abuseip.org
- Reason
- suspicious paths across 12 domains
- Hits (last hour)
- 107
- Unique targets hit
- 12
- Unique paths probed
- 302
- Detection count
- 13
- First seen
- 2026-05-05 02:07:52 UTC
- Last seen
- 2026-05-05 02:47:58 UTC
- Block expires
- 2026-05-06 03:13:31 UTC
Sample paths probed
- /wp-includes/assets/autoload_classmap.php
- /wp-includes/block-supports/wp-sing.php
- /wp-includes/sc_1.php
- /wp-includes/Requests/src/Response/
- /wp-content/plugins_new/sitepress-multilingual-cms/classes/plugins/about.php
- /wp-content/languages/plugins/test.php
- /wp-content/plugins_new/wordpress-seo/admin/import/plugins/wp-blog-header.php
- /wp-includes/l10n/includes/content/v2/uploads/docs/yat/admin.php
- /wp-admin/cs.php
- /wp-content/upgrade-temp-backup/media/files/files/cache/ulnc/wbdo/
- /wp-includes/block-bindings/backup/js/build/kys/admin.php
- /wp-includes/Requests/src/Exception/Transport/
- /wp-includes/ID3/src/v1/dist/build/uols/
- /wp-content/gk.php
- /wp-content/languages/themes/maintenance.php
- /ALFA_DATA/system_core.php
- /about/system_core.php
- /cache/adminkontol.php
- /wp-includes/Text/vx.php
- /wp-admin/user/css/cache/piwk/admin.php
Sample User-Agents
- Go-http-client/1.1
What does this mean?
This address sent traffic that the redirs.com edge classified as automated abuse โ typically WordPress/PHP exploit scanning, credential file probing (.env, .git, .aws/), or mass-domain enumeration. The block is automatic and time-limited (24 hours from last detection).
If you believe this is a false positive, contact [email protected] with the IP and the timestamps above.