Web logs 404 analysis - all time
May 15, 2026
Automatically updated daily

Checking for 404 errors in your logs can reveal more than just broken links, it can also expose files and URLs that attackers are actively scanning for. To track this behavior, we set up hundreds of honeypots and analyzed live web traffic data, giving us insight into which files and URLs are being targeted across the internet.


The table bellow list the top URLs being scanned all time and is updated daily. Most of the data contain WordPress specific URLs, certain plugins and config files that attackers can use.


Rank Scanned URL Counter
#1 /wp-login.php614,051
#2 /autodiscover/autodiscover.xml288,532
#3 /xmlrpc.php143,462
#4 /index.php107,438
#5 /.env103,331
#6 /.well-known/traffic-advice100,867
#7 /sitemap.xml85,427
#8 /api/v2/auth71,306
#9 /201257,492
#10 /40447,803
#11 /wp-json/oembed/1.0/embed46,676
#12 /.git/config42,927
#13 /module/ngmercadolivre/notificacao36,550
#14 /info.php35,577
#15 /manager/html32,846
#16 /file.php32,829
#17 /admin.php32,331
#18 /login30,492
#19 /about.php28,191
#20 /chosen.php27,117
#21 /en/AutoDiscover/autodiscover.xml25,966
#22 /wp-cron.php25,571
#23 /wordpress24,043
#24 /backup22,852
#25 /wp-content/plugins/hellopress/wp_filemanager.php22,677
#26 /wp-admin21,793
#27 /wp20,867
#28 /api/catalog_system/pub/products/search19,153
#29 /alfa.php18,721
#30 /classwithtostring.php18,281
#31 /.well-known/passkey-endpoints18,248
#32 /old18,183
#33 /wp-content/plugins/fix/up.php17,737
#34 /ioxi-o.php17,650
#35 /.well-known/nodeinfo17,640
#36 /wp.php17,404
#37 /_profiler/phpinfo17,365
#38 /aa.php17,279
#39 /goods.php17,141
#40 /1.php16,990
#41 /admin16,871
#42 /404testpage4525d2fdc16,810
#43 /wp-includes/wlwmanifest.xml16,760
#44 /autoload_classmap.php16,746
#45 /en/autodiscover/autodiscover.xml16,601
#46 /atomlib.php16,567
#47 /phpinfo16,358
#48 /bk16,276
#49 /new16,223
#50 /api/v2/marketplace/sellers/376/products/status-batch16,186
#51 /api/v2/marketplace/sellers/376/products/stock-batch16,088
#52 /api/v2/marketplace/sellers/376/products/price-batch16,073
#53 /bc16,072
#54 /.well-known/acme-challenge/about.php15,786
#55 /api/.env15,763
#56 /main15,213
#57 /rest/V1/store/storeViews15,033
#58 /flower.php14,860
#59 /edit.php14,805
#60 /simple.php14,756
#61 /test.php14,747
#62 /file2.php14,562
#63 /-/-/-/-/-/-/-/-/-/-14,347
#64 /lock360.php14,311
#65 /web/wp-includes/wlwmanifest.xml14,162
#66 /admin/config.php14,058
#67 /wordpress/wp-includes/wlwmanifest.xml14,025
#68 /api/v2/categories/6513,887
#69 /shop13,883
#70 /wp/wp-includes/wlwmanifest.xml13,798
#71 /backend/.env13,456
#72 /blog/wp-includes/wlwmanifest.xml13,365
#73 /app_dev.php/_profiler/phpinfo13,309
#74 /2019/wp-includes/wlwmanifest.xml13,216
#75 /app13,201
#76 /admin/.env13,179
#77 /cong.php13,143
#78 /shop/wp-includes/wlwmanifest.xml13,126
#79 /[object%20Object]13,063
#80 /cdn-cgi/rum12,934
#81 /debug/default/view12,833
#82 /buy.php12,791
#83 /web_api/auth12,758
#84 /makeasmtp.php12,756
#85 /AutoDiscover/autodiscover.xml12,482
#86 /.env.example12,479
#87 /website/wp-includes/wlwmanifest.xml12,441
#88 /abcd.php12,431
#89 /pagamento/mercadopago/ipn.php12,329
#90 /news/wp-includes/wlwmanifest.xml12,275
#91 /saiga.php12,240
#92 /contrato/wap/crons/enviar-email.php12,192
#93 /v2/_catalog12,190
#94 /feed12,145
#95 /test12,121
#96 /server-status11,996
#97 /style.php11,972
#98 /api11,619
#99 /radio.php11,552
#100 /akcc.php11,487
#101 /inputs.php11,482
#102 /asasx.php11,473
#103 /akc.php11,466
#104 /.well-known/apple-app-site-association11,425
#105 /telescope/requests11,247
#106 /autoload_classmap/function.php11,104
#107 /acessorios-cameras10,809
#108 /dropdown.php10,714
#109 /wp-admin/css10,553
#110 /k.php10,497
#111 /wp-plain.php10,470
#112 /adminfuns.php10,410
#113 /css.php10,274
#114 /api/v2/categories/6410,248
#115 /api/graphql10,132
#116 /as.php10,053
#117 /phpinfo.php10,025
#118 /home9,962
#119 /login.action9,960
#120 /user/login9,744
#121 /about9,731
#122 /w.php9,669
#123 /api/sessions9,604
#124 /bless.php9,522
#125 /ecp/Current/exporttool/microsoft.exchange.ediscovery.exporttool.application9,479
#126 /404.php9,195
#127 /server9,181
#128 /@vite/env9,141
#129 /_all_dbs9,131
#130 /actuator/env9,111
#131 /api/v2/customers/login9,058
#132 /goat.php9,049
#133 /loja/login_layout.php8,897
#134 /HNAP18,777
#135 /cgi-bin/luci/;stok=/locale8,702
#136 /wp-json/sfwd-assignment/18,681
#137 /gecko.php8,658
#138 /files8,624
#139 /wordpress/wp-admin/setup-config.php8,594
#140 /lv.php8,555
#141 /loja/catalogo.php8,457
#142 /bolt.php8,451
#143 /php.php8,447
#144 /upload/banner8,383
#145 /config.php8,303
#146 /administrator8,291
#147 /themes.php8,240
#148 /wp-content/index.php8,170
#149 /manager.php8,168
#150 /wp-admin/classwithtostring.php8,122
#151 /07550e188,071
#152 /wp-sitemap.xml8,064
#153 /.well-known/acme-challenge/cloud.php8,054
#154 /nc4.php8,050
#155 /403.php8,046
#156 /appWP/lab/wp-admin/css/colors/blue/blue.php8,003
#157 /wp-content/plugins/woocommerce/includes/gateways/locks.php7,910
#158 /wp-admin/images/moon.php7,876
#159 /wp-content/wp-conflg.php7,791
#160 /index/function.php7,773
#161 /contato7,733
#162 /wp-admin/setup-config.php7,725
#163 /wsa.php7,710
#164 /wiki7,503
#165 /f35.php7,501
#166 /wp-content/themes/seotheme/db.php7,495
#167 /images/images/cache.php7,490
#168 /g/collect7,453
#169 /gg.php7,436
#170 /gmo.php7,427
#171 /admin/index.php7,425
#172 /mar.php7,372
#173 /pb7,370
#174 /content.php7,363
#175 /doc.php7,356
#176 /tinyfilemanager.php7,323
#177 /new.php7,259
#178 /users.php7,250
#179 /zwso.php7,207
#180 /api/v2/products/stock-batch7,200
#181 /blog7,197
#182 /wp-content/admin.php7,112
#183 /filemanager.php7,111
#184 /mm.php7,106
#185 /api/v3/community7,103
#186 /shell.php7,102
#187 /wp-content/themes/admin.php7,072
#188 /wp-admin/index.php7,071
#189 /s/1313e2236313e20373e2538313/_/;/META-INF/maven/com.atlassian.jira/jira-webapp-dist/pom.properties7,037
#190 /images7,016
#191 /moon.php6,954
#192 /null6,951
#193 /wp-content/autoload_classmap.php6,947
#194 /2018/wp-includes/wlwmanifest.xml6,920
#195 /system_log.php6,877
#196 /class.php6,867
#197 /cms6,826
#198 /wp-admin/css/colors/blue/index.php6,786
#199 /wp-admin/js/index.php6,754
#200 /.env.bak6,735
#201 /wp-content/themes/about.php6,727
#202 /cc.php6,701
#203 /wp-content/video6,672
#204 /boaform/admin/formLogin6,615
#205 /install.php6,614
#206 /feed/mnpodcast6,574
#207 /wp-admin/wp-conflg.php6,557
#208 /.aws/credentials6,498
#209 /mah.php6,486
#210 /wp-api.php6,455
#211 /2020/wp-includes/wlwmanifest.xml6,438
#212 /wp-admin/js/autoload_classmap.php6,428
#213 /api/v2/freights/3166,427
#214 /g.php6,376
#215 /222.php6,373
#216 /wso.php6,352
#217 /wp-setup.php6,289
#218 /wp-includes/fonts/admin.php6,257
#219 /mini.php6,249
#220 /app/.env6,218
#221 /php_info.php6,209
#222 /rest/V1/inventory/source-items6,203
#223 /wp-json/mod/v1/check-site6,198
#224 /api/shared/config/config.env6,163
#225 /laravel/.env6,148
#226 /.well-known/acme-challenge/xmrlpc.php6,099
#227 /loja/busca.php6,073
#228 /file17.php6,072
#229 /xmrlpc.php6,056
#230 /uploads6,049
#231 /ahax.php6,038
#232 /wp-content/about.php6,025
#233 /.env.local5,985
#234 /admin/controller/extension/extension5,979
#235 /file5.php5,973
#236 /sdk5,959
#237 /admin/function.php5,930
#238 /contact5,921
#239 /evox/about5,886
#240 /wp-admin/maint/about.php5,855
#241 /foq.php5,827
#242 /core/.env5,784
#243 /assets/images/accesson.php5,784
#244 /Form5,778
#245 /sitemap_index.xml5,771
#246 /default.php5,765
#247 /wp-good.php5,721
#248 /wp-includes/fonts/index.php5,685
#249 /wp-content/style.php5,646
#250 /wp-content5,633
#251 /wp-editor.php5,611
#252 /wp-includes/IXR/autoload_classmap.php5,585
#253 /13.php5,475
#254 /wp-json/sfwd-lessons/15,437
#255 /undefined5,410
#256 /loja/cartService.php5,395
#257 /item.php5,384
#258 /about/function.php5,373
#259 /a.php5,358
#260 /byp.php5,322
#261 /wp-json/sfwd-topic/15,302
#262 /wp-admin/edit-tags.php5,257
#263 /function/function.php5,244
#264 /files.php5,229
#265 /sk_es/vozik5,216
#266 /wp-content/plugins/WordPressCore/include.php5,210
#267 /wp-content/plugins/wpterm.php5,198
#268 /comment.php5,183
#269 /pinfo.php5,170
#270 /wp-admin/admin-ajax.php5,168
#271 /.git/HEAD5,151
#272 /s.php5,148
#273 /.env.prod5,140
#274 /api/v2/products/16593714625,136
#275 /api/v2/products/16593701435,121
#276 /password.php5,117
#277 /api/v2/products/16593695925,112
#278 /api/v2/products/16593720225,109
#279 /api/v2/products/16593711945,094
#280 /api/v2/products/16593706905,092
#281 /api/v2/products/16593706495,078
#282 /api/v2/products/16593703155,076
#283 /wp-trackback.php5,074
#284 /api/v2/products/16593705405,072
#285 /api/v2/products/16593693185,072
#286 /api/v2/products/16593694855,071
#287 /api/v2/products/16593697655,065
#288 /api/v2/products/16593718845,056
#289 /api/v2/products/16593699415,056
#290 /api/v2/products/16593710295,055
#291 /api/v2/products/16593714895,054
#292 /api/v2/products/16593717305,053
#293 /api/v2/products/16593705395,049
#294 /api/v2/products/16593719505,039
#295 /api/v2/products/16593712175,037
#296 /api/v2/products/16593693665,019
#297 /apps/.env5,018
#298 /.git/index5,000
#299 /api/v2/products/16593690384,996
#300 /m.php4,966
#301 /wp-json/custom/v14,922
#302 /form.html4,913
#303 /wp-content/plugins/admin.php4,907
#304 /api/v2/products/16593689754,901
#305 /pesca/login/index.php4,896
#306 /api/v2/products/3864,889
#307 /ty.php4,851
#308 /tytyd.php4,839
#309 /index.html4,832
#310 /sites/default/files4,813
#311 /api/v2/marketplace/sellers/615/products/queue4,810
#312 /upl.php4,807
#313 /graphql4,793
#314 /wp1/wp-includes/wlwmanifest.xml4,791
#315 /web/.env4,790
#316 /error.php4,784
#317 /.well-known/change-password4,779
#318 /x.php4,777
#319 /systembc/password.php4,774
#320 /t44,767
#321 /geoip4,765
#322 /wp-admin.php4,751
#323 /we.php4,744
#324 /.well-known/web-identity4,721
#325 /gifclass.php4,709
#326 /dev/.env4,705
#327 /ws.php4,702
#328 /elp.php4,694
#329 /wp-admin/js4,689
#330 /.well-known/resource-that-should-not-exist-whose-status-code-should-not-be-2004,680
#331 /.well-known/webauthn4,678
#332 /public/.env4,672
#333 /wp-admin/includes/index.php4,632
#334 /sitemap.php4,628
#335 /SistemaEAD_CPREM/login/index.php4,624
#336 /wp-content/plugins/pwnd/pwnd.php4,592
#337 /cgi-bin4,587
#338 /version4,572
#339 /new/.env4,564
#340 /wp-admin/style.php4,531
#341 /comment-subscriptions4,515
#342 /NewFile.php4,502
#343 /0x.php4,485
#344 /wp-admin/profile.php4,481
#345 /site4,458
#346 /api/v2/brands/47184,454
#347 /ab2g4,450
#348 /api/v2/marketplace/sellers/655/products/queue4,450
#349 /ab2h4,448
#350 /info4,430
#351 /alive.php4,414
#352 /teorema5054,407
#353 /wp-conflg.php4,406
#354 /ar.php4,405
#355 /wordpress/wp-login.php4,391
#356 /wp-admin/js/widgets/cloud.php4,387
#357 /admin/admin.php4,383
#358 /portal/.env4,368
#359 /wp-admin/install.php4,352
#360 /i.php4,348
#361 /fox.php4,339
#362 /.well-known/acme-challenge/mariju.php4,336
#363 /wp-content/themes/style.php4,301
#364 /wp-admin/plugins.php4,297
#365 /wp-admin/edit.php4,286
#366 /wp-admin/file.php4,285
#367 /web4,274
#368 /wp-admin/js/about.php4,273
#369 /10.php4,251
#370 /num.php4,243
#371 /al.php4,242
#372 /wp-admin/includes/colour.php4,186
#373 /wp-admin/css/colors/blue4,166
#374 /2.php4,163
#375 /file15.php4,148
#376 /wp-signin.php4,144
#377 /wp-json/sfwd-courses4,142
#378 /backend4,135
#379 /sts.php4,131
#380 /application/.env4,072
#381 /api/v2/products/16593720424,064
#382 /file9.php4,046
#383 /fr4,029
#384 /wp-blog.php4,020
#385 /wp-content/plugins/pwnd/as.php4,007
#386 /test1.php3,987
#387 /.well-known3,976
#388 /aws.yml3,964
#389 /wp-admin/css/colors/blue/atomlib.php3,954
#390 /dashboard3,944
#391 /infos.php3,943
#392 /ini.php3,939
#393 /wp-admin/wp-admins.php3,921
#394 /gelay.php3,916
#395 /api/v2/products/16593709403,912
#396 /groups%22%223,893
#397 /themes/zMousse/otuz1.php3,876
#398 /api/v2/marketplace/sellers/376/products/queue3,871
#399 /not_found3,867
#400 /php8.php3,862
#401 /pp.php3,835
#402 /simular3,822
#403 /config/aws.yml3,819
#404 /fix.php3,815
#405 /gel4y.php3,806
#406 /api/config.env3,791
#407 /function.php3,782
#408 /wp-admin/css/about.php3,781
#409 /www/.env3,777
#410 /panel3,769
#411 /ee.php3,766
#412 /login.php3,759
#413 /wp-includes/blocks/about.php3,754
#414 /_phpinfo.php3,754
#415 /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php3,753
#416 /docker/.env3,742
#417 /wp-admin/network/network.php3,738
#418 /member-signup3,734
#419 /crm/.env3,729
#420 /ola-mundo3,723
#421 /js/.env3,715
#422 /moddofuns.php3,714
#423 /api/shared/config.env3,714
#424 /images/class-config.php3,712
#425 /xx.php3,710
#426 /wp-admin/wp-login.php3,708
#427 /fm.php3,708
#428 /en/assets/images/logos/HTB.JPG3,703
#429 /wp-l0gin.php3,699
#430 /mah/function.php3,674
#431 /customer/account/create3,670
#432 /env/.env3,669
#433 /app/config/parameters.yml3,652
#434 /contact-us3,648
#435 /wp-admin/post-new.php3,642
#436 /cron/.env3,640
#437 /cursogratuito/ola-mundo3,629
#438 /wp-content/plugins/simple-ajax-chat/includes/sac-check-user.php3,616
#439 /12.php3,612
#440 /CLA.php3,606
#441 /item/Caique-Brudden-Explorer-Fishing-Up-.html3,603
#442 /file3.php3,595
#443 /acessorios-cameras/capa-de-silicone3,590
#444 /wp-includes/wp-class.php3,586
#445 /checkout/cart/add3,570
#446 /wp-content/plugins/about.php3,569
#447 /loja/carrinho.php3,566
#448 /rest/V1/orders3,566
#449 /ss.php3,551
#450 /alfanew.php3,540
#451 /doiconvs.php3,536
#452 /api/v2/batch/11103,536
#453 /epinyins.php3,523
#454 /api/v2/products/55183,517
#455 /dynip/f282640c3,517
#456 /wp-admin/includes3,517
#457 /build.php3,513
#458 /local/.env3,510
#459 /wp-admin/js/wp-conflg.php3,506
#460 /wp-content/uploads3,504
#461 /wp-content/classwithtostring.php3,500
#462 /.well-known/acme-challenge/makeasmtp.php3,500
#463 /file7.php3,499
#464 /y.php3,493
#465 /api/v2/products/16593698633,490
#466 /log.php3,475
#467 /wp-admin/css/colors/ectoplasm/about.php3,474
#468 /a2.php3,473
#469 /v.php3,472
#470 /wp-admin/css/colors/blue/about.php3,470
#471 /.vscode/.env3,451
#472 /awstats/.env3,450
#473 /search3,450
#474 /.aws/config3,432
#475 /wp-json/oembed3,427
#476 /c/linha-glass/robo-aspirador3,421
#477 /wp-json/wp3,420
#478 /test/wp-includes/wlwmanifest.xml3,412
#479 /wp-admin/css/qPyYcxpHKCu.php3,410
#480 /api/v2/products/5313,410
#481 /site/.env3,409
#482 /cabelo/marcas-de-salao/wella-professionals/wella-professionals-invigo-color-brilliance-2-produtos3,408
#483 /mail.php3,404
#484 /.well-known/classwithtostring.php3,398
#485 /wp-json/sfwd-lessons3,394
#486 /inc.php3,393
#487 /api/v2/batch/11113,389
#488 /b.php3,382
#489 /wp-aa.php3,375
#490 /settings.py3,368
#491 /wp-json/sfwd-courses/13,363
#492 /wp-admin/autoload_classmap.php3,358
#493 /.env.old3,353
#494 /wp-admin/mah.php3,348
#495 /api/config/config.yml3,346
#496 /mini3,333
#497 /lowpr.php3,330
#498 /bak.php3,320
#499 /jp.php3,317
#500 /submissions3,317


Data was last updated on: May 15, 2026



Logging Research

We love logs. In this section we will share some of the data we are parsing from our logs and honeypots we have live.

Trunc Logging

Logging for fun and a good night of sleep.

  • Real time search
  • Google simple
  • Cheap
  • Just works
  • PCI compliance
Trunc Research

Latest log-based threat analysis added.

Contact us!

Do you have an idea for a research that is not here? See something wrong? Contact us at support@noc.org

Tired of price gouging
  • Clear pricing
  • No need to guess
  • Real people
  • Real logging

Simple, Affordable, Log Management and Analysis.

14 days free trial. No credit card required.