• Please be aware: Kaspersky Anti-Virus has been deprecated
    With the upgrade to Plesk Obsidian 18.0.64, "Kaspersky Anti-Virus for Servers" will be automatically removed from the servers it is installed on. We recommend that you migrate to Sophos Anti-Virus for Servers.
  • The Horde webmail has been deprecated. Its complete removal is scheduled for April 2025. For details and recommended actions, see the Feature and Deprecation Plan.
  • We’re working on enhancing the Monitoring feature in Plesk, and we could really use your expertise! If you’re open to sharing your experiences with server and website monitoring or providing feedback, we’d love to have a one-hour online meeting with you.

Issue DDOS attack

Bogdan1

Regular Pleskian
Hi,
I have VPS provided by OVH.
Today my sites went down and cloudflare started to show 522 error.
I followed steps from here How to diagnose DDoS attack on a Plesk server and the results are more than 400 connections, by multiple ip addresses(not more than a 200). So I bought (D)DoS Deflate Interface and blocked all countries except 1.
But this didn't help, so waste of money. It blocked 120 pages of ip addresses, sites are still down and it still shows hundreds of connections by hundreds of ip addresses.

Any ideas what to do? I thought DDOS won't be a thing for me with OVH and its Anti-DDOS thing would ...

PS: Plesk Admin works as normal but all hosted stiles are down ...

Code:
[root@vps520565 ~]# ss -tan state established | grep ":80\|:443" | awk '{print $4}'| cut -d':' -f1 | sort -n | uniq -c | sort -nr
     21 [2604
     13 [2001
     12 174.75.238.93
      8 [2a01
      7 96.44.183.149
      6 70.166.38.80
      6 216.144.228.130
      6 195.154.67.61
      5 195.4.164.127
      5 174.75.238.76
      5 174.70.241.8
      5 128.199.188.57
      5 118.70.144.77
      4 98.143.145.29
      4 72.210.252.134
      4 69.61.200.104
      4 66.135.227.178
      4 [2400
      4 216.144.230.233
      4 184.178.172.18
      4 174.76.48.249
      4 174.70.241.27
      4 173.245.239.223
      4 157.230.43.78
      3 98.143.145.30
      3 70.166.38.71
      3 66.110.216.221
      3 66.110.216.105
      3 45.248.43.35
      3 222.89.32.161
      3 208.102.51.6
      3 188.168.96.34
      3 185.132.126.163
      3 174.76.35.15
      3 174.75.238.82
      3 174.70.241.7
      3 174.70.241.18
      3 173.245.239.12
      3 158.58.131.27
      3 14.98.207.66
      3 144.91.116.171
      3 1.20.101.221
      3 111.230.138.177
      2 98.181.99.197
      2 98.162.25.29
      2 95.38.214.130
      2 94.139.235.172
      2 91.203.224.177
      2 87.121.0.199
      2 84.54.132.73
      2 82.200.233.4
      2 78.189.64.42
      2 77.92.53.7
      2 72.210.252.152
      2 72.11.148.222
      2 62.182.109.206
      2 58.145.170.42
      2 5.58.7.92
      2 51.158.108.135
      2 37.224.88.9
      2 36.67.116.165
      2 [2a03
      2 27.111.42.145
      2 220.130.167.59
      2 208.97.31.229
      2 203.114.108.46
      2 202.62.9.187
      2 202.51.120.22
      2 200.69.74.170
      2 200.60.97.194
      2 198.11.179.15
      2 192.141.232.12
      2 190.93.156.107
      2 190.54.100.74
      2 184.178.172.25
      2 184.176.166.8
      2 183.88.252.56
      2 183.60.189.178
      2 181.198.97.241
      2 180.200.238.130
      2 177.38.160.42
      2 177.23.184.166
      2 176.31.51.77
      2 175.139.190.165
      2 174.76.48.251
      2 174.76.48.232
      2 174.76.48.230
      2 174.76.35.29
      2 174.75.238.87
      2 173.245.239.177
      2 170.246.85.106
      2 163.172.136.226
      2 125.162.141.70
      2 1.20.169.174
      2 119.15.82.222
      2 118.174.220.32
      2 114.4.102.78
      2 113.53.83.210
      2 111.118.128.123
      2 109.188.69.113
      2 104.168.236.186
      1 96.9.72.242
      1 95.77.103.171
      1 95.68.30.207
      1 95.66.142.18
      1 95.65.89.96
      1 95.179.248.188
      1 95.140.27.135
      1 95.137.240.3
      1 95.105.89.221
      1 94.244.28.246
      1 94.231.182.117
      1 94.180.106.94
      1 94.158.152.248
      1 94.102.52.29
      1 93.87.75.118
      1 93.184.8.122
      1 93.115.138.250
      1 92.255.248.230
      1 92.255.196.91
      1 92.244.150.94
      1 92.242.254.84
      1 91.98.28.188
      1 91.83.227.147
      1 91.247.250.215
      1 91.246.213.100
      1 91.217.96.130
      1 91.207.147.243
      1 91.195.130.237
      1 89.40.59.174
      1 89.237.29.198
      1 89.233.183.64
      1 89.216.49.25
      1 88.255.63.226
      1 88.247.165.215
      1 88.12.49.249
      1 88.118.131.30
      1 87.254.138.170
      1 86.28.76.188
      1 85.99.227.200
      1 85.217.192.39
      1 85.206.57.202
      1 85.187.245.115
      1 85.185.81.26
      1 84.47.111.110
      1 82.147.93.63
      1 82.147.120.32
      1 82.137.244.74
      1 82.117.213.30
      1 82.114.90.90
      1 82.114.82.90
      1 81.92.249.138
      1 81.39.23.164
      1 81.183.209.197
      1 80.92.181.3
      1 80.169.143.166
      1 79.154.126.152
      1 79.104.197.58
      1 78.186.109.7
      1 78.139.200.51
      1 77.94.123.27
      1 77.89.251.138
      1 77.37.208.119
      1 77.252.26.71
      1 77.247.88.10
      1 77.247.250.73
      1 70.61.166.78
      1 70.169.132.131
      1 70.169.129.246
      1 67.22.223.9
      1 67.207.168.102
      1 62.32.80.98
      1 60.12.214.184
      1 59.152.104.58
      1 58.40.124.174
      1 58.220.95.116
      1 51.75.83.94
      1 51.38.71.101
      1 51.158.186.242
      1 51.158.165.18
      1 51.158.114.177
      1 50.205.151.218
      1 49.48.32.27
      1 49.156.42.210
      1 46.48.183.133
      1 46.35.184.187
      1 46.238.48.82
      1 46.225.240.122
      1 46.149.86.51
      1 45.71.80.2
      1 45.71.184.132
      1 45.70.204.254
      1 45.70.0.17
      1 45.64.122.210
      1 45.5.94.34
      1 45.4.57.94
      1 45.230.64.1
      1 45.169.98.135
      1 45.165.152.26
      1 45.115.112.252
      1 45.112.57.230
      1 43.224.8.14
      1 43.224.8.12
      1 41.217.217.60
      1 41.169.162.194
      1 40.85.189.146
      1 37.235.203.91
      1 37.112.151.11
      1 36.92.93.61
      1 36.89.89.7
      1 36.89.233.133
      1 36.89.181.155
      1 36.89.180.103
      1 36.84.59.53
      1 36.81.6.7
      1 36.73.158.84
      1 36.66.235.147
      1 36.66.206.74
      1 36.66.124.157
      1 36.65.52.26
      1 31.192.148.55
      1 31.182.12.3
      1 31.179.224.42
      1 31.173.0.249
      1 [2a00
      1 27.147.155.70
      1 27.147.136.178
      1 27.145.227.202
      1 24.113.42.169
      1 223.204.69.226
      1 223.100.166.3
      1 222.93.250.67
      1 221.7.223.18
      1 219.135.155.69
      1 218.90.171.214
      1 218.202.80.222
      1 217.219.61.6
      1 217.19.209.253
      1 2.144.246.255
      1 213.96.2.61
      1 213.6.141.114
      1 213.222.180.141
      1 213.180.39.170
      1 213.129.99.10
      1 213.108.18.34
      1 212.66.61.118
      1 210.61.216.66
      1 210.245.51.15
      1 207.180.236.225
      1 207.154.225.226
      1 205.185.115.100
      1 203.77.239.18
      1 203.188.245.98
      1 203.153.28.3
      1 203.153.119.242
      1 202.69.38.82
      1 202.5.36.184
      1 202.43.183.210
      1 202.43.112.34
      1 202.40.190.81
      1 202.166.207.218
      1 202.160.161.206
      1 201.62.56.49
      1 201.46.248.157
      1 201.222.55.238
      1 201.219.213.194
      1 201.217.71.122
      1 201.184.135.155
      1 201.182.91.254
      1 201.159.95.94
      1 200.77.186.206
      1 200.73.129.61
      1 200.73.128.5
      1 200.71.72.223
      1 200.54.22.74
      1 200.54.194.13
      1 200.4.169.179
      1 200.37.150.18
      1 200.116.198.160
      1 199.19.254.74
      1 197.232.47.102
      1 197.221.89.67
      1 197.210.129.142
      1 197.159.3.35
      1 196.3.100.45
      1 196.27.106.112
      1 196.216.215.11
      1 195.9.25.42
      1 195.81.112.162
      1 195.53.237.122
      1 195.230.154.2
      1 195.191.214.118
      1 194.44.246.82
      1 193.85.228.178
      1 193.169.5.14
      1 193.106.192.149
      1 192.169.140.100
      1 191.7.209.186
      1 191.6.135.90
      1 191.5.177.63
      1 191.37.165.83
      1 191.241.226.173
      1 191.103.254.125
      1 190.93.208.82
      1 190.85.115.78
      1 190.6.200.158
      1 190.29.26.190
      1 190.214.30.146
      1 190.14.225.34
      1 190.131.232.42
      1 190.128.203.214
      1 190.121.146.241
      1 190.109.167.9
      1 190.104.237.148
      1 190.104.179.210
      1 189.91.84.25
      1 189.203.179.237
      1 189.10.97.147
      1 188.94.224.82
      1 188.43.52.166
      1 188.243.58.75
      1 188.166.104.152
      1 188.133.137.9
      1 187.4.112.242
      1 187.22.237.229
      1 187.188.190.217
      1 187.125.23.26
      1 187.103.230.40


      ...
 
Last edited:
So basically if someone is attacking 1 customer's websites, it downs all of the websites hosted on the server. How do you guys handle that?
 
Back
Top