Skip to content

Instantly share code, notes, and snippets.

@damienvancouver
Last active December 3, 2015 18:39
Show Gist options
  • Save damienvancouver/6efd28bdc98a3742c46d to your computer and use it in GitHub Desktop.
Save damienvancouver/6efd28bdc98a3742c46d to your computer and use it in GitHub Desktop.
just one minute of a sketchy bot fingerprinting for vulenrable modules
209.208.108.18 - - [20/Nov/2015:12:40:09 -0800] "GET /license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:09 -0800] "GET /wp-admin/includes/license.php HTTP/1.0" 403 491 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:10 -0800] "GET /wp-includes/images/wlw/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:10 -0800] "GET /wp-includes/text/diff/engine/rss.class.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:11 -0800] "GET /wp-content/plugins/rss.class.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:11 -0800] "GET /wp-content/plugins/cherry-plugin/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:12 -0800] "GET /wp-content/themes/rss.class.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:12 -0800] "GET /wp-content/themes/satoshi/images/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:13 -0800] "GET /wp-includes/license.php HTTP/1.0" 403 485 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:13 -0800] "GET /wp-admin/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:13 -0800] "GET /wp-content/plugins/wp-checkout/vendors/shipping/canadapost/manager/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:14 -0800] "GET /wp-content/uploads/license.php HTTP/1.0" 403 492 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:14 -0800] "GET /wp-admin/includes/rss.class.php HTTP/1.0" 403 493 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:14 -0800] "GET /wp-includes/rss.class.php HTTP/1.0" 403 487 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:14 -0800] "GET /wp-admin/user/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:15 -0800] "GET /wp-includes/text/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:15 -0800] "GET /wp-content/plugins/really-simple-captcha/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:16 -0800] "GET /wp-admin/user/rss.class.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:16 -0800] "GET /wp-includes/text/diff/engine/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:17 -0800] "GET /wp-content/themes/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:18 -0800] "GET /wp-content/plugins/gravityforms/includes/addon/js/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:18 -0800] "GET /wp-content/plugins/revslider/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:19 -0800] "GET /wp-content/plugins/scissors-watermark/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:19 -0800] "GET /wp-content/plugins/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:20 -0800] "GET /wp-includes/js/tinymce/themes/rss.class.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:20 -0800] "GET /wp-content/themes/china_import/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:21 -0800] "GET /wp-content/plugins/underconstruction/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:18 -0800] "GET /wp-content/plugins/gravityforms/includes/addon/js/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:18 -0800] "GET /wp-content/plugins/revslider/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:19 -0800] "GET /wp-content/plugins/scissors-watermark/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:19 -0800] "GET /wp-content/plugins/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:20 -0800] "GET /wp-includes/js/tinymce/themes/rss.class.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:20 -0800] "GET /wp-content/themes/china_import/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:21 -0800] "GET /wp-content/plugins/underconstruction/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:21 -0800] "GET /wp-content/topnews/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:22 -0800] "GET /wp-content/uploads/2015/01/rss.class.php HTTP/1.0" 403 502 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:22 -0800] "GET /wp-includes/js/tinymce/utils/rss.class.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:22 -0800] "GET /wp-includes/images/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:23 -0800] "GET /rss.class.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:23 -0800] "GET /wp-content/uploads/rss.class.php HTTP/1.0" 403 494 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:23 -0800] "GET /wp-includes/css/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:24 -0800] "GET /wp-includes/images/rss.class.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:24 -0800] "GET /wp-includes/text/rss.class.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:25 -0800] "GET /wp-includes/css/rss.class.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:25 -0800] "GET /wp-admin/rss.class.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:26 -0800] "GET /wp-includes/js/tinymce/themes/advanced/skins/wp_theme/img/rss.class.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:26 -0800] "GET /images/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:27 -0800] "GET /wp-content/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:27 -0800] "GET /wp-includes/text/diff/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:28 -0800] "GET /wp-content/plugins/wp-newsvortex-standart/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:28 -0800] "GET /wp-includes/js/tinymce/skins/lightgray/img/rss.class.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:29 -0800] "GET /usr/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:29 -0800] "GET /wp-includes/certificates/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:30 -0800] "GET /wp-includes/id3/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:30 -0800] "GET /wp-includes/theme-compat/license.php HTTP/1.0" 403 498 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:31 -0800] "GET /wp-includes/pomo/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:31 -0800] "GET /wp-admin/js/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:32 -0800] "GET /wp-content/plugins/socialize-it/js/apprise/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:32 -0800] "GET /wp-includes/text/diff/renderer/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:33 -0800] "GET /wp-includes/js/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:33 -0800] "GET /wp-includes/text/diff/renderer/rss.class.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:34 -0800] "GET /wp-includes/simplepie/decode/html/rss.class.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:34 -0800] "GET /wp-admin/network/rss.class.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:35 -0800] "GET /wp-admin/images/rss.class.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:35 -0800] "GET /wp-includes/js/tinymce/skins/lightgray/fonts/rss.class.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:36 -0800] "GET /wp-content/plugins/formcraft/file-upload/server/php/files/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:36 -0800] "GET /wp-includes/js/tinymce/plugins/spellchecker/classes/utils/rss.class.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:37 -0800] "GET /wp-includes/simplepie/license.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:37 -0800] "GET /interface.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:38 -0800] "GET /face.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:38 -0800] "GET /cron.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:39 -0800] "GET /session.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:39 -0800] "GET /deal.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:40 -0800] "GET /xr.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:40 -0800] "GET /inter.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:41 -0800] "GET /wp-ins.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:41 -0800] "GET /class-pclzip.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:42 -0800] "GET /wp-emails.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:42 -0800] "GET /Cteaboer.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:43 -0800] "GET /sites.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:43 -0800] "GET /about.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:44 -0800] "GET /wp-csss.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:44 -0800] "GET /site.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:45 -0800] "GET /conns.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:45 -0800] "GET /del.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:46 -0800] "GET /in.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:46 -0800] "GET /cache.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:47 -0800] "GET /menu.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:48 -0800] "GET /css.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:48 -0800] "GET /gh.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:49 -0800] "GET /error.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:49 -0800] "GET /faq.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:50 -0800] "GET /class-wp-importer.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:50 -0800] "GET /object-cache.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:51 -0800] "GET /info.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:51 -0800] "GET /ini.php HTTP/1.0" 404 30628 "-" "-"
209.208.108.18 - - [20/Nov/2015:12:40:52 -0800] "GET /wp-doo.php HTTP/1.0" 404 30628 "-" "-"
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment