Could be helpful and extended in future by experience? Or is there a simple software already around providing all this?
I am thinking of filtering all lines containing "POST to
- create statistics about
- hits per IP
- date-range of hack
- directories accessed
- with possibility to filter IPs, accessed files etc, to limit the results more and more to the hack-relevant entries
Not sure how big performance can become an issue but as soon as POST-entries are filtered, the data to be analyzed is much much smaller.