Checking for 404 errors in your logs can reveal more than just broken links, it can also expose files and URLs that attackers are actively scanning for. To track this behavior, we set up hundreds of honeypots and analyzed live web traffic data, giving us insight into which files and URLs are being targeted across the internet.
The table bellow list the top URLs being scanned on WordPress sites in the past 72 hours. This list of updated daily and shows the top plugins, backdoors and files that attacker are lookin for specifically to WordPress.
Rank | Scanned URL | Counter |
---|---|---|
#1 | /wp-login.php | 30,016 |
#2 | /wp-json/oembed/1.0/embed | 7,504 |
#3 | /wp-cron.php | 3,064 |
#4 | /wordpress | 1,755 |
#5 | /wp | 1,591 |
#6 | /wp-admin | 1,402 |
#7 | /wp-content/plugins/fix/up.php | 1,400 |
#8 | /wp-includes/wlwmanifest.xml | 1,239 |
#9 | /wp-content/plugins/hellopress/wp_filemanager.php | 1,105 |
#10 | /wp.php | 1,090 |
#11 | /web/wp-includes/wlwmanifest.xml | 1,041 |
#12 | /wordpress/wp-includes/wlwmanifest.xml | 1,032 |
#13 | /wp-admin/images/moon.php | 1,030 |
#14 | /wp/wp-includes/wlwmanifest.xml | 1,023 |
#15 | /wp-content/plugins/wpterm.php | 990 |
#16 | /2019/wp-includes/wlwmanifest.xml | 984 |
#17 | /wp-content/style.php | 981 |
#18 | /blog/wp-includes/wlwmanifest.xml | 977 |
#19 | /shop/wp-includes/wlwmanifest.xml | 974 |
#20 | /website/wp-includes/wlwmanifest.xml | 974 |
#21 | /news/wp-includes/wlwmanifest.xml | 961 |
#22 | /wp-admin/setup-config.php | 881 |
#23 | /wp-admin/css | 815 |
#24 | /wp-setup.php | 780 |
#25 | /wp-content/wp-conflg.php | 769 |
#26 | /wp-api.php | 769 |
#27 | /wp-sitemap.xml | 756 |
#28 | /wp-admin/style.php | 755 |
#29 | /wp-includes/fonts/admin.php | 718 |
#30 | /wp-includes/IXR/autoload_classmap.php | 711 |
#31 | /wp-plain.php | 701 |
#32 | /wp-content/index.php | 666 |
#33 | /wp-admin/js/index.php | 626 |
#34 | /wp-admin/css/colors/blue/index.php | 581 |
#35 | /2018/wp-includes/wlwmanifest.xml | 577 |
#36 | /wp-content/themes/style.php | 563 |
#37 | /wp-includes/fonts/index.php | 532 |
#38 | /wp-editor.php | 457 |
#39 | /2020/wp-includes/wlwmanifest.xml | 433 |
#40 | /wp-content/themes/seotheme/db.php | 392 |
#41 | /wordpress/wp-admin/setup-config.php | 362 |
#42 | /wp-admin/js | 350 |
#43 | /wp1/wp-includes/wlwmanifest.xml | 340 |
#44 | /wp-update.php | 317 |
#45 | /wp-content/plugins/woocommerce/assets/fonts/WooCommerce.eot | 294 |
#46 | /wp-control.php | 273 |
#47 | /wp-content | 262 |
#48 | /wp-admin/autoload_classmap.php | 261 |
#49 | /wp-json/wp | 261 |
#50 | /wp-json/oembed | 258 |
#51 | /wp-content/themes/about.php | 257 |
#52 | /wp-config | 251 |
#53 | /wp-config.php.bak | 246 |
#54 | /wp-admin/edit-tags.php | 239 |
#55 | /test/wp-includes/wlwmanifest.xml | 232 |
#56 | /wp-admin/css/colors/blue/atomlib.php | 229 |
#57 | /wp-freya.php | 226 |
#58 | /wp-admin/maint | 223 |
#59 | /wp-admin/function.php | 223 |
#60 | /wp-admin/css/colors/blue | 222 |
#61 | /site/wp-includes/wlwmanifest.xml | 214 |
#62 | /cms/wp-includes/wlwmanifest.xml | 212 |
#63 | /wp-trackback.php | 205 |
#64 | /wp-admin/admin-ajax.php | 204 |
#65 | /wp-admin/includes/about.php | 198 |
#66 | /wp-admin/css/colors/ectoplasm | 189 |
#67 | /appWP/lab/wp-admin/css/colors/blue/blue.php | 189 |
#68 | /wp-content/autoload_classmap.php | 187 |
#69 | /wp-json/litespeed/v1/cdn_status | 186 |
#70 | /wp-admin/maint/akcc.php | 185 |
#71 | /wp-admin/install.php | 185 |
#72 | /wp2/wp-includes/wlwmanifest.xml | 180 |
#73 | /wp-json/wp-block-editor | 175 |
#74 | /wp-json/elementor-pro | 175 |
#75 | /wp-json/elementor-ai | 174 |
#76 | /wp-json/wp/v2/users | 173 |
#77 | /wp-json/elementor | 173 |
#78 | /wp-json/hub-connector | 172 |
#79 | /wp-json/forminator | 171 |
#80 | /wp-json/wpmudev_pcs | 170 |
#81 | /wp-json/wp-site-health | 170 |
#82 | /wp-json/rankmath | 169 |
#83 | /wp-json/beautiful-and-responsive-cookie-consent | 168 |
#84 | /wp-json/wpraddons | 168 |
#85 | /wp-json/wordfence | 168 |
#86 | /wp-json/litespeed | 168 |
#87 | /wp-admin/js/autoload_classmap.php | 167 |
#88 | /sito/wp-includes/wlwmanifest.xml | 165 |
#89 | /wp-admin/js/wp-login.php | 159 |
#90 | /wp-content/plugins/wp-conflg.php | 159 |
#91 | /wp-content/plugins/apikey/apikey.php | 158 |
#92 | /wp-includes/style-engine/about.php | 154 |
#93 | /wp-aa.php | 151 |
#94 | /wp-json/sure-triggers/v1/automation/action | 150 |
#95 | /wp-content/mu-plugins-old | 148 |
#96 | /wp-signup.php | 146 |
#97 | /wp- | 143 |
#98 | /wp-includes/style.php | 141 |
#99 | /wp-content/plugins/apikey/apikey.php.suspected | 140 |
#100 | /wp-gr.php | 137 |
#101 | /wp-includes/Requests/Response | 135 |
#102 | /wp-includes/Requests/Cookie | 128 |
#103 | /wp-includes/css | 126 |
#104 | /wp-content/themes/admin.php | 125 |
#105 | /wp-admin/meta | 122 |
#106 | /wp-file.php | 121 |
#107 | /wp-content/admin.php | 121 |
#108 | /wp-includes/js/jcrop/Jcrop.php | 121 |
#109 | /wp-content/uploads | 119 |
#110 | /wp-config.php.un~ | 118 |
#111 | /wp-content/plugins/index.php | 118 |
#112 | /wp-admin.php | 118 |
#113 | /wp-includes | 117 |
#114 | /wp-sitemap-users-1.xml | 117 |
#115 | /wp-config.php.c | 116 |
#116 | /wp-content/uploads/de_fb_uploads/b.php | 116 |
#117 | /wp-includes/assets | 113 |
#118 | /wp-includes/fonts/about.php | 113 |
#119 | /wp-admin/images | 113 |
#120 | /wp-config.php_old2011 | 112 |
#121 | /wp-includes/assets/autoload_classmap.php | 112 |
#122 | /wp-includes/sitemaps/autoload_classmap.php | 111 |
#123 | /wp-admin/js/widgets | 111 |
#124 | /wp-content/plugins/ninja-forms | 111 |
#125 | /wp-content/plugins/newsletters-lite/newsletters-lite-ajax.php | 111 |
#126 | /wp-admin/includes | 111 |
#127 | /wp-content/themes/themes.php | 110 |
#128 | /wp-includes/ID3 | 110 |
#129 | /wp-includes/IXR/admin.php | 110 |
#130 | /wp-includes/pomo/wp-conflg.php | 109 |
#131 | /wp-includes/PHPMailer | 108 |
#132 | /wp-content/themes | 108 |
#133 | /wp-content/plugins/WordPressCore/cong.php | 108 |
#134 | /wp-includes/sitemaps | 107 |
#135 | /wp-includes/SimplePie/autoload_classmap.php | 107 |
#136 | /wp-includes/html-api | 106 |
#137 | /wp-includes/Text/autoload_classmap.php | 106 |
#138 | /wp-includes/css/dist/widgets/about.php | 106 |
#139 | /wp-includes/404.php | 105 |
#140 | /wp-admin/css/colors/midnight | 105 |
#141 | /wp-includes/sitemaps/providers | 103 |
#142 | /wp-includes/Text/Diff | 103 |
#143 | /wp-admin/css/colors | 103 |
#144 | /wp-content/plugins/simple/simple.php | 103 |
#145 | /wp-includes/IXR | 102 |
#146 | /wp-includes/images | 101 |
#147 | /wp-includes/rest-api | 100 |
#148 | /wp-includes/certificates | 100 |
#149 | /wp-includes/SimplePie | 99 |
#150 | /wp-admin/maint/index.php | 98 |
#151 | /wp-includes/customize | 98 |
#152 | /wp-includes/Text/Diff/Renderer | 98 |
#153 | /wp-includes/images/smilies | 97 |
#154 | /wp-old | 96 |
#155 | /wp-content/plugins/suffer/sec_upload.php | 94 |
#156 | /wp-includes/sodium_compat | 94 |
#157 | /wp-includes/rest-api/search | 94 |
#158 | /wp-includes/block-bindings | 94 |
#159 | /wp-includes/sodium_compat/src | 93 |
#160 | /wp-conflg.php | 93 |
#161 | /wp-activate.php | 93 |
#162 | /wp-content/.env | 92 |
#163 | /wp-includes/style-engine | 92 |
#164 | /wp-content/upgrade/index.php | 92 |
#165 | /wp-content/plugins/pwnd/pwnd.php | 92 |
#166 | /wp-includes/rest-api/fields | 90 |
#167 | /wp-includes/rest-api/endpoints | 90 |
#168 | /wp-admin/.env | 89 |
#169 | /wp-content/themes/index.php | 88 |
#170 | /wp-content/uploads/index.php | 87 |
#171 | /wp-content/plugins/about.php | 87 |
#172 | /wp-includes/bk/index.php | 85 |
#173 | /wp-22.php | 85 |
#174 | /features/wordpress-management-tools | 84 |
#175 | /wp-content/themes/twentytwentytwo/index.php | 83 |
#176 | /wp-includes/ID3/index.php | 83 |
#177 | /wp-json/wp/v2/pages/-999 | 82 |
#178 | /wp-includes/assets/index.php | 81 |
#179 | /wp-admin/js/about.php | 80 |
#180 | /wp-admin/css/colors/ectoplasm/about.php | 80 |
#181 | /wp-admin/classwithtostring.php | 80 |
#182 | /media/wp-includes/wlwmanifest.xml | 79 |
#183 | /wp-2019.php | 79 |
#184 | /wp-includes/images/about.php | 79 |
#185 | /wp-content/plugins/wp-automatic/inc/csv.php | 78 |
#186 | /wp-includes/blocks/shortcode/index.php | 78 |
#187 | /wp-content/plugins/pwnd-1/pwnd.php | 77 |
#188 | /wp-content/themes/twentytwentytwo | 76 |
#189 | /wp-admin/dropdown.php | 76 |
#190 | /wp-content/themes/kadence | 75 |
#191 | /wp-content/themes/divi | 75 |
#192 | /wp-admin/css/colors/blue/about.php | 75 |
#193 | /wp-content/plugins/better-wp-security | 74 |
#194 | /wp-content/plugins/w3-total-cache | 74 |
#195 | /wp-content/plugins/wp-super-cache | 74 |
#196 | /wp-content/plugins/yoast | 74 |
#197 | /wp-content/themes/ultra | 74 |
#198 | /wp-content/themes/sydney | 74 |
#199 | /wp-content/themes/blocksy | 74 |
#200 | /wp-content/themes/newspaper | 74 |
#201 | /wp-content/themes/jupiter | 74 |
#202 | /wp-content/themes/salient | 74 |
#203 | /wp-content/themes/hestia | 74 |
#204 | /wp-content/themes/bridge | 74 |
#205 | /wp-content/themes/the7 | 74 |
#206 | /wp-content/themes/avada | 74 |
#207 | /wp-content/themes/astra | 74 |
#208 | /wp-admin/css/colors/light/wp-login.php | 74 |
#209 | /wp-content/plugins/wp-optimize | 73 |
#210 | /wp-content/themes/porto | 73 |
#211 | /wp-content/themes/x | 73 |
#212 | /wp-content/themes/enfold | 73 |
#213 | /wp-content/themes/generatepress | 73 |
#214 | /wp-content/themes/neve | 73 |
#215 | /wp-content/themes/storefront | 73 |
#216 | /wp-content/themes/betheme | 72 |
#217 | /wp-content/themes/oceanwp | 72 |
#218 | /wp-content/themes/flatsome | 72 |
#219 | /not_found/wp-login.php | 72 |
#220 | /wp-content/plugins/wp-smushit | 71 |
#221 | /wp-content/plugins/woocommerce | 71 |
#222 | /wp-content/plugins/duplicator | 70 |
#223 | /wp-content/plugins/gravityforms | 70 |
#224 | /wp-content/themes/pridmag/db.php | 70 |
#225 | /wp-content/about.php | 70 |
#226 | /wp-admin/admin.php | 70 |
#227 | /en/wp-json/oembed/1.0/embed | 70 |
#228 | /wp-content/plugins/sucuri-scanner | 69 |
#229 | /wp-content/plugins/seo-by-rank-math | 68 |
#230 | /wp-content/plugins/wp-file-manager | 67 |
#231 | /wp-comments-post.php | 66 |
#232 | /wpls.php | 66 |
#233 | /wp-content/plugins/wordfence | 65 |
#234 | /wp-content/plugins/jetpack | 65 |
#235 | /wp-content/plugins/wpforms-lite | 65 |
#236 | /wp-content/uploads/2025/02/WFHResearch_updates_%20February2025.pdf | 65 |
#237 | /wp-cliner.php | 65 |
#238 | /wp-xm.php | 65 |
#239 | /wp-xx.php | 65 |
#240 | /wp-content/plugins/wp-rocket | 64 |
#241 | /wp-content/plugins/all-in-one-seo-pack | 63 |
#242 | /wp-admin/images/about.php | 63 |
#243 | /wp-content/plugins/contact-form-7 | 63 |
#244 | /wp-content/plugins/advanced-custom-fields | 62 |
#245 | /wp-admin/maint/fie.php | 59 |
#246 | /wp-content/uploads/2020/06/Mercado-de- | 59 |
#247 | /wp-admin/images/xmrlpc.php | 58 |
#248 | /wp-admin/network/xmrlpc.php | 58 |
#249 | /es/wp-json/oembed/1.0/embed | 58 |
#250 | /wp-content/worksec.php | 57 |
#251 | /wp-content/themes/seotheme/mar.php | 57 |
#252 | /wp-admin/user/xmrlpc.php | 57 |
#253 | /wp-content/plugins/js_composer | 56 |
#254 | /wp-admin/css/about.php | 56 |
#255 | /old-wp-config.php | 55 |
#256 | /wp-content/plugins/updraftplus | 55 |
#257 | /wp-content/plugins/revslider | 55 |
#258 | /wp-content/plugins/redirection | 55 |
#259 | /wp-content/plugins/classic-editor | 55 |
#260 | /wp-content/plugins/akismet | 54 |
#261 | /wp-content/plugins/linkpreview/db.php | 54 |
#262 | /wp-admin/network/cloud.php | 54 |
#263 | /wp-json/wp/v2/posts | 53 |
#264 | /wp-sigunq.php | 53 |
#265 | /wp-content/plugins/admin.php | 53 |
#266 | /wp-content/plugins | 52 |
#267 | /wp-content/plugins/seoplugins/db.php | 52 |
#268 | /wp-content/themes/hello-elementor | 51 |
#269 | /wp-content/plugins/all-in-one-wp-migration | 51 |
#270 | /wp-includes/rest-api/about.php | 51 |
#271 | /wp-includes/Requests/about.php | 51 |
#272 | /wp-load.php | 51 |
#273 | /wp-includes/SimplePie/about.php | 50 |
#274 | /wp-json | 49 |
#275 | /blog/wp-login.php | 49 |
#276 | /wp-admin/css/index.php | 49 |
#277 | /wp-includes/ID3/about.php | 49 |
#278 | /wp-content/plugins/seoplugins/mar.php | 49 |
#279 | /wp-includes/Text/about.php | 49 |
#280 | /2021/wp-includes/wlwmanifest.xml | 48 |
#281 | /wp-content/plugins/really-simple-ssl | 48 |
#282 | /wp-includes/fonts | 48 |
#283 | /wp-includes/pomo/about.php | 48 |
#284 | /wp-admin/images/index.php | 48 |
#285 | /wp-includes/about.php | 48 |
#286 | /wp-content/themes/aahana/json.php | 48 |
#287 | /wp-content/themes/twentytwentythree | 47 |
#288 | /wp-json/buddyboss-app/v1/signup/form | 47 |
#289 | /wp-content/themes/kadence/functions.php | 47 |
#290 | /wp-includes/Requests/Text/admin.php | 46 |
#291 | /wp-content/plugins/Cache/Cache.php | 46 |
#292 | /wp-includes/block-patterns/about.php | 46 |
#293 | /wp-includes/widgets/about.php | 46 |
#294 | /wp-login | 46 |
#295 | /wp-content/upgrade-temp-backup/about.php | 46 |
#296 | /wp-admin/js/widgets/cloud.php | 46 |
#297 | /wp-content/languages/about.php | 46 |
#298 | /wp-content/plugins/wp-theme-editor/include.php | 46 |
#299 | /wp-includes/images/wlw | 45 |
#300 | /wp-content/themes/twentytwentyfour | 45 |
#301 | /wp-admin/admin-post.php | 45 |
#302 | /wp-content/gallery/about.php | 45 |
#303 | /wp-includes/IXR/about.php | 45 |
#304 | /wp-content/themes/oceanwp/functions.php | 45 |
#305 | /wp-xrm.php | 44 |
#306 | /wp/pomo/pomo.php | 44 |
#307 | /wp-content/content.php | 44 |
#308 | /wp-admin/maint/maint/ajax-actions.php | 44 |
#309 | /wp-admin/ajax-actions.php | 44 |
#310 | /wp-content/themes/twentythirteen/functions.php | 44 |
#311 | /wp-content/plugins/elementor | 43 |
#312 | /wp-content/db-cache.php | 43 |
#313 | /wp-content/themes/twentyeleven/functions.php | 43 |
#314 | /wp-includes/blocks/about.php | 43 |
#315 | /wp-includes/Text/Diff/Renderer/about.php | 42 |
#316 | /wp-content/plugins/awesome-coming-soon/come.php | 42 |
#317 | /wp-content/plugins/not/includes/about.php | 42 |
#318 | /wp-index.php | 41 |
#319 | /wp-content/themes/twentytwenty/functions.php | 41 |
#320 | /wp-admin/css/colors/xmrlpc.php | 40 |
#321 | /wp-admin/js/widgets/about.php7 | 40 |
#322 | /wp-content/uploads/wp-conflg.php | 39 |
#323 | /wp-includes/Text/Diff/alfa-rex.php | 39 |
#324 | /wp-includes/css/wp-conflg.php | 39 |
#325 | /wp-includes/pomo/pomo.php | 39 |
#326 | /wp-admin/css/colors/blue/1.php | 39 |
#327 | /wp-blog-header.php | 39 |
#328 | /wp-admin/css/colors/coffee/cloud.php | 39 |
#329 | /wp-admin/class-db.php | 38 |
#330 | /wp-admin/xmrlpc.php | 38 |
#331 | /wp-admin/css/colors/blue/xmrlpc.php | 38 |
#332 | /wp-admin/js/widgets/xmrlpc.php | 38 |
#333 | /wp-admin/css/colors/coffee/xmrlpc.php | 38 |
#334 | /wp-admin/repeater.php | 38 |
#335 | /wp-admin/cloud.php | 38 |
#336 | /wp-admin/css/colors/blue/cloud.php | 38 |
#337 | /wp-admin/css/colors/cloud.php | 38 |
#338 | /wp-admin/images/cloud.php | 38 |
#339 | /wp-admin/user/cloud.php | 38 |
#340 | /wp-content/themes/classic/inc | 37 |
#341 | /wp-content/upgrade | 37 |
#342 | /wp-includes/Text/Diff/Engine/about.php | 37 |
#343 | /wp-admin/css/colors/light | 36 |
#344 | /wp-content/plugins/litespeed-cache | 36 |
#345 | /wp-content/plugins/google-seo-rank/module.php | 36 |
#346 | /wp-content/plugins/seoo/wsoyanz1.php | 36 |
#347 | /wp-contentt.php | 36 |
#348 | /wp-content/blogs.dir/about.php | 36 |
#349 | /wordpress/wp-config.php.7 | 35 |
#350 | /wp-content/mu-plugins | 35 |
#351 | /wp-includes/ID3/file.php | 35 |
#352 | /wp-admin/includes/xmrlpc.php | 35 |
#353 | /wp-consar.php | 35 |
#354 | /wp-content/plugins/seoo/wsoyanz.php | 35 |
#355 | /wp-content/repeater.php | 35 |
#356 | /wp-p.php7 | 35 |
#357 | /wp-admin/includes/cloud.php | 35 |
#358 | /wp-content/updates.php | 35 |
#359 | /wp-content/updraft/about.php | 35 |
#360 | /wp-includes.bak/html-api/about.php | 35 |
#361 | /wp-includes/customize/about.php | 35 |
#362 | /shop/wp-login.php | 34 |
#363 | /wp-confiq.php | 34 |
#364 | /wp-admin/includes/class_api.php | 34 |
#365 | /wp-configs.php | 34 |
#366 | /wp-content/uploads/BbUMY/flower.php | 34 |
#367 | /wp-includes/repeater.php | 34 |
#368 | /wp-includes/random_compat | 32 |
#369 | /wp-includes/bk | 31 |
#370 | /wp-l0gin.php | 31 |
#371 | /wp-includes/theme-compat | 29 |
#372 | /wp-mail.php | 29 |
#373 | /wp-content/plugins/include.php | 29 |
#374 | /wordpress.zip | 29 |
#375 | /wp/wp-login.php | 28 |
#376 | /wp-config.php.backup | 28 |
#377 | /wp-includes/css/index.php | 28 |
#378 | /wp-admin/css/colors/index.php | 28 |
#379 | /wp-includes/certificates/plugins.php | 28 |
#380 | /wp-content/themes/travel/issue.php | 27 |
#381 | /wp-json/wc/store/v2/products | 27 |
#382 | /wp-config.php | 27 |
#383 | /loja/wp-login.php | 27 |
#384 | /blog/wordpress/website-is-down-not-working-not-loading-fixes | 27 |
#385 | /revendedor/wp-login.php | 27 |
#386 | /wp-content/themes/twentytwentyone/functions-info.php | 27 |
#387 | /wp-includes/Text/Diff/Engine/index.php | 27 |
#388 | /wp-content/uploads/2022 | 26 |
#389 | /wp-content/plugins/WordPressCore/include.php | 26 |
#390 | /wp/index.php | 26 |
#391 | /job/wp-login.php | 25 |
#392 | /wp-content/uploads/2021 | 25 |
#393 | /old/wp-admin/setup-config.php | 25 |
#394 | /new/wp-admin/setup-config.php | 25 |
#395 | /wp/wp-admin/setup-config.php | 25 |
#396 | /wp-su.php | 25 |
#397 | /wp-includes/buy.php | 25 |
#398 | /modules/mod_simplefileuploadv1.3/elements/wpxadmin.php | 25 |
#399 | /wp-admin/post-new.php | 24 |
#400 | /wp-includes/images/crystal | 24 |
#401 | /wp-json/wc/store/v3/products | 24 |
#402 | /wp-admin/maint/about.php7 | 24 |
#403 | /wp-includes/blocks | 23 |
#404 | /wp-includes/Requests/Auth | 23 |
#405 | /wp-includes/Requests/Utility | 23 |
#406 | /wp-includes/Requests/Transport | 23 |
#407 | /wp-includes/Requests/Proxy | 23 |
#408 | /wp-includes/SimplePie/Content/Type | 23 |
#409 | /wp-includes/SimplePie/Cache | 23 |
#410 | /wp-admin/network | 23 |
#411 | /wp-admin/memberfuns.php | 23 |
#412 | /wp-admin/userfuns.php | 23 |
#413 | /wp-json/reallysimplessl/v1/two_fa/skip_onboarding | 23 |
#414 | /wp-includes/Text/Diff/Engine/Engine | 22 |
#415 | /wp-includes/block-supports | 22 |
#416 | /wp-includes/widgets | 22 |
#417 | /wp-admin/user | 22 |
#418 | /wp-includes/Requests/Exception | 22 |
#419 | /wp-includes/Requests/Exception/HTTP | 22 |
#420 | /wp-content/themes/modular/lib/scripts/timthumb/thumb.php | 22 |
#421 | /wp-tiroto.php | 22 |
#422 | /wp-content/plugins/build | 21 |
#423 | /wp-includes/block-patterns | 21 |
#424 | /wp-includes/Text | 21 |
#425 | /wp-includes/Requests | 21 |
#426 | /wp-includes/pomo | 21 |
#427 | /wp-includes/js | 21 |
#428 | /wp-admin/undefinedjetpack/v4/site/benefits | 21 |
#429 | /wp-content/themes/twentyfive/include.php | 21 |
#430 | /wp-includes/images/crystal/index.php | 21 |
#431 | /wp-includes/php-compat | 20 |
#432 | /wp-includes/images/media | 20 |
#433 | /wp-includes/js/codemirror | 20 |
#434 | /job/analista-de-atendimento-ao-cliente/wp-login.php | 20 |
#435 | /wp-admin/undefinedjetpack/v4/connection/data | 20 |
#436 | /wp-20240527.zip | 20 |
#437 | /wp-includes/SimplePie/Content | 19 |
#438 | /wp-content/themes/travelscape/json.php | 19 |
#439 | /wp-content/wso.php | 19 |
#440 | /wp-content/uploads/2023 | 19 |
#441 | /wordpress-20240527.zip | 19 |
#442 | /wordpress-full.zip | 19 |
#443 | /wp-scripts.php | 19 |
#444 | /wp-admin/index.php | 18 |
#445 | /wp-mn.php | 18 |
#446 | /wp-admin/network/network/cache.php | 18 |
#447 | /staging/wp-admin/setup-config.php | 18 |
#448 | /backup/wp-admin/setup-config.php | 18 |
#449 | /wp-content/plugins/* | 18 |
#450 | /wp-content/plugins/easy-table-of-contents/vendor/icomoon/fonts | 18 |
#451 | /wp-content/litespeed/css/%23a | 18 |
#452 | /wp-content/themes/bones/library/font | 18 |
#453 | /wp-files.zip | 18 |
#454 | /wordpress-files.zip | 18 |
#455 | /wp-admin/profile.php | 17 |
#456 | /wp-links.php | 17 |
#457 | /wp-content/languages | 17 |
#458 | /wp-content/plugins/init-help/init.php | 17 |
#459 | /wp-content/plugins/jetpack/modules/carousel/images | 17 |
#460 | /wp.zip | 17 |
#461 | /wp-config.zip | 17 |
#462 | /wp-backup.zip | 17 |
#463 | /wp-includes/js/crop | 16 |
#464 | /wp-includes/Text/Diff/Engine | 16 |
#465 | /wp-content/uploads/2024 | 16 |
#466 | /wp-content/plugins/ioxi/ioxi/dropdown.php | 16 |
#467 | /wp-includes/images/include.php | 16 |
#468 | /wordpress-2024.zip | 16 |
#469 | /wordpress-complete.zip | 16 |
#470 | /wp-full.zip | 16 |
#471 | /loja/wp-admin/plugins.php | 15 |
#472 | /wp-content/plugins/lwbdene/index.php | 15 |
#473 | /wp-includes/widgets/include.php | 15 |
#474 | /wordpress-site.zip | 15 |
#475 | /wp-site.zip | 15 |
#476 | /new/wp-admin/install.php | 14 |
#477 | /wordpress/wp-admin/install.php | 14 |
#478 | /wp/wp-admin/install.php | 14 |
#479 | /old/wp-admin/install.php | 14 |
#480 | /wp-content/themes/include.php | 14 |
#481 | /wordpress-admin.zip | 14 |
#482 | /wp-login.php:Lucas | 13 |
#483 | /wp-includes/js/tinymce/skins/lightgray/img/index.php | 13 |
#484 | /wp-head.php | 13 |
#485 | /nv/wp | 13 |
#486 | /wp-content/uploads/2018/01/yoga-e-massagem_fam | 13 |
#487 | /wp-admin/maint/atomlib.php | 13 |
#488 | /wp-admin.zip | 13 |
#489 | /wp-2024.zip | 13 |
#490 | /wp-pridmag/up.php | 12 |
#491 | /wp-content/languages/index.php | 12 |
#492 | /wp-content/uploads/2018/01/yoga-para-bebes-segunda-sess | 12 |
#493 | /wp-admin/user/moon.php | 12 |
#494 | /wp-content/plugins/wpyii2/wpyii2.php | 12 |
#495 | /wp-admin/js/wp-conflg.php | 11 |
#496 | /wp-json/post-smtp/v1/connect-app | 11 |
#497 | /wp-admin/x.php | 11 |
#498 | /wp-admin-login | 11 |
#499 | /wp-apxupx.php | 11 |
#500 | /wp-content/themes/bltm/wp-login.php | 11 |
Data was last updated on: Sep 17, 2025
We love logs. In this section we will share some of the data we are parsing from our logs and honeypots we have live.
Logging for fun and a good night of sleep.
Latest log-based threat analysis added.
Do you have an idea for a research that is not here? See something wrong? Contact us at support@noc.org
14 days free trial. No credit card required.