abuseip.org
- Reason
- scanning 36 domains
- Hits (last hour)
- 4,029
- Unique targets hit
- 54
- Unique paths probed
- 100
- Detection count
- 33
- First seen
- 2026-06-29 13:22:19 UTC
- Last seen
- 2026-06-29 15:20:26 UTC
- Block expires
- 2026-06-30 15:21:23 UTC
Sample paths probed
- /index/lock.php
- /wp-admin/media.php
- /file.php
- /class-t.api.php
- /wp-mail.php/wp-includes/ID3/rk2.php
- /wp-includes/SimplePie/about.php
- /abcd.php
- /wp-admin/images/index.php
- /admin/ty.php
- /wp-content/plugins/index.php
- /wp-admin/images/users.php
- /wp-admin/js/about.php
- /about.php
- /wp-content/upgrade-temp-backup/wp-login.php
- /shell.php
- /wp-admin/css/colors/index.php
- /file59.php
- /wp9.php
- /assets/edit.php
- /wp-admin/upgrade.php
Sample User-Agents
No User-Agent recorded (likely scripted, no UA header).
What does this mean?
This address sent traffic that the redirs.com edge classified as automated abuse โ typically WordPress/PHP exploit scanning, credential file probing (.env, .git, .aws/), or mass-domain enumeration. The block is automatic and time-limited (24 hours from last detection).
If you believe this is a false positive, contact [email protected] with the IP and the timestamps above.