abuseip.org
- Reason
- suspicious paths across 3 domains
- Hits (last hour)
- 1,552
- Unique targets hit
- 3
- Unique paths probed
- 4,900
- Detection count
- 22
- First seen
- 2026-05-13 14:22:12 UTC
- Last seen
- 2026-05-13 15:17:46 UTC
- Block expires
- 2026-05-14 15:18:14 UTC
Sample paths probed
- /phpldapadmin/
- /save.php
- /scp/login.php
- /analytics/ceip/sdk/..;/..;/..;/analytics/ph/api/dataapp/agent?_c=vSphere.vapi.6_7&_i=9D36C850-1612-4EC4-B8DD-50BA239A25BB
- /wp-content/plugins/siteguard/readme.txt
- /masthead/masthead.axfm
- /settings
- /login.jsp
- /api/jsonrpc
- /api/baskets/ZUps9is
- /
- /js/zimbraMail/share/model/ZmSettings.js
- /api/baskets/EzKRZ9x
- /examples/jsp/security/protected/index.jsp
- /api/v1/chart/data
- /login.php
- /login/
- /dana-na/auth/url_default/welcome.cgi
- /add_reference_to_local_model
- /user_login_submit
Sample User-Agents
- Mozilla/5.0 (watchTowr; Windows NT 10.0; Win64; x64; rv:84.0) Gecko/20100101 Firefox/84.0
What does this mean?
This address sent traffic that the redirs.com edge classified as automated abuse โ typically WordPress/PHP exploit scanning, credential file probing (.env, .git, .aws/), or mass-domain enumeration. The block is automatic and time-limited (24 hours from last detection).
If you believe this is a false positive, contact [email protected] with the IP and the timestamps above.