abuseip.org
- Reason
- scanning 11 domains
- Hits (last hour)
- 34
- Unique targets hit
- 11
- Unique paths probed
- 25
- Detection count
- 5
- First seen
- 2026-09-05 11:48:20 UTC
- Last seen
- 2026-09-05 12:32:14 UTC
- Block expires
- 2026-09-06 12:42:51 UTC
Sample paths probed
- //wp-content/plugins/fix/wp.php
- /wp-content/plugins/fix/000.php
- /wp-content/index.php
- /chosen.php
- /000.php
- /file.php
- /gifclass.php
- /lufix.php
- /wp-includes/hp2.php
- /wp-admin/index.php
- /wp-admin/admin-ajax.php
- //wp-content/plugins/fix/up.php
- /wp-admin/css/index.php
- /wp-content/plugins/index.php
- /cord.php
- /bless.php
- /txets.php
- /ioxi-o.php
- /bolt.php
- /dex.php
Sample User-Agents
- Go-http-client/1.1
What does this mean?
This address sent traffic that the redirs.com edge classified as automated abuse โ typically WordPress/PHP exploit scanning, credential file probing (.env, .git, .aws/), or mass-domain enumeration. The block is automatic and time-limited (24 hours from last detection).
If you believe this is a false positive, contact [email protected] with the IP and the timestamps above.