• Resolved Styling Desigins

    (@stylingdesigins)


    Do you guys have an example list of urls to block for: Immediately block IPs that access these URLs

    So that I can import this list into my other sites where have wordfence installed as my sites are continuously being targeted. I see a lot of live traffic targeting all kinds of url′s, php scripts. These bots are looking if these files are there or something, is this normal? Anyone else see the same thing?

    Some frequent php scripts they try to target:
    /chosen.php
    /simple.php
    /max.php
    /.xas.php

    and a gazillion more. If there would be a complete list of these then it would be great if they are already pre-configured so we do not get targeted or at least these hackers get blocked.

Viewing 1 replies (of 1 total)
  • Plugin Support wfpeter

    (@wfpeter)

    Hi @stylingdesigins, thanks for your question.

    As each use-case is different, and some customers use WordPress as a blog on top of a custom site, we cannot provide a list of “bad” pages in case the default installation were to immediately block an administrator from their own site for just visiting a legitimate path.

    We would suggest the feature is most valuable when a hacker is frequently targeting the same non-existant path, or if a known vulnerability/page is clearly being targeted repeatedly and you wish to stop them. Wordfence will automatically block humans/bots based on their intent, so some known vulnerabilities may be caught in this way without manually specifying them.

    More info for anybody referencing this topic: https://www.wordfence.com/help/firewall/options/#immediately-block-urls

    Thanks,
    Peter.

    • This reply was modified 1 year ago by wfpeter. Reason: Corrected username link
Viewing 1 replies (of 1 total)
  • The topic ‘Example list of urls to block for: Immediately block IPs that access these URLs’ is closed to new replies.