Jump to content

Featured Replies

Posted

I am not sure what this crawl bot is trying to do.. but looking for some info:

 

image.thumb.png.54a26f6ba4eab8b7bc16f3f59e508d03.png

 

image.png.fc4edc66e9d73479e80d751492f8a1b6.png

Solved by Marc

Go to solution

There was a bot out of Sweden that appeared to be attempting to Pentest my site a few weeks ago. My firewall blocked a TON of attempted SQL injections, cross site scripting, and other malicious requests. 

I would block the IP because whatever they’re doing they should NOT be triggering all of those errors. So it’s most likely not a “good” bot. 

  • Author

I was thinking same to block their subnet: 193.235.141.0/24

 

 

That would be a good course of action if you don’t have a lot of legitimate traffic from that country. Over 95% of my legitimate traffic is from the US so it’s safe for me to do that. Only you would know what your traffic is like. 🙂

  • Solution

Make sure you site is up to date, and indeed I would advise you block that IP. Something is clearly intentionally trying to hammer your server with requests

What is the URL where the errors get logged?
Are they all logged from the same URL?

Recently Browsing 0

  • No registered users viewing this page.