clouderra noc

Abuse reports

Send reports to abuse@clouderra.ru. The mailbox is read by a human every business day and monitored for high-severity keywords outside business hours.

What to include

A report we can act on has to let us find one host and one time window. Without both we can only file it, which helps nobody.

Please do not send screenshots of logs. We cannot grep an image, and it usually costs a round trip to ask for the text.

How we handle it

ClassFirst actionTarget
Outbound flood or reflection Rate limit or null-route the source, then notify the operator < 1 h
Compromised host / malware C2 Isolate, notify, require remediation before restore < 4 h
Port scanning, brute force Notify with the evidence, block repeat offenders < 24 h
Unsolicited mail Notify, revoke outbound mail if it continues < 24 h
Content complaint Forward to the responsible party, no unilateral takedown < 3 business days

What this host is not

Reports frequently arrive here because a DNS answer served by this node pointed at something you object to. Publishing a record is not hosting the content. Take the complaint to the operator of the address in the answer; if that address is inside our network the report belongs at the abuse mailbox above and we will act on it.

Likewise, this node runs no recursive resolver, no mail service and no web application beyond these pages. Reports claiming otherwise usually mean a spoofed source address, and we are happy to confirm that if you send us the packet capture.

Escalation

If a report has gone unanswered past the target above, resend it with [ESCALATION] at the front of the subject. That bypasses the normal queue ordering. Legal correspondence should go to the postal address on record with our registrar rather than to this mailbox.