] 91.78.22.159:44971 requests connection cookie.
[20:02:20] [connection] 177.26.234.219:52209 requests connection cookie.
[20:02:20] [connection] 91.78.22.159:44971 requests connection cookie.
[20:02:20] [connection] 186.253.51.23:21281 requests connection cookie.
[20:02:20] [connection] 186.252.252.248:8482 requests connection cookie.
[20:02:20] [connection] 186.253.51.23:21281 requests connection cookie.
[20:02:20] [connection] 186.252.252.248:8482 requests connection cookie.
[20:02:20] [connection] 84.111.157.157:15985 requests connection cookie.
[20:02:20] [connection] 83.130.37.64:38825 requests connection cookie.
[20:02:20] [connection] 84.111.157.157:15985 requests connection cookie.
[20:02:20] [connection] 83.130.37.64:38825 requests connection cookie.
[20:02:20] [connection] 47.248.191.27:26495 requests connection cookie.
[20:02:20] [connection] 31.16.175.76:15955 requests connection cookie.
[20:02:20] [connection] 47.248.191.27:26495 requests connection cookie.
[20:02:20] [connection] 31.16.175.76:15955 requests connection cookie.
[20:02:20] [connection] 79.179.21.13:10357 requests connection cookie.
[20:02:20] [connection] 217.132.255.141:51243 requests connection cookie.
[20:02:20] [connection] 79.179.21.13:10357 requests connection cookie.
[20:02:20] [connection] 217.132.255.141:51243 requests connection cookie.
[20:02:20] [connection] 77.127.6.67:6334 requests connection cookie.
[20:02:20] [connection] 80.70.132.133:22441 requests connection cookie.
[20:02:20] [connection] 77.127.6.67:6334 requests connection cookie.
[20:02:20] [connection] 80.70.132.133:22441 requests connection cookie.
[20:02:20] [connection] 212.143.5.99:27364 requests connection cookie.
[20:02:20] [connection] 194.90.194.207:10532 requests connection cookie.
[20:02:20] [connection] 194.90.194.207:10532 requests connection cookie.
[20:02:20] [connection] 212.143.5.99:27364 requests connection cookie.
[20:02:20] [connection] 187.7.98.46:23179 requests connection cookie.
[20:02:20] [connection] 31.224.112.22:50187 requests connection cookie.
[20:02:20] [connection] 187.7.98.46:23179 requests connection cookie.
[20:02:20] [connection] 31.224.112.22:50187 requests connection cookie.
[20:02:20] [connection] 80.70.141.164:54508 requests connection cookie.
[20:02:20] [connection] 94.51.247.6:33850 requests connection cookie.
[20:02:20] [connection] 80.70.141.164:54508 requests connection cookie.
[20:02:20] [connection] 94.51.247.6:33850 requests connection cookie.
[20:02:20] [connection] 80.70.142.193:10034 requests connection cookie.
[20:02:20] [connection] 84.95.25.246:36687 requests connection cookie.
[20:02:20] [connection] 84.95.25.246:36687 requests connection cookie.
[20:02:20] [connection] 80.70.142.193:10034 requests connection cookie.
[20:02:20] [connection] 31.19.194.226:40262 requests connection cookie.
[20:02:20] [connection] 31.19.194.226:40262 requests connection cookie.
[20:02:20] [connection] 80.70.132.88:33615 requests connection cookie.
[20:02:20] [connection] 80.70.132.88:33615 requests connection cookie.
[20:02:20] [connection] 95.72.12.173:55415 requests connection cookie.
[20:02:20] [connection] 2.169.44.84:20496 requests connection cookie.
[20:02:20] [connection] 95.72.12.173:55415 requests connection cookie.
[20:02:20] [connection] 2.169.44.84:20496 requests connection cookie.
[20:02:20] [connection] 31.154.65.5:22315 requests connection cookie.
[20:02:20] [connection] 70.65.145.148:26638 requests connection cookie.
[20:02:20] [connection] 31.154.65.5:22315 requests connection cookie.
[20:02:20] [connection] 70.65.145.148:26638 requests connection cookie.
[20:02:20] [connection] 24.82.109.81:17394 requests connection cookie.
[20:02:20] [connection] 70.65.168.244:46239 requests connection cookie.
[20:02:20] [connection] 24.82.109.81:17394 requests connection cookie.
[20:02:20] [connection] 70.65.168.244:46239 requests connection cookie.
[20:02:20] [connection] 80.70.139.230:18852 requests connection cookie.
[20:02:20] [connection] 89.138.74.143:38256 requests connection cookie.
[20:02:20] [connection] 89.138.74.143:38256 requests connection cookie.
[20:02:20] [connection] 80.70.139.230:18852 requests connection cookie.
Reply
#2

Apparenly, someone is trying to flood your server. As far as I can see, the connections are rejected after requesting cookies, so I guess there's nothing to be worried about.
Reply
#3

It seems someone is trying to use the server full attack. However, since they aren't able to obtain a connection cookie, they don't actually end up establishing a connection to the server.

You can try adjusting your firewall, or rate the minimum connection time in server.cfg("minconnectiontime").
Reply
#4

Quote:
Originally Posted by Michael B
Посмотреть сообщение
Apparenly, someone is trying to flood your server. As far as I can see, the connections are rejected after requesting cookies, so I guess there's nothing to be worried about.
The server does not appear in the SAMP, the players do not come:

Reply
#5

Quote:
Originally Posted by Abagail
Посмотреть сообщение
You can try adjusting your firewall, or rate the minimum connection time in server.cfg("minconnectiontime").
No, it did not help.
Reply
#6

https://sampforum.blast.hk/showthread.php?tid=576200
http://forum.sa-mp.com/showthread.ph...29#post3467629

Same happening to me for months, no solution yet, the server is taken down doesn't matter what you do via any software like samp or iptables.

For example you can do on samp.ban 24.*.*.* on all these ips or making iptables drop them and it will be a silent attack and it won't flood your server_log.txt it will just take your server down but without making that much noise
Reply


Forum Jump:


Users browsing this thread: 1 Guest(s)