abuseip.org
- Reason
- suspicious paths across 1 domains
- Hits (last hour)
- 26
- Unique targets hit
- 3
- Unique paths probed
- 483
- Detection count
- 6
- First seen
- 2026-07-21 06:33:23 UTC
- Last seen
- 2026-07-21 06:40:29 UTC
- Block expires
- 2026-07-22 07:34:33 UTC
Sample paths probed
- /account
- /cgi-bin/stats
- /cf_scripts/scripts/ajax/ckeditor/plugins/filemanager/upload.cfm
- /cgi-bin/status
- /cgi-bin/test
- /KaseyaCwWebService/ManagedIT.asmx
- /test.cgi
- /crowd/admin/uploadplugin.action
- /cgi-bin/status/status.cgi
- /cgi-bin/test.cgi
- /
- /cgi/ping.cgi?pinghost=127.0.0.1;echo%203GnmFGssSp4NL9mYLqiswlLeK4v&pingsize=3
- /users/sign_in
- /debug.cgi
- /cgi-bin/test-cgi
- /invoker/JMXInvokerServlet/
- /ui/h5-vsan/rest/proxy/service/com.vmware.vsan.client.services.capability.VsanCapabilityProvider/getClusterCapabilityData
- /soap.cgi?service=whatever-control;curl
- /photo/p/api/album.php
- /sslmgr
Sample User-Agents
- RootEvidence/1.0
What does this mean?
This address sent traffic that the redirs.com edge classified as automated abuse โ typically WordPress/PHP exploit scanning, credential file probing (.env, .git, .aws/), or mass-domain enumeration. The block is automatic and time-limited (24 hours from last detection).
If you believe this is a false positive, contact [email protected] with the IP and the timestamps above.