再遭 DDoS 攻击:CDN 流量限额拦不住请求计费飙升



经历

  • 2025-04-23 23:30:32 – 收到CDN 流量带宽封顶触发通知,触发 CDN 流量封顶。
  • 2025-04-23 23:50:21 – 收到 CDN 访问激增提醒:最近 2 小时内的 HTTPS 请求数 激增至 5287.96 万
  • 2025-04-24 09:37:56 – 收到账号欠费通知:已欠费 83.4327

总损失:83.4327+34+1.4889=118.9216 CNY
(每月 200 万次免费额度被消耗完,被迫花 34 元买了一个 1000 万次的资源包维持 CDN 运转)

损失计算及损失量详情

2025-4-23 被消耗 12.71 GB 流量。
2025-4-24 被消耗 1.47 GB 流量。
总计 14.18GB 流量。
此前几日流量消耗为:5.04, 9.40, 11.24, 7.57, 5.13。(单位均为 MB)

流量当日价格为 0.11 元 / GB。由于此处计费流量全消耗在 200 GB / 21 元的流量包上,故实际消耗为 1.4889 元。

2025-4-23 被消耗 52883016 次 HTTPS 请求数。
2025-4-24 被消耗 2712700 次 HTTPS 请求数。
此前几日HTTPS 请求数消耗为:801, 1506, 1724, 1317, 981。(单位均为次)

请求数当日价格为 0.04 元 / 万次,200 万次的免费次数消耗完后就进行计费,实际消耗 83.4327 元。

检查配置

QPS 限制为:300 次/秒 – 因网站流量分析统计工具前端在加载统计图表时,易达到 150+ QPS,故修改为此配置,但也埋下了隐患。

对于一般用户,流量统计 API 无需如此高的 QPS,故降低为一个较低的限值。

统计面板使用跳板机查看,绕过此 QPS 限制。

教训

  1. 仔细阅读计费规则,做好预防工作。
  2. 重视 QPS 限制值的设置。
  3. 定期屏蔽一批高风险 IP。

公布攻击 IP

在此为了帮助各位站长,我写了个脚本收集了日志中攻击者的 IP,并在此公布。各位站长可以选择性进行屏蔽。

格式 – 仅 IP
218.98.160.110
120.131.124.23
112.91.139.142
42.81.157.160
221.202.27.194
222.59.173.105
47.92.93.226
43.159.133.199
49.51.229.252
39.191.223.109
220.196.22.194
220.250.37.169
43.130.57.214
43.159.130.134
2408:8214:641b:e180::1
43.153.62.242
218.61.37.79
49.51.188.4
222.29.72.13
43.153.33.238
125.45.149.111
170.106.104.64
43.135.168.60
2408:8214:5518:3b10::1
43.153.112.28
222.71.240.117
43.159.144.69
159.75.163.60
43.159.152.237
61.143.2.14
43.152.72.76
49.51.242.247
170.106.172.59
43.135.147.75
170.106.84.125
43.153.76.64
183.158.17.48
43.153.16.91
115.60.176.174
43.153.113.33
123.186.146.68
42.81.157.159
43.135.136.212
134.175.86.41
223.113.229.226
43.130.28.33
43.153.102.53
183.62.181.122
43.142.208.181
170.106.173.107
170.106.136.15
43.159.139.120
43.153.112.164
223.199.169.114
49.51.49.70
43.226.78.192
240e:36f:727:a350::1
2409:8a00:1ad4:9e00:849:b417:397e:9344
43.135.150.45
43.130.12.39
43.153.2.82
43.135.166.82
183.241.139.219
43.130.15.85
43.153.18.46
222.208.8.12
170.106.153.160
120.25.209.50
43.153.103.58
43.159.132.166
43.153.27.172
170.106.195.109
43.130.16.61
43.135.162.60
170.106.104.171
170.106.174.148
47.112.104.213
43.153.99.175
43.153.43.120
43.130.35.202
117.190.42.158
43.153.35.252
49.51.232.22
116.178.59.41
61.177.57.27
43.153.46.29
61.143.225.39
111.9.171.124
170.106.197.21
119.123.59.111
43.159.152.105
43.153.98.70
49.51.232.92
43.135.137.249
43.135.174.65
114.231.74.40
43.153.8.210
43.139.221.136
49.51.197.183
43.153.48.134
49.51.204.163
43.153.103.91
240e:3a6:22b1:7d60::1
43.153.45.169
120.133.37.235
43.153.22.138
43.153.4.125
43.135.180.61
170.106.193.157
49.70.172.155
43.153.45.4
43.130.2.77
43.153.25.42
170.106.192.56
82.156.147.55
114.216.205.192
43.135.165.192
114.223.91.185
43.135.173.91
39.98.110.245
43.159.136.219
43.153.98.125
43.153.32.146
43.153.69.199
170.106.84.182
43.153.98.107
170.106.150.81
119.146.187.86
221.179.242.6
170.106.136.235
120.78.66.4
43.130.15.214
114.231.72.201
43.159.134.4
121.227.145.252
43.153.76.230
43.130.12.65
43.153.36.171
60.188.249.198
106.14.205.114
240e:348:b300:b070::1
43.159.142.191
43.130.33.54
43.135.129.244
49.51.253.252
43.229.48.10
43.153.88.171
175.178.136.39
8.154.28.146
113.90.80.144
170.106.171.100
180.127.42.32
43.135.139.25
2409:8a62:291d:f190::2
171.213.224.34
123.57.21.108
170.106.168.100
222.79.105.93
43.135.177.13
123.54.162.226
112.65.8.1
219.152.170.16
170.106.196.80
47.113.105.96
113.200.168.238
220.167.233.64
114.80.36.171
221.225.66.57
114.216.224.182
14.29.239.89
120.237.206.250
182.92.8.235
170.106.199.158
170.106.83.149
58.209.137.204
2408:8207:25e3:d930::1
180.105.114.15
221.228.177.21
120.24.174.172
118.31.1.154
113.116.5.85
221.225.66.12
114.80.36.63
49.115.217.139
180.105.128.166
140.224.37.179
58.209.137.217
180.127.204.66
47.97.103.49
8.138.185.185
43.153.107.246
47.100.215.85
180.113.52.84
114.80.38.120
47.96.104.159
52.80.236.181
49.70.172.165
49.70.172.141
49.67.129.33
2409:8c28:6cd0:8::12:95
106.15.57.186
43.153.113.65
47.106.73.57
171.8.230.169
36.105.135.4
47.109.39.34
220.190.29.192
120.46.4.147
112.250.135.159
58.57.75.142
183.141.170.188
110.40.47.224
60.208.20.82
39.107.249.241
49.82.173.200
180.105.80.25
114.96.108.242
27.155.196.183
121.236.239.153
27.150.163.82
111.1.61.47
112.44.130.159
121.205.72.81
58.52.85.110
211.156.92.83
121.224.33.91
49.74.19.189
120.33.142.78
125.92.102.127
58.209.71.116
58.208.159.192
171.223.123.88
122.241.185.136
58.22.18.232
111.246.8.103
182.254.229.186
175.166.91.164
61.164.204.130
117.90.219.238
123.125.174.5
36.136.27.2
60.174.167.40
121.229.98.198
43.130.29.151
180.102.167.236
27.189.134.236
49.87.198.79
117.90.219.253
59.37.18.243
47.95.208.20
1.196.136.120
211.156.84.3
118.113.247.24
120.55.13.183
223.247.42.124
222.184.217.83
114.96.103.157
118.120.231.90
101.37.12.43
114.231.72.38
43.138.211.50
220.188.51.91
111.1.61.50
182.105.82.38
222.190.163.39
120.25.199.3
114.104.226.34
123.112.241.58
114.80.40.130
125.79.53.42
58.52.83.43
123.189.115.148
格式 – IP: 攻击次数
218.98.160.110: 2608813
120.131.124.23: 2370955
112.91.139.142: 1620849
42.81.157.160: 1613552
221.202.27.194: 1107649
222.59.173.105: 1097635
47.92.93.226: 989991
43.159.133.199: 972139
49.51.229.252: 860771
39.191.223.109: 799768
220.196.22.194: 744651
220.250.37.169: 718657
43.130.57.214: 698080
43.159.130.134: 624943
2408:8214:641b:e180::1: 622846
43.153.62.242: 612528
218.61.37.79: 599049
49.51.188.4: 596998
222.29.72.13: 546757
43.153.33.238: 537993
125.45.149.111: 529453
170.106.104.64: 505659
43.135.168.60: 499621
2408:8214:5518:3b10::1: 491139
43.153.112.28: 491118
222.71.240.117: 459512
43.159.144.69: 456855
159.75.163.60: 452292
43.159.152.237: 437502
61.143.2.14: 433856
43.152.72.76: 430338
49.51.242.247: 424623
170.106.172.59: 418483
43.135.147.75: 415239
170.106.84.125: 414955
43.153.76.64: 397058
183.158.17.48: 394510
43.153.16.91: 387294
115.60.176.174: 386586
43.153.113.33: 382471
123.186.146.68: 375792
42.81.157.159: 373040
43.135.136.212: 371308
134.175.86.41: 365118
223.113.229.226: 361613
43.130.28.33: 354599
43.153.102.53: 350575
183.62.181.122: 348619
43.142.208.181: 348412
170.106.173.107: 345230
170.106.136.15: 342412
43.159.139.120: 335644
43.153.112.164: 334807
223.199.169.114: 332630
49.51.49.70: 331614
43.226.78.192: 331607
240e:36f:727:a350::1: 315389
2409:8a00:1ad4:9e00:849:b417:397e:9344: 302706
43.135.150.45: 301884
43.130.12.39: 301647
43.153.2.82: 301608
43.135.166.82: 297564
183.241.139.219: 296946
43.130.15.85: 294231
43.153.18.46: 290453
222.208.8.12: 289533
170.106.153.160: 284172
120.25.209.50: 282528
43.153.103.58: 278853
43.159.132.166: 278304
43.153.27.172: 271877
170.106.195.109: 270360
43.130.16.61: 265991
43.135.162.60: 262794
170.106.104.171: 256310
170.106.174.148: 254487
47.112.104.213: 247710
43.153.99.175: 243655
43.153.43.120: 241964
43.130.35.202: 240449
117.190.42.158: 238597
43.153.35.252: 238199
49.51.232.22: 237967
116.178.59.41: 233004
61.177.57.27: 232791
43.153.46.29: 232788
61.143.225.39: 228077
111.9.171.124: 226887
170.106.197.21: 220436
119.123.59.111: 217195
43.159.152.105: 215857
43.153.98.70: 214407
49.51.232.92: 213805
43.135.137.249: 213379
43.135.174.65: 209019
114.231.74.40: 208520
43.153.8.210: 207770
43.139.221.136: 205787
49.51.197.183: 205226
43.153.48.134: 203046
49.51.204.163: 202267
43.153.103.91: 201316
240e:3a6:22b1:7d60::1: 199377
43.153.45.169: 197178
120.133.37.235: 191402
43.153.22.138: 191376
43.153.4.125: 184826
43.135.180.61: 184481
170.106.193.157: 181865
49.70.172.155: 180909
43.153.45.4: 180600
43.130.2.77: 180050
43.153.25.42: 176782
170.106.192.56: 175751
82.156.147.55: 175124
114.216.205.192: 174495
43.135.165.192: 169766
114.223.91.185: 167646
43.135.173.91: 167041
39.98.110.245: 166456
43.159.136.219: 165461
43.153.98.125: 164603
43.153.32.146: 161972
43.153.69.199: 161550
170.106.84.182: 159163
43.153.98.107: 158858
170.106.150.81: 154731
119.146.187.86: 154515
221.179.242.6: 153882
170.106.136.235: 148852
120.78.66.4: 146266
43.130.15.214: 145558
114.231.72.201: 145522
43.159.134.4: 144756
121.227.145.252: 141062
43.153.76.230: 140906
43.130.12.65: 137444
43.153.36.171: 136728
60.188.249.198: 131534
106.14.205.114: 130000
240e:348:b300:b070::1: 127153
43.159.142.191: 126598
43.130.33.54: 126528
43.135.129.244: 125177
49.51.253.252: 124849
43.229.48.10: 120283
43.153.88.171: 116763
175.178.136.39: 116231
8.154.28.146: 115528
113.90.80.144: 112886
170.106.171.100: 101887
180.127.42.32: 101790
43.135.139.25: 101458
2409:8a62:291d:f190::2: 97891
171.213.224.34: 97715
123.57.21.108: 93567
170.106.168.100: 93381
222.79.105.93: 91260
43.135.177.13: 90975
123.54.162.226: 86815
112.65.8.1: 82787
219.152.170.16: 78981
170.106.196.80: 78829
47.113.105.96: 77638
113.200.168.238: 76121
220.167.233.64: 71520
114.80.36.171: 70083
221.225.66.57: 65632
114.216.224.182: 59136
14.29.239.89: 55733
120.237.206.250: 55121
182.92.8.235: 55000
170.106.199.158: 54361
170.106.83.149: 47904
58.209.137.204: 45952
2408:8207:25e3:d930::1: 45883
180.105.114.15: 45312
221.228.177.21: 41120
120.24.174.172: 40324
118.31.1.154: 39232
113.116.5.85: 35985
221.225.66.12: 34944
114.80.36.63: 34238
49.115.217.139: 33879
180.105.128.166: 30804
140.224.37.179: 30360
58.209.137.217: 30144
180.127.204.66: 25563
47.97.103.49: 23264
8.138.185.185: 21440
43.153.107.246: 20264
47.100.215.85: 20000
180.113.52.84: 19296
114.80.38.120: 19173
47.96.104.159: 16256
52.80.236.181: 14048
49.70.172.165: 13760
49.70.172.141: 13120
49.67.129.33: 12768
2409:8c28:6cd0:8::12:95: 11725
106.15.57.186: 11623
43.153.113.65: 10380
47.106.73.57: 9522
171.8.230.169: 8600
36.105.135.4: 8490
47.109.39.34: 8120
220.190.29.192: 7600
120.46.4.147: 7133
112.250.135.159: 6640
58.57.75.142: 6112
183.141.170.188: 6020
110.40.47.224: 5597
60.208.20.82: 5234
39.107.249.241: 5086
49.82.173.200: 4930
180.105.80.25: 4640
114.96.108.242: 4560
27.155.196.183: 4200
121.236.239.153: 4115
27.150.163.82: 4060
111.1.61.47: 4051
112.44.130.159: 3610
121.205.72.81: 3150
58.52.85.110: 3120
211.156.92.83: 2870
121.224.33.91: 2830
49.74.19.189: 2700
120.33.142.78: 2430
125.92.102.127: 2410
58.209.71.116: 2371
58.208.159.192: 2353
171.223.123.88: 2190
122.241.185.136: 2120
58.22.18.232: 2016
111.246.8.103: 2010
182.254.229.186: 1986
175.166.91.164: 1940
61.164.204.130: 1940
117.90.219.238: 1890
123.125.174.5: 1859
36.136.27.2: 1858
60.174.167.40: 1721
121.229.98.198: 1700
43.130.29.151: 1567
180.102.167.236: 1400
27.189.134.236: 1331
49.87.198.79: 1200
117.90.219.253: 1140
59.37.18.243: 1093
47.95.208.20: 1076
1.196.136.120: 1050
211.156.84.3: 850
118.113.247.24: 840
120.55.13.183: 824
223.247.42.124: 780
222.184.217.83: 740
114.96.103.157: 740
118.120.231.90: 730
101.37.12.43: 685
114.231.72.38: 650
43.138.211.50: 619
220.188.51.91: 570
111.1.61.50: 539
182.105.82.38: 532
222.190.163.39: 500
120.25.199.3: 464
114.104.226.34: 460
123.112.241.58: 455
114.80.40.130: 446
125.79.53.42: 440
58.52.83.43: 420
123.189.115.148: 350