Few days ago, I installed GoAcccess which is an (open source real-time web log analyzer and interactive viewer that runs in a terminal in *nix systems or through your browser.), to analyze my NGINX access logs.
Main reason for that was to identify which files drain the traffic by asking me, do I need to move the libs to CDN to improve the performance.
But I was surprised by something else: Bots/Crawlers.
I mean all of us know, that the internet will be constantly scanned by crawlers like Google or Bing, and by malicious bots.
But I didn’t expect, that my blog was scanned around 300 times a day by malicious bots.
Here are just few examples from my access logs:
- /install/lib/ajaxHandlers/ajaxServerSettingsChk.php?rootUname=;echo -n HellorConfig|md5sum #