1. Advertising
    y u no do it?

    Advertising (learn more)

    Advertise virtually anything here, with CPM banner ads, CPM email ads and CPC contextual links. You can target relevant areas of the site and show ads based on geographical location of the user if you wish.

    Starts at just $1 per CPM or $0.10 per CPC.

Hacked Wordpress Sites (IPS) (Hosts might want to take a look)

Discussion in 'Security' started by dzonidev, Aug 6, 2013.

  1. #1
    Hello,

    Yesterday I encountered a spam attack. One of the clients got attacked by hackers which used hacked Wordpress websites which targeted .PHP files with the GET method, of course the idea was to overload Apache and try to crash the server. The best way to just stop the attack is to either suspend the customer, or change the directory permissions to 700 which will cause the 403 Error.

    I uploaded the access log, with all the IPs and website domains, I commented out everything except the IP, so it can be directly uploaded to your firewall deny list. There are about 750k of requests I most of them are unique.

    Here is the RAW download: https://www.dropbox.com/s/pl68kfsxx4lhph...IPs).txt
    And here is the compressed file: https://slabhosting.com/hacked_wp_ips.zip

    I hope this helps you! Once I blocked the IPs the attacked stop.
    SEMrush
    Regards,
     
    Last edited: Aug 6, 2013
    dzonidev, Aug 6, 2013 IP
    SEMrush