abuseip.org
- Reason
- suspicious paths across 7 domains
- Hits (last hour)
- 61
- Unique targets hit
- 12
- Unique paths probed
- 169
- Detection count
- 12
- First seen
- 2026-05-05 02:21:28 UTC
- Last seen
- 2026-05-05 02:47:32 UTC
- Block expires
- 2026-05-06 03:38:33 UTC
Sample paths probed
- /wp-content/themes/maintenance.php
- /wp-content/themes/fortified-child/docs/js/omelv/
- /wp-content/themes/crio/woocommerce/notices/
- /wp-content/uploads/wc-logs/system_core.php
- /wp-content/uploads/woocommerce_uploads/system_core.php
- /wp-content/uploads/system_core.php
- /wp-content/themes/blocksy/inc/panel-builder/footer/widget-area-3/
- /wp-content/uploads/st-importer/system_core.php
- /wp-content/themes/proton/content-index.php
- /wp-content/uploads/classwithtostring.php
- /wp-content/uploads/wp-file-manager-pro/
- /wp-includes/class-wp-theme-json-resolver-sql.php
- /wp-content/themes/twentytwentythree/patterns/
- /wp-includes/js/dist/script-modules/block-library/file/
- /wp-content/themes/twentytwentyone/content-index.php
- /wp-content/uploads/wpforms/cache/system_core.php
- /wp-includes/certificates/widgets/
- /wp-content/uploads/db-status.php
- /wp-content/uploads/simply-static/temp-files/system_core.php
- /wp-content/themes/hestia/inc/views/blog/
Sample User-Agents
- Go-http-client/1.1
What does this mean?
This address sent traffic that the redirs.com edge classified as automated abuse โ typically WordPress/PHP exploit scanning, credential file probing (.env, .git, .aws/), or mass-domain enumeration. The block is automatic and time-limited (24 hours from last detection).
If you believe this is a false positive, contact [email protected] with the IP and the timestamps above.