Periodic downloads of particular file by unknown, unique & foreign IPs

Viewing 4 posts - 1 through 4 (of 4 total)
#177577

I’ve recently started managing a Spanish association’s website based on WordPress that uses the free version of the Download Manager plugin.

When checking the downloads log, I’ve come to discover multiple unique and unknown IP addresses located outside the country (which doesn’t make sense) have downloaded the same PDF file over and over again in the span of several years.

Is this some kind of periodic checkup on the plugin? Or is it, in the other hand, some type of attack or vulnerability an outside agent is exploiting?
Since all IP addresses are different from each other, I can’t resort to blocking them to solve the issue in any case.

#177591

Nayeem Riddhi
Moderator

Hello Eugenio Pablo Murillo Solanas,

Hope you are well. And sorry for the inconvenience. For such circumstances, you may assign a lock option for certain packages from `package settings > lock options, thus such downloads may not occur again, I hope. please check and let me know

Thank you and regards

#177611

We can’t afford reCaptcha nor set a password because the files are supposed to be of public access, but I’ll give the privacy policy acceptance a try.

Thanks for the help.

#178886

Yusuf Odukoya
Participant

They are bot downloads, or downloads from an external websites that are hotlinking to your files.
Solution:
You can use a cloudflare security WAF rule to block URI requests that contain the word “wpdmdl” and does not have a cookie that contain the word “wp”.

Viewing 4 posts - 1 through 4 (of 4 total)

The topic ‘Periodic downloads of particular file by unknown, unique & foreign IPs’ is closed to new replies.