abuseip.org
- Reason
- suspicious paths across 11 domains
- Hits (last hour)
- 66
- Unique targets hit
- 13
- Unique paths probed
- 187
- Detection count
- 7
- First seen
- 2026-05-05 02:17:13 UTC
- Last seen
- 2026-05-05 02:48:20 UTC
- Block expires
- 2026-05-06 03:13:31 UTC
Sample paths probed
- /wp-includes/assets/autoload_classmap.php
- /dx.php
- /wp-content/plugins_new/sitepress-multilingual-cms/classes/plugins/about.php
- /wp-includes/blocks/spacer/
- /wp-content/languages/plugins/test.php
- /wp-content/plugins_new/wordpress-seo/admin/import/plugins/wp-blog-header.php
- /wp-admin/cs.php
- /wp-admin/IXR/met/uploads/
- /wp-admin/plugin-editor-trigger.php
- /wp-includes/blocks/query-pagination-numbers/wp-cron.php
- /wp-content/upgrade-temp-backup/media/files/files/cache/ulnc/wbdo/
- /wp-includes/block-bindings/backup/js/build/kys/admin.php
- /wp-includes/assets/wdf.php
- /wp-includes/ID3/src/v1/dist/build/uols/
- /wp-content/languages/themes/maintenance.php
- /wp-includes/PHPMailer/koiy.php
- /wp-includes/blocks/query/
- /wp-includes/blocks/comment-author-name/editers.php
- /wp-admin/user/css/cache/piwk/admin.php
- /wp-includes/l10n/
Sample User-Agents
- Go-http-client/1.1
What does this mean?
This address sent traffic that the redirs.com edge classified as automated abuse โ typically WordPress/PHP exploit scanning, credential file probing (.env, .git, .aws/), or mass-domain enumeration. The block is automatic and time-limited (24 hours from last detection).
If you believe this is a false positive, contact [email protected] with the IP and the timestamps above.