Stop Access to Files Created Less than 24 Hours Ago
-
I am seeing in the logs where the hacker is able to access files that have been created less than 24 hours ago. How do I stop this using the free version of the software?
Note that I am using the FULL WAF and not the WP WAF.
I realize the goal is to remove the offending scripts. But until I have found those, how can I stop them from accessing these new files?
15/Jun/18 17:50:44 #1583765 INFO – 163.172.43.3 GET /wp-content/plugins/pluginname/destinations/_s3lib3/Aws/CognitoIdentity/Exception/filename.php – Access to a script modified/created less than 24 hour(s) ago – [/home/domain/public_html/wp-content/plugins/pluginname/destinations/_s3lib3/Aws/CognitoIdentity/Exception/filename.php] – https://www.domain.com
15/Jun/18 17:50:44 #4295467 HIGH 309 163.172.43.3 GET /wp-content/plugins/pluginname/destinations/_s3lib3/Aws/CognitoIdentity/Exception/filename.php – PHP predefined variables – [COOKIE:Z = call_user_func(create_function($Y,gzuncompress(base64_decode($_COOKIE[CODE]))));] – https://www.domain.com
- The topic ‘Stop Access to Files Created Less than 24 Hours Ago’ is closed to new replies.