abuseip.org
- Reason
- suspicious paths across 4 domains
- Hits (last hour)
- 114
- Unique targets hit
- 4
- Unique paths probed
- 190
- Detection count
- 12
- First seen
- 2026-06-18 16:18:35 UTC
- Last seen
- 2026-06-18 17:16:58 UTC
- Block expires
- 2026-06-19 17:19:30 UTC
Sample paths probed
- /.well-knownold/
- /cgi-bin/
- /.well-known/pki-validation/
- /config/
- /core/lib/Drupal/
- /app/
- /core/vendor/
- /.well-known/
- /administrator/modules/
- /administrator/components/
- /wp-includes/
- /ALFA_DATA/alfacgiapi/
- /bootstrap/cache/
- /administrator/templates/
- /database/migrations/
- /components/
- /autoload_classmap/
- /cache/
- /.well-known/pkivalidation/
- /ALFA_DATA/
Sample User-Agents
- Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36
What does this mean?
This address sent traffic that the redirs.com edge classified as automated abuse โ typically WordPress/PHP exploit scanning, credential file probing (.env, .git, .aws/), or mass-domain enumeration. The block is automatic and time-limited (24 hours from last detection).
If you believe this is a false positive, contact [email protected] with the IP and the timestamps above.