wordpress xmlrpc.php 취약점

xmlrpc_php
아래와 같은 공격이 있는 경우 서버 및 사이트 멈춤

root@localhost:/var/log/apache2# cat access.log
62.204.144.62 – – [16/Jul/2014:18:59:45 +0900] “POST /xmlrpc.php HTTP/1.1” 404 530 “-” “Mozilla/4.0 (compatible; Win32; WinHttp.WinHttpRequest.5)”
121.172.98.237 – – [16/Jul/2014:18:59:46 +0900] “POST /xmlrpc.php HTTP/1.1” 404 530 “-” “Mozilla/4.0 (compatible; Win32; WinHttp.WinHttpRequest.5)”
127.0.0.1 – – [16/Jul/2014:18:59:48 +0900] “OPTIONS * HTTP/1.0” 200 126 “-” “Apache/2.2.22 (Ubuntu) (internal dummy connection)”
82.124.241.135 – – [16/Jul/2014:18:59:49 +0900] “POST /xmlrpc.php HTTP/1.1” 404 530 “-” “Mozilla/4.0 (compatible; Win32; WinHttp.WinHttpRequest.5)”
82.131.240.38 – – [16/Jul/2014:18:59:50 +0900] “POST /xmlrpc.php HTTP/1.1” 404 530 “-” “Mozilla/4.0 (compatible; Win32; WinHttp.WinHttpRequest.5)”
121.54.54.57 – – [16/Jul/2014:18:59:51 +0900] “POST /xmlrpc.php HTTP/1.1” 404 530 “-” “Mozilla/4.0 (compatible; Win32; WinHttp.WinHttpRequest.5)”
193.92.117.249 – – [16/Jul/2014:18:59:52 +0900] “POST /xmlrpc.php HTTP/1.1” 404 530 “-” “Mozilla/4.0 (compatible; Win32; WinHttp.WinHttpRequest.5)”
37.190.143.102 – – [16/Jul/2014:18:59:53 +0900] “POST /xmlrpc.php HTTP/1.1” 404 530 “-” “Mozilla/4.0 (compatible; Win32; WinHttp.WinHttpRequest.5)”
91.178.153.6 – – [16/Jul/2014:18:59:54 +0900] “POST /xmlrpc.php HTTP/1.1” 404 530 “-” “Mozilla/4.0 (compatible; Win32; WinHttp.WinHttpRequest.5)”
108.180.111.153 – – [16/Jul/2014:18:59:56 +0900] “POST /xmlrpc.php HTTP/1.1” 404 530 “-” “Mozilla/4.0 (compatible; Win32; WinHttp.WinHttpRequest.5)”
79.113.117.11 – – [16/Jul/2014:18:59:58 +0900] “POST /xmlrpc.php HTTP/1.1” 404 530 “-” “Mozilla/4.0 (compatible; Win32; WinHttp.WinHttpRequest.5)”
116.71.191.154 – – [16/Jul/2014:18:59:59 +0900] “POST /xmlrpc.php HTTP/1.1” 404 530 “-” “Mozilla/4.0 (compatible; Win32; WinHttp.WinHttpRequest.5)”
89.149.24.29 – – [16/Jul/2014:18:59:59 +0900] “POST /xmlrpc.php HTTP/1.1” 404 530 “-” “Mozilla/4.0 (compatible; Win32; WinHttp.WinHttpRequest.5)”
187.9.27.242 – – [16/Jul/2014:19:00:00 +0900] “POST /xmlrpc.php HTTP/1.1” 404 530 “-” “Mozilla/4.0 (compatible; Win32; WinHttp.WinHttpRequest.5)”
178.79.7.147 – – [16/Jul/2014:19:00:01 +0900] “POST /xmlrpc.php HTTP/1.1” 404 530 “-” “Mozilla/4.0 (compatible; Win32; WinHttp.WinHttpRequest.5)”
121.54.58.246 – – [16/Jul/2014:19:00:01 +0900] “POST /xmlrpc.php HTTP/1.1” 404 530 “-” “Mozilla/4.0 (compatible; Win32; WinHttp.WinHttpRequest.5)”

설치된 워드프레스 파일에서
root@localhost:/var/www/hompate# ls

xmlrpc.php <= 이름 변경 으로 막음

# mv xmlrpc.php xmlrpc.bak