Skip to content

Instantly share code, notes, and snippets.

@fawkesley
Last active December 14, 2016 20:19
Show Gist options
  • Save fawkesley/9ca15f85fa89e08c40dcc2d69ec36d09 to your computer and use it in GitHub Desktop.
Save fawkesley/9ca15f85fa89e08c40dcc2d69ec36d09 to your computer and use it in GitHub Desktop.
HTTP 404 logs for URLs containing `admin` or `config` on my site in period March-December 2016
241 /admin/config.php
68 /admin/i18n/readme.txt
30 /administrator/index.php
17 /phpmyadmin
14 /wp-admin/admin-ajax.php?action=revslider_show_image&img=../wp-config.php
9 /wp-content/plugins/google-mp3-audio-player/direct_download.php?file=../../../wp-config.php
9 /wp-content/plugins/db-backup/download.php?file=../../../wp-config.php
8 /wp-content/themes/mTheme-Unus/css/css.php?files=../../../../wp-config.php
7 /wp-content/force-download.php?file=../wp-config.php
7 /administrator/manifests/libraries/joomla.xml
7 /a2billing/admin/phpsysinfo/README
6 /wp-content/themes/NativeChurch/download/download.php?file=../../../../wp-config.php
6 /myadmin
6 /administrator/
5 /wp/wp-admin/setup-config.php
5 /wp-content/themes/urbancity/lib/scripts/download.php?file=../../../../../wp-config.php
5 /wp-content/themes/trinity/lib/scripts/download.php?file=../../../../../wp-config.php
5 /wp-content/themes/parallelus-salutation/framework/utilities/download/getfile.php?file=../../../../../../wp-config.php
5 /wp-content/themes/parallelus-mingle/framework/utilities/download/getfile.php?file=../../../../../../wp-config.php
5 /wp-content/themes/lote27/download.php?download=../../../wp-config.php
5 /wp-content/themes/linenity/functions/download.php?imgurl=../../../../wp-config.php
5 /wp-content/themes/epic/includes/download.php?file=../../../../wp-config.php
5 /wp-content/themes/churchope/lib/downloadlink.php?file=../../../../wp-config.php
5 /wp-content/themes/authentic/includes/download.php?file=../../../../wp-config.php
5 /wp-content/themes/antioch/lib/scripts/download.php?file=../../../../../wp-config.php
5 /wp-content/plugins/tinymce-thumbnail-gallery/php/download-image.php?href=../../../../wp-config.php
5 /wp-content/plugins/simple-download-button-shortcode/simple-download-button_dl.php?file=../../../../wp-config.php
5 /wp-content/plugins/plugin-newsletter/preview.php?data=../../../../wp-config.php
5 /wp-content/plugins/pica-photo-gallery/picadownload.php?imgname=../../../wp-config.php
5 /wp-content/plugins/hb-audio-gallery-lite/gallery/audio-download.php?file_path=../../../../wp-config.php&file_size=10
5 /wp-content/plugins/dukapress/lib/dp_image.php?src=../../../../wp-config.php
5 /wp-admin/admin.php?page=miwoftp&option=com_miwoftp&action=download&item=wp-config.php&order=name&srt=yes
5 /wp-admin/admin-ajax.php?action=revolution-slider_show_image&img=../wp-config.php
5 /wp-admin/admin-ajax.php?action=kbslider_show_image&img=../wp-config.php
5 /wp-admin/admin-ajax.php?action=getfile&/../../wp-config.php
5 /wp-admin/admin-ajax.php?action=fe_get_sv_html&video=../wp-config.php
5 /wordpress/wp-admin/setup-config.php
5 /index.php/admin/
5 /configuration.php
5 /blog/wp-admin/setup-config.php
5 /admin/
4 /wp-content/themes/ypo-theme/download.php?download=../../../wp-config.php
4 /wp-content/themes/TheLoft/download.php?file=../../../wp-config.php
4 /wp-content/themes/SMWF/inc/download.php?file=../../../../wp-config.php
4 /wp-content/themes/persuasion/lib/scripts/dl-skin.php
4 /wp-content/themes/Newspapertimes_1/download.php?filename=../../../wp-config.php
4 /wp-content/themes/MichaelCanthony/download.php?file=../../../wp-config.php
4 /wp-content/themes/jarida/download.php?uri=../../../wp-config.php
4 /wp-content/themes/fusion/lib/scripts/dl-skin.php
4 /wp-content/themes/FR0_theme/down.php?path=../../../wp-config.php
4 /wp-content/themes/dejavu/lib/scripts/dl-skin.php
4 /wp-content/themes/construct/lib/scripts/dl-skin.php
4 /wp-content/themes/awake/lib/scripts/dl-skin.php
4 /wp-content/plugins/wp-filemanager/incl/libfile.php?&path=../../&filename=wp-config.php&action=download
4 /wp-content/plugins/ajax-store-locator-wordpress_0/sl_file_download.php?download_file=../../../wp-config.php
4 /wp-config.php.txt
4 /wp-admin/uploader.php
4 /backup/wp-admin/setup-config.php
4 /admin/module-builtin.xml
4 //admin/config.php
4 /a2billing/admin/Public/modules/
3 /wp-content/themes/ypo-theme/download.php?download=..%2F..%2F..%2F..%2Fwp-config.php
3 /wp-content/themes/yakimabait/download.php?file=../../../wp-config.php
3 /wp-content/themes/tess/download.php?file=../../../wp-config.php
3 /wp-content/themes/method/lib/scripts/dl-skin.php
3 /wp-content/themes/markant/download.php?file=../../../wp-config.php
3 /wp-content/themes/felis/download.php?file=../../../wp-config.php
3 /wp-content/themes/corporate_works/downloader.php?file_download=../../../wp-config.php
3 /wp-content/themes/acento/includes/view-pdf.php?download=1&file=../../../../wp-config.php
3 /wp-content/plugins/simple-ads-manager/sam-ajax-admin.php
3 /wp-content/plugins/filedownload/download.php/?path=../../../wp-config.php
3 /wp-config.php~
3 /wp-config.php
3 /wordpress/wordpress/wp-admin/setup-config.php
3 /phpmyadmin/
3 /news//wp-admin/setup-config.php
3 /.git/config
3 /force-download.php?file=wp-config.php
3 /configuration.php~
3 /blog/wordpress/wp-admin/setup-config.php
2 /wp-content/themes/RedSteel/download.php?file=../../../wp-config.php
2 /wp-content/plugins/revslider/js/admin.js
2 /wp-content/plugins/recent-backups/download-file.php?file_link=../../../wp-config.php
2 /wp-content/plugins/image-export/download.php?file=../../../wp-config.php
2 /wp-content/plugins/history-collection/download.php?var=../../../wp-config.php
2 /wp-content/plugins/ebook-download/filedownload.php?ebookdownloadurl=../../../wp-config.php
2 /wp-config.txt
2 /wp-config.phpOLD
2 /wp-config.phpa
2 /wp-config.old
2 /wp-config.bak
2 /wp-config-backup1.txt
2 /wp-config%20fix.txt
2 /wp-config
2 /wp-admin/user/wp-reader.php
2 /wp-admin/link-parse-editor.php?info4
2 /phpmyadmin/scripts/setup.php
2 /phpmyadmin2/
2 /php-my-admin/
2 /myadmin/scripts/setup.php
2 /myadmin/
2 /dbadmin/
2 /.cpanel_config.php
2 /.config.php
2 /blog//administrator/
2 /admin.php
2 /administrator/components/com_aceftp/quixplorer/index.php?action=download&dir=&item=configuration.php&order=name&srt=yes
2 /administrator
2 //admin
1 /wpradmin/cache/3/8/ini.php
1 /wp-content/themes/parallelus-salutation/framework/utilities/download/getfile.php?file=..%2F..%2F..%2F..%2F..%2F..%2Fwp-config.php
1 /wp-content/themes/infocus/lib/scripts/dl-skin.php
1 /wp-content/themes/infocus2/lib/scripts/dl-skin.php
1 /wp-content/themes/estrutura-basica/scripts/download.php?arquivo=../../wp-config.php
1 /wp-content/plugins/wptf-image-gallery/lib-mbox/ajax_load.php?url../../../../wp-config.php
1 /wp-content/plugins/wptf-image-gallery/lib-mbox/ajax_load.php?url=../../../wp-config.php
1 /wp-content/plugins/wp-swimteam/include/user/download.php?file=../../wp-config.php&filename=../../wp-config.php&contenttype=text/html&transient=1
1 /wp-content/plugins/wp-swimteam/include/user/download.php?file=../../../../../wp-config.php
1 /wp-content/plugins/wp-mobile-detector/admin/css/style.css
1 /wp-content/plugins/wp-miniaudioplayer/map_download.php?fileurl=../../../wp-config.php
1 /wp-content/plugins/wp-filemanager/incl/libfile.php?path=../../&filename=wp-config.php&action=download
1 /wp-content/plugins/wp-ecommerce-shop-styling/includes/download.php?filename=../../../../wp-config.php
1 /wp-content/plugins/wp-ecommerce-shop-styling/includes/download.php?filename=../../../../../../../../../wp-config.php
1 /wp-content/plugins/thecartpress/modules/Miranda.class.php?page=../../../../../../../../wp-config.php%00
1 /wp-content/plugins/simple-image-manipulator/controller/download.php?filepath=../../../wp-config.php
1 /wp-content/plugins/simple-image-manipulator/controller/download.php?filepath=../../../../wp-config.php
1 /wp-content/plugins/sell-downloads/sell-downloads.php?file=../../../../../../../../.././wp-config.php%00
1 /wp-content/plugins/sell-downloads/sell-downloads.php?file=../../../wp-config.php
1 /wp-content/plugins/s3bubble-amazon-s3-html-5-video-with-adverts/assets/plugins/ultimate/content/downloader.php?path=../../../../../../../wp-config.php
1 /wp-content/plugins/s3bubble-amazon-s3-html-5-video-with-adverts/assets/plugins/ultimate/content/downloader.php?name=wp-config.php&path=../../../../../../../wp-config.php
1 /wp-content/plugins/rb-agency/ext/forcedownload.php?file=../../../wp-config.php
1 /wp-content/plugins/paypal-currency-converter-basic-for-woocommerce/proxy.php?requrl=../../../wp-config.php
1 /wp-content/plugins/mdc-youtube-downloader/includes/download.php?file=../../../../wp-config.php
1 /wp-content/plugins/imdb-widget/pic.php?url=../../../wp-config.php
1 /wp-content/plugins/ibs-mappro/lib/download.php?file=../../../../wp-config.php
1 /wp-content/plugins/document_manager/views/file_download.php?fname=../../wp-config.php
1 /wp-content/plugins/cip4-folder-download-widget/cip4-download.php?target=wp-config.php&info=wp-config.php
1 /wp-content/plugins/cherry-plugin/admin/js/widget-rules.js
1 /wp-content/plugins/cherry-plugin/admin/import-export/upload.php
1 /wp-content/plugins/cherry-plugin/admin/css/cherry-admin-plugin.css
1 /wp-content/plugins/candidate-application-form/downloadpdffile.php?fileName=../../../wp-config.php
1 /wp-content/plugins/candidate-application-form/downloadpdffile.php?fileName=../../../../../../../../../../../../../wp-config.php
1 /wp-content/plugins/brandfolder/callback.php?wp_abspath=../../../wp-config.php%00
1 /wp-content/plugins/aspose-cloud-ebook-generator/aspose_posts_exporter_download.php?file=../../../wp-config.php
1 /wp-content/plugins/advanced-uploader/upload.php?destinations=../../../../../../../../../wp-config.php%00
1 /wp-content/plugins/abtest/abtest_admin.php?action=../../../wp-config.php
1 /wp-config-sample.php
1 /wp-config.php.swp
1 /.wp-config.php.swp
1 /wp-config.php.swo
1 /wp-config.php.save
1 /wp-config.php.old
1 /wp-config.php.dist
1 /wp-config.php.bak
1 /wp-config.php.backup
1 /wp-config.php_backup
1 /wp-config.php%23
1 /wp-config.php.
1 /wp-config.php~~
1 /.wp-config.php
1 /wp-config.data
1 /wp-config-backup.txt
1 /wp-config.backup
1 /wp-config-backup
1 /wp-config.
1 /wp-admin/tools.php?page=backup_manager&download_backup_file=../wp-config.php
1 /wp-admin/security.php
1 /wp-admin/link-parse-editor.php?info4=1
1 /wp-admin/includes/images.php?php4
1 /wp-admin/includes/image-import.php
1 /wp-admin/admin.php?page=miwoftp&option=com_miwoftp&action=download&item=../wp-config.php&order=name&srt=yes
1 /wp-admin/admin-ajax.php?action=revslider_show_image&img=../index.php
1 /wp-admin/admin-ajax.php?action=revslider_ajax_action
1 /wp-admin/admin-ajax.php?action=ave_publishPost&title=random&short=1&term=1&thumb=%20../wp-config.php
1 /wp-admin/admin-ajax.php?action=ave_publishPost&title=1&short=1&term=1&thumb=../wp-config.php
1 /wp-admin/admin-ajax.php?action=ae-sync-user&method=create&user_login=WinKomp&user_pass=Password&role=administrator
1 //wp-admin/admin-ajax.php
1 /wp-admin/admin-ajama.html
1 /wp-admin
1 /webadmin/
1 /taking-back-my-data-move-from-dropbox-to-nextcloud/fileadmin/
1 /.svn/text-base/wp-config.php.svn-base
1 /phpmy-admin/
1 /php-myadmin/
1 /openserver/phpmyadmin/
1 /new/wordpress/wp-admin/setup-config.php
1 /mysqladmin/
1 /mysql-admin/
1 /mdocs-posts/?mdocs-img-preview=../../../wp-config.php
1 /mdocs-posts/?mdocs-img-preview=../../..-/wp-config.php
1 /mdocs-posts/?mdocs-img-preview=../../..%C2%AD/wp-config.php
1 /index.php/superadmin/
1 /index.php/myadmin/
1 /index.php/adminadmin/
1 /index.php/admin123/
1 /fileadmin/
1 /_config.yml
1 /configuration.php.txt
1 /configuration.php.swp
1 /.configuration.php.swp
1 /configuration.php.swo
1 /configuration.php.save
1 /configuration.php.old
1 /configuration.php.dist
1 /configuration.php.bak
1 /configuration.php.backup
1 /configuration.php_backup
1 /configuration.php.
1 /.configuration.php
1 /configurationbak.php
1 /config.php~
1 /config.old
1 /config.bak
1 /config
1 /CFIDE/administrator/index.cfm
1 /blog/wp-content/themes/ypo-theme/download.php?download=..%2F..%2F..%2F..%2Fwp-config.php
1 /blog/wp-content/themes/mTheme-Unus/css/css.php?files=../../../../wp-config.php
1 /blog/wp-content/plugins/hb-audio-gallery-lite/gallery/audio-download.php?file_path=../../../../wp-config.php&file_size=10
1 /blog/wp-content/plugins/google-mp3-audio-player/direct_download.php?file=../../../wp-config.php
1 /blog/wp-content/plugins/db-backup/download.php?file=../../../wp-config.php
1 /blog/wp-admin/admin.php?page=miwoftp&option=com_miwoftp&action=download&item=wp-config.php&order=name&srt=yes
1 /blog/wp-admin/admin-ajax.php?action=revslider_show_image&img=../wp-config.php
1 /blogs/wp-admin/setup-config.php
1 /blogs/wordpress/wp-admin/setup-config.php
1 /blog//index.php/admin/
1 /blog//force-download.php?file=wp-config.php
1 /blog//bitrix/admin/
1 /blog//admin.php
1 /bitrix/admin/
1 /bitrix/admin
1 /back/wp-admin/setup-config.php
1 /backup.wp-config.php
1 /backups.php?mode=config&key=C6y1F2EA7217PBTL1FlcH98sOpfo/r1Z76/OKFae
1 /backup.configuration.php
1 /administrator/includes/readmy.php
1 /admin/fckeditor/editor/
1 /admin/content/sitetree/
1 /admin/content/sitetree
1 /admin//config.php
1 //admin/ajax.php
1 /admin
1 /%23wp-config.php%23
1 /%23configuration.php%23
1 /1/wp-admin/setup-config.php
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment