[¼öÁ¤]»çÀ̹ö Å×·¯ÇÑ ip ¸¦ ¾î¶»°Ô Á¶Ä¡ ÇØ¾ß Çϳª¿ä?

   Á¶È¸ 4582   Ãßõ 0    

175.127.42.149  아이피로 부터 공격당해서 

데이타 일부가 파괴되고 DB 도 삭제 되었습니다.

어떻게 조치 해야 하나요?


현재 방화벽에서 차단했는데 

다시 들어올까바 겁나네요.


[root]# /etc/init.d/iptables status | grep 175.127
17   DROP       tcp  --  175.127.42.149       0.0.0.0/0           tcp dpt:80 state NEW,ESTABLISHED
18   DROP       all  --  175.127.42.0/24      0.0.0.0/0
19   DROP       all  --  175.127.41.0/24      0.0.0.0/0
20   DROP       all  --  175.127.40.0/24      0.0.0.0/0
21   DROP       all  --  175.127.39.0/24      0.0.0.0/0
2998 DROP       all  --  0.0.0.0/0            0.0.0.0/0           source IP range 5.175.88.0-5.175.127.255
[root]#

홈 디렉토리에  .htaccess 파일에 다음과 같이 차단하였습니다.

<Limit GET POST>
order allow,deny
deny from 175.127.42.0/24      
deny from 175.127.41.0/24
deny from 175.127.40.0/24
deny from 175.127.39.0/24
allow from all
</Limit>


그 외 

어떻게 조치 해야 합니까?


이지포토
ªÀº±Û Àϼö·Ï ½ÅÁßÇÏ°Ô.
192.168 IP ¸é ³»ºÎ IP ¾Æ´Ñ°¡¿ä.????
³»ºÎÀÚ ¼ÒÇà À̵çÁö.....¾Æ´Ï¸é ³»ºÎ PC ¸¦ Á»ºñÈ­ ½ÃÄÑ °æÀ¯ÇÑ °Í °°¾Æ º¸À̴µ¥¿ä....
     
¼öÁ¤Çß½À´Ï´Ù. º¹»ç°¡ À߸øµÇ¾ú³×¿ä.^^
ZSNET5 2016-02
192.168.253.195 °¡ È®½ÇÇմϱî?
     
¼öÁ¤Çß½À´Ï´Ù. º¹»ç°¡ À߸øµÇ¾ú³×¿ä.^^
¼º½Ãâ 2016-02
³»ºÎÀÚ ¼ÒÇàÀ̰ųª ³»ºÎ ³»Æ®¿öÅ©¸¦ °æÀ¯ÇÑ °Í °°³×¿ä.
127.0.0.1 º¸´Ù´Â Âü½ÅÇϳ׿ä.
     
¼öÁ¤Çß½À´Ï´Ù. º¹»ç°¡ À߸øµÇ¾ú³×¿ä.^^
IPÁÖ¼Ò°¡ È®½ÇÇÏ´Ù¸é ¿ªÃßÀûÇÏ¿© MAC ¾îµå·¹½º¸¦ ¾Ë¼ö ÀÖÀ»Å×°í

°¢ ÄÄÇ»ÅÍÀÇ ·£Ä«µå¿¡ ÇÒ´çµÇ¾î ÀÖ´Â MAC ¾îµå·¹½º È®ÀÎÇغ¸¸é ¾î´À ÄÄÇ»ÅÍÀÎÁö ³ª¿À°Ú³×¿ä.
ZSNET5 2016-02
80¹ø Æ÷Æ®. WebÁ¢¼ÓÀ̶ó¸é SQL Injection ¿¡ ÀÇÇÑ °ÍÀÏÅÙµ¥¿ä
WEB ¹æÈ­º®À» »ç¿ëÇÏ½Ã´Â°Ô ±Þ¼±¹«ÀÌ°Ú½À´Ï´Ù.
¾Æ¿ï·¯ À¥ ¹æÈ­º®ÀÇ ½Ã±×´ÏÃÄ¿¡ Table TropÀ» Â÷´ÜÇϽøé Á» ³ª¾ÆÁý´Ï´Ù.
¹é¾÷À» »ýÈ°È­ ÇϽô °Íµµ ÀØÁö ¸¶¼¼¿ä.
     
ÂüÁ¶ ÇÏ°Ú½À´Ï´Ù. °¨»ç ÇÕ´Ï´Ù.
     
ZSNET5 2016-02
¾Æ.. öÀÚ Æ²·È´Ù...
Table Drop ÀÔ´Ï´Ù..
Á¦°¡ ¿¹Àü¿¡ Çѹø ´çÇؼ­... ^.^;;
ȸ¿øK 2016-02
ÀÚ±â pc·Î ÀÌ·±°Å ¾ÈÇÏ´Ï, ÃßÀûÇغÁ¾ß ¾Æ¹« °Íµµ ¾ø½À´Ï´Ù.
¹æ¾îÀÇ °­µµ¸¦ ³ôÀÌ¼Å¾ß ÇØ¿ä.
whois ·Î °Ë»öÇÑ °á°ú´Â "Çϳª·Î ÅÚ·¹ÄÞ"¿¡ ÇÒ´çµÇ¾î ÀÖ´Â IPÁÖ¼Ò¶ó°í ³ª¿À³×¿ä.
¿¬¶ôó°¡ ÀÖÀ¸´Ï ÀÏ´Ü ½Å°íÇغ¸¼¼¿ä. º° ¼Ò¿ëÀº ¾øÀ» Å×Áö¸¸ Ȥ½Ã ¶óµµ Á¶Ä¡ÇØÁÙÁöµµ ¸ð¸£ÁÒ. ^^

whois 175.127.42.149

% [whois.apnic.net]
% Whois data copyright terms    http://www.apnic.net/db/dbcopyright.html

% Information related to '175.112.0.0 - 175.127.255.255'

inetnum:        175.112.0.0 - 175.127.255.255
netname:        broadNnet
descr:          Hanaro Telecom
descr:          Shindongah Bldg, 43, Taepyeongno2ga, Junggu, Seoul
descr:          *********************************
descr:          Allocated to KRNIC Member.
descr:          If you would like to find assignment
descr:          information in detail please refer to
descr:          the KRNIC Whois Database at:
descr:          http://whois.nic.or.kr/english/index.htm
descr:          **********************************
country:        KR
admin-c:        HL196-AP
tech-c:        JK250-AP
status:        Allocated Portable
remarks:        www.skbroadband.com
mnt-by:        MNT-KRNIC-AP
mnt-lower:      MNT-KRNIC-AP
changed:        hm-changed@apnic.net 20091217
source:        APNIC

person:        Han Lee
nic-hdl:        HL196-AP
e-mail:        ip-adm@skbroadband.com
address:        726-1, Janghang2-dong, Goyang-si, Ilsan-gu, Seoul
phone:          +82-2-106-2
country:        KR
changed:        hostmaster@nic.or.kr 20130326
mnt-by:        MNT-KRNIC-AP
source:        APNIC

person:        Jinyoung Kim
nic-hdl:        JK250-AP
e-mail:        ip-adm@hanaro.com
address:        726-1, Janghang2-dong, Goyang-si, Ilsan-gu, Seoul
phone:          +82-2-106
fax-no:        +82-2-6266-6483
country:        KR
changed:        hostmaster@nic.or.kr 20040326
mnt-by:        MNT-KRNIC-AP
source:        APNIC

% Information related to '175.112.0.0 - 175.127.255.255'

inetnum:        175.112.0.0 - 175.127.255.255
netname:        broadNnet-KR
descr:          SK Broadband Co Ltd
country:        KR
admin-c:        IM12-KR
tech-c:        IM12-KR
status:        ALLOCATED PORTABLE
mnt-by:        MNT-KRNIC-AP
mnt-irt:        IRT-KRNIC-KR
remarks:        This information has been partially mirrored by APNIC from
remarks:        KRNIC. To obtain more specific information, please use the
remarks:        KRNIC whois server at whois.krnic.net.
changed:        hostmaster@nic.or.kr
source:        KRNIC

% This query was served by the APNIC Whois Service version 1.69.1-APNICv1r0 (UNDEFINED)
     
¾Ë°í ÀÖ´Â »ç½ÇÀ̸ç ÇØ´ç ³×Æ®¿÷ °ü¸®ÀÚ¿¡°Ô ¸ÞÀÏ º¸³Â½À´Ï´Ù. ¾Æ¸¶µµ °³ÀÎPC  ¿¡¼­ ¹ÙÀÌ·¯½º °É·Á¼­ Àڱ⵵ ¸ð¸£´Â»çÀÌ¿¡ ÀϾµí ÇÕ´Ï´Ù.
ÀÏ´Ü À§  º»¹® Á¶Ä¡ÇÏ¿´°í ´Ù¸¥ ¹æ¹ýÀº ¹«¾ùÀÌ ÀÖÀ»±î¿ä?
          
ÀÌ¹Ì ½Å°íÇß´Ù¸é ´Ù¸¥ ¹æ¹ýÀº ¾ø¾î º¸À̳׿ä.
          
¹Ú¹®Çü 2016-02
ÀÎÅÍ³Ý »ç¿ë ¾÷üÇÑÅ× IP ´ë¿ªÀ» ¾Æ¿¹ ´Ù¸¥ °÷À¸·Î ¿Å°Ü ´Þ¶ó°í Çϼ¼¿ä..
               
µµ¸ÞÀο¡ µû¶ó ¿À´Âµ¥ ¾ÆÀÌÇǸ¦ ¿Å°Ü ºÃÀÚ ÇêÀÏ ¾Æ´Ñ°¡¿ä?


QnA
Á¦¸ñPage 2476/5686
2014-05   4971839   Á¤ÀºÁØ1
2015-12   1508155   ¹é¸Þ°¡
2023-05   1545   slowcity
2014-08   4176   ³ªÆÄÀÌ°­½ÂÈÆ
2003-10   8871   Ãß±³¿ø
2023-05   1267   ¿À¶û¿ìź
2006-05   6027   ¹®¼º¼ö
2009-12   9717   ¾ÈÇü°ï
2015-12   3892   ±è°Ç¿ì
2021-10   2128   ¹ÌÄ£°¨ÀÚ
2006-05   5261   ³ë½Â»ï
2020-06   4703   kwkw
2021-10   9275   ±¹°¡Á¤º¸¿ø
2014-09   4858   ¹Ì¼ö¸Ç
2010-01   8340   Âü¼¼»ó¸Í±Û±â
2020-06   5098   JYC1040
2014-09   3862   ¿À¼º±â
2016-12   5411   ÇǾƷÎ
2018-02   3614   MikroTikÀÌÁø
2021-11   3346   ¿¹°ü½Å±Ô½Ä
2003-11   9687   ÇϱԿ­
2016-01   9376   moby