非常に惡質(Axis)な攻撃を検知!

この記事は約8分で読めます。
スポンサーリンク

当サイトには広告が含まれています。

(2023年4月)

先日、以下で作成したシステムだが、

鯖_サーバー

関連:不審な「googleusercontent.com」は、Googleではない?

以下の非常に惡質(Axis)な攻撃を検知/見地/検地!

IPアドレス:2x.3x.1xx.9x

ワヅカ/和束貳分ほどの間に、249アクセス!

/x.php
/e.php
/0.php
/4.php
/5.php
/6.php
/7.php
/8.php
/9.php
/a.php
/z.php
/r.php
/t.php
/y.php
/u.php
/i.php
/o.php
/p.php
/q.php
/s.php
/d.php
/f.php
/g.php
/h.php
/j.php
/k.php
/l.php
/m.php
/w.php
/v.php
/n.php
/b.php
/c.php
/fw.php
/fx.php
/xl.php
/wp.php
/up.php
/ok.php
/xx.php
/10.php
/dr.php
/it.php
/41.php
/wi.php
/ws.php
/87.php
/13.php
/cp.php
/bb.php
/aa.php
/lf.php
/xo.php
/mi.php
/fa.php
/if.php
/kk.php
/kn.php
/sh.php
/01.php
/V3.php
/V5.php
/am.php
/ms.php
/xz.php
/0z.php
/ne.php
/doc.php
/ups.php
/404.php
/sym.php
/403.php
/c99.php
/xxx.php
/www.php
/wp2.php
/owl.php
/100.php
/777.php
/Gel.php
/.fk.php
/xox.php
/mar.php
/nee.php
/lol.php
/7yn.php
/alf.php
/olu.php
/rss.php
/fox.php
/swm.php
/s_e.php
/098.php
/gif.php
/lab.php
/snd.php
/srx.php
/wpx.php
/bala.php
/mini.php
/DKIZ.php
/leaf.php
/alex.php
/send.php
/data.php
/1337.php
/blog.php
/kiss.php
/root.php
/vita.php
/mrjn.php
/3301.php
/mari.php
/date.php
/s_ne.php
/.alf.php
/tuco.php
/unix.php
/1975.php
/radio.php
/anone.php
/wp-ad.php
/rahma.php
/ohayo.php
/sh3ll.php
/small.php
/about.php
/gel4y.php
/style.php
/error.php
/goods.php
/xhell.php
/yuuki.php
/lufix.php
/sym403.php
/xindex.php
/kindex.php
/sindex.php
/qindex.php
/3index.php
/mailer.php
/nasgor.php
/upload.php
/wp-one.php
/alexus.php
/minimo.php
/4price.php
/Cpanel.php
/jindex.php
/server.php
/beence.php
/4index.php
/5index.php
/6index.php
/7index.php
/8index.php
/9index.php
/wp-mna.php
/xmrlpc.php
/stindex.php
/symlink.php
/baindex.php
/alfa123.php
/wp-blog.php
/alexuse.php
/content.php
/Marvins.php
/blog/fw.php
/mailer1.php
/indeeex.php
/.wp-back.phP
/sendmail.php
/wp/rahma.php
/gank.php.PhP
/Uploader.php
/contacts.php
/leaf_php.php
/images/f.php
/mt/pekok.php
/.wp-cache.php
/MARIJUANA.php
/Sendemail.php
/wp-beckup.php
/alfaindex.php
/images/fx.php
/uploads/l.php
/wp-confirm.php
/wp-confiig.php
/images/sym.php
/leafmailer.php
/uploads/up.php
/images/c99.php
/images/403.php
/images/ave.php
/wp.php?Chitoge
/leaf_mailer.php
/images/tahe.php
/files/image.php
/images/about.php
/wp-content/x.php
/wp-blog-post.php
/images/pushy.php
/uploads/s4.phtml
/wp-content/fw.php
/wp-content/fx.php
/leafmailer2.8.php
/alexus-mailer.php
/wp-content/up.php
/wp-content/wp.php
/uploads/upload.php
/.tmb/cache/shz.php
/wp-content/bala.php
/images/indexalt.php
/wp-content/radio.php
/alexusmailer%202.0.php
/wp-content/about.php
/wp_class_datalib.php
/wp-content/think.php
/.well-known/leaf.php
/.well-known/radio.php
/uploads/contexmini.php
/wp-content/.wp-back.phP
/wp-content/tcihmfyu.php
/libraries/joomla/css.php
/libraries/joomla/jmail.php
/libraries/joomla/jmails.php
/wp-content/uploads/small.php
/wp-content/upgrade/lfgpoem.php
/xxxxxxxxxxxxxxxxxxxxxxxxxxxx.php
/wp-content/uploads/readindex.php
/wp-content/uploads/wp-stream.php
/wp-content/upgrade/wp-signup.php
/wp-content/uploads/wp-conflg.php
/wp-content/themes/gaukingo/db.php
/wp-content/uploads/jcjjjjcjjc.php
/wp-content/uploads/2021/12/fw.php
/wp-content/uploads/2021/12/up.php
/components/com_b2jcontact/izoc.php
/wp/xxxxxxxxxxxxxxxxxxxxxxxxxxxx.php
/wp-content/uploads/wp-blockdown.php
/wp-content/themes/gaukingo/db.php?u
/blog/xxxxxxxxxxxxxxxxxxxxxxxxxxxx.php
/images/xxxxxxxxxxxxxxxxxxxxxxxxxxxx.php
/uploads/xxxxxxxxxxxxxxxxxxxxxxxxxxxx.php
/wp-contentxxxxxxxxxxxxxxxxxxxxxxxxxxxx.php
/libraries/xxxxxxxxxxxxxxxxxxxxxxxxxxxx.php
/wp-content/xxxxxxxxxxxxxxxxxxxxxxxxxxxx.php
/components/xxxxxxxxxxxxxxxxxxxxxxxxxxxx.php
/.well-known/xxxxxxxxxxxxxxxxxxxxxxxxxxxx.php

このようなオカシナ/丘支那アクセスを検知し、自動で.htaccessに追記(deny from xxx)するのがソレである。

仕掛クェルョ?戰争だョ!戰ン争ぉ!!(優作の倅)

関連:free-floating-buttons.comという不審なアクセス [リファラースパム(referer/referrer spam)]

関連:Bing(msn)の襲来を回避する方法 [bingbot,bing,crawl-delay]

関連:163data.com.cn 拒否作戦の結果wwwww

関連:.htaccess でアクセス元を制限する(allow,deny)

関連:ある1日の 163data.com.cn の異常なアクセス(30,835件)

関連:.htaccess でアクセス元を制限する(allow,deny)

関連:ある1日の 163data.com.cn の異常なアクセス(30,835件)

関連:163data.com.cnの拒否IPリストを自動生成(deny)

関連:悪質な 163data.com.cn を拒否する(.htaccess,拒否リスト)

タイトルとURLをコピーしました