mitchellkrogza/apache-ultimate-bad-bot-blocker

[INSTALLATION] (add a descriptive title here)

sdondley opened this issue · 1 comments

Hi, thanks for these apache configs. I just installed it successfully.

I read over the documentation but I didn't see anything that tells me how to ban requests for bad paths from bots who are obviously fishing for exploits. For example:

13.92.29.114 - - [13/Feb/2021:22:00:16 -0500] "GET / HTTP/1.1" 301 562 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
13.92.29.114 - - [13/Feb/2021:22:00:21 -0500] "GET //wp-includes/wlwmanifest.xml HTTP/1.1" 404 19897 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
13.92.29.114 - - [13/Feb/2021:22:00:23 -0500] "GET //xmlrpc.php?rsd HTTP/1.1" 200 462 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
13.92.29.114 - - [13/Feb/2021:22:00:24 -0500] "GET / HTTP/1.1" 200 50984 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
13.92.29.114 - - [13/Feb/2021:22:00:25 -0500] "GET //blog/wp-includes/wlwmanifest.xml HTTP/1.1" 200 26702 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
13.92.29.114 - - [13/Feb/2021:22:00:26 -0500] "GET //web/wp-includes/wlwmanifest.xml HTTP/1.1" 404 16746 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
13.92.29.114 - - [13/Feb/2021:22:00:26 -0500] "GET //wordpress/wp-includes/wlwmanifest.xml HTTP/1.1" 404 16752 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
13.92.29.114 - - [13/Feb/2021:22:00:27 -0500] "GET //website/wp-includes/wlwmanifest.xml HTTP/1.1" 404 16750 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
13.92.29.114 - - [13/Feb/2021:22:00:27 -0500] "GET //wp/wp-includes/wlwmanifest.xml HTTP/1.1" 404 16745 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
13.92.29.114 - - [13/Feb/2021:22:00:28 -0500] "GET //news/wp-includes/wlwmanifest.xml HTTP/1.1" 302 437 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
13.92.29.114 - - [13/Feb/2021:22:00:28 -0500] "GET //2018/wp-includes/wlwmanifest.xml HTTP/1.1" 404 16747 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
13.92.29.114 - - [13/Feb/2021:22:00:29 -0500] "GET //2019/wp-includes/wlwmanifest.xml HTTP/1.1" 404 16747 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
13.92.29.114 - - [13/Feb/2021:22:00:29 -0500] "GET //shop/wp-includes/wlwmanifest.xml HTTP/1.1" 404 16747 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
13.92.29.114 - - [13/Feb/2021:22:00:30 -0500] "GET //wp1/wp-includes/wlwmanifest.xml HTTP/1.1" 404 16746 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
13.92.29.114 - - [13/Feb/2021:22:00:30 -0500] "GET //test/wp-includes/wlwmanifest.xml HTTP/1.1" 404 16747 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
13.92.29.114 - - [13/Feb/2021:22:00:30 -0500] "GET //media/wp-includes/wlwmanifest.xml HTTP/1.1" 404 16748 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
13.92.29.114 - - [13/Feb/2021:22:00:31 -0500] "GET //wp2/wp-includes/wlwmanifest.xml HTTP/1.1" 404 16746 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
13.92.29.114 - - [13/Feb/2021:22:00:31 -0500] "GET //site/wp-includes/wlwmanifest.xml HTTP/1.1" 404 16747 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"
13.92.29.114 - - [13/Feb/2021:22:00:31 -0500] "GET //cms/wp-includes/wlwmanifest.xml HTTP/1.1" 404 16746 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/78.0.3904.108 Safari/537.36"

I'm not running a wordpress site so clearly this is a bot up to no good and looking for non-existent paths. What's the proper way to block a bot requesting these kinds of paths?