Checking for 404 errors in your logs can reveal more than just broken links, it can also expose files and URLs that attackers are actively scanning for. To track this behavior, we set up hundreds of honeypots and analyzed live web traffic data, giving us insight into which files and URLs are being targeted across the internet.
The table bellow list the top URLs being scanned on WordPress sites. This list of updated daily and shows the top plugins, backdoors and files that attacker are lookin for specifically to WordPress.
Rank | Scanned URL | Counter |
---|---|---|
#1 | /wp-login.php | 333,233 |
#2 | /wp-json/oembed/1.0/embed | 26,091 |
#3 | /wp-content/plugins/hellopress/wp_filemanager.php | 17,019 |
#4 | /wordpress | 14,365 |
#5 | /wp | 12,990 |
#6 | /wp-admin | 11,987 |
#7 | /wp.php | 10,510 |
#8 | /wp-content/plugins/woocommerce/includes/gateways/locks.php | 7,910 |
#9 | /wp-content/plugins/fix/up.php | 7,704 |
#10 | /wp-includes/wlwmanifest.xml | 7,243 |
#11 | /wp-cron.php | 7,037 |
#12 | /wordpress/wp-admin/setup-config.php | 6,716 |
#13 | /wp-admin/images/moon.php | 6,582 |
#14 | /web/wp-includes/wlwmanifest.xml | 5,939 |
#15 | /wordpress/wp-includes/wlwmanifest.xml | 5,881 |
#16 | /wp/wp-includes/wlwmanifest.xml | 5,804 |
#17 | /wp-content/wp-conflg.php | 5,741 |
#18 | /wp-plain.php | 5,702 |
#19 | /wp-admin/classwithtostring.php | 5,681 |
#20 | /blog/wp-includes/wlwmanifest.xml | 5,607 |
#21 | /wp-admin/setup-config.php | 5,595 |
#22 | /wp-admin/wp-conflg.php | 5,580 |
#23 | /wp-api.php | 5,489 |
#24 | /2019/wp-includes/wlwmanifest.xml | 5,475 |
#25 | /shop/wp-includes/wlwmanifest.xml | 5,427 |
#26 | /wp-includes/fonts/admin.php | 5,301 |
#27 | /website/wp-includes/wlwmanifest.xml | 5,298 |
#28 | /wp-setup.php | 5,289 |
#29 | /wp-admin/css/colors/blue/index.php | 5,244 |
#30 | /news/wp-includes/wlwmanifest.xml | 5,192 |
#31 | /wp-content/index.php | 5,163 |
#32 | /wp-admin/maint/about.php | 5,125 |
#33 | /appWP/lab/wp-admin/css/colors/blue/blue.php | 4,765 |
#34 | /wp-admin/js/index.php | 4,752 |
#35 | /wp-includes/IXR/autoload_classmap.php | 4,709 |
#36 | /wp-content/about.php | 4,562 |
#37 | /wp-includes/fonts/index.php | 4,561 |
#38 | /wp-content/themes/seotheme/db.php | 4,406 |
#39 | /wp-content/autoload_classmap.php | 4,394 |
#40 | /wp-admin/css | 4,334 |
#41 | /wp-admin/js/widgets/cloud.php | 4,268 |
#42 | /wp-admin/file.php | 4,240 |
#43 | /wp-admin/js/autoload_classmap.php | 4,220 |
#44 | /wp-admin/index.php | 4,156 |
#45 | /wp-content/plugins/wpterm.php | 4,145 |
#46 | /wp-json/custom/v1 | 4,107 |
#47 | /wordpress/wp-login.php | 3,990 |
#48 | /wp-admin/includes/index.php | 3,778 |
#49 | /wp-admin/network/network.php | 3,665 |
#50 | /wp-content/themes/admin.php | 3,602 |
#51 | /wp-content/admin.php | 3,509 |
#52 | /wp-content | 3,494 |
#53 | /wp-includes/blocks/about.php | 3,413 |
#54 | /wp-content/themes/about.php | 3,413 |
#55 | /wp-admin/css/qPyYcxpHKCu.php | 3,410 |
#56 | /wp-admin/js/about.php | 3,383 |
#57 | /wp-l0gin.php | 3,375 |
#58 | /wp-includes/wp-class.php | 3,373 |
#59 | /wp-admin/profile.php | 3,332 |
#60 | /wp-admin/plugins.php | 3,306 |
#61 | /wp-admin/wp-login.php | 3,279 |
#62 | /wp-admin/mah.php | 3,268 |
#63 | /wp-admin/edit.php | 3,251 |
#64 | /wp-admin.php | 3,197 |
#65 | /2020/wp-includes/wlwmanifest.xml | 3,179 |
#66 | /wp-admin/chosen.php | 3,118 |
#67 | /wp-admin/css/colors/ectoplasm/about.php | 3,112 |
#68 | /wp-admin/admin-ajax.php | 3,108 |
#69 | /wp-admin/css/colors/blue/about.php | 3,107 |
#70 | /wp-aa.php | 3,049 |
#71 | /wp-admin/install.php | 3,033 |
#72 | /wp-sitemap.xml | 3,030 |
#73 | /wp-includes/about.php | 3,024 |
#74 | /wp-signin.php | 3,001 |
#75 | /wp-admin/wp-admins.php | 2,913 |
#76 | /wp-admin/js | 2,904 |
#77 | /wp-content/uploads/de_fb_uploads/b.php | 2,897 |
#78 | /wp-trackback.php | 2,891 |
#79 | /wp-admin/wp.php | 2,874 |
#80 | /wp-content/plugins/WordPressCore/include.php | 2,859 |
#81 | /wp-includes/ID3/index.php | 2,855 |
#82 | /wp-admin/css/colors/light/wp-login.php | 2,829 |
#83 | /wp-admin/js/wp-conflg.php | 2,808 |
#84 | /wp-admin/css/colors/blue | 2,805 |
#85 | /wp-content/plugins/pwnd/as.php | 2,779 |
#86 | /wp-conflg.php | 2,749 |
#87 | /wp-content/plugins/autoload_classmap.php | 2,739 |
#88 | /wp-includes/html-api/about.php | 2,737 |
#89 | /wp-admin/admin.php | 2,700 |
#90 | /wp-admin/includes/colour.php | 2,669 |
#91 | /wp-admin/includes/header.php | 2,660 |
#92 | /wp-admin/css/colors/blue/atomlib.php | 2,561 |
#93 | /wp-includes/ALFA_DATA/alfacgiapi/perl.alfa | 2,550 |
#94 | /wp-admin/includes/wp-conflg.php | 2,546 |
#95 | /wp-content/languages/autoload_classmap.php | 2,489 |
#96 | /wp-content/plugins/about.php | 2,463 |
#97 | /wp-content/classwithtostring.php | 2,453 |
#98 | /wp-admin/autoload_classmap.php | 2,440 |
#99 | /wp-content/uploads/json.php | 2,428 |
#100 | /wp-logs.php | 2,395 |
#101 | /wp-wso.php | 2,393 |
#102 | /2018/wp-includes/wlwmanifest.xml | 2,376 |
#103 | /wp-setting.php | 2,359 |
#104 | /wp-content/plugins/ioxi/ioxi/dropdown.php | 2,355 |
#105 | /wp-content/plugins/up/main.php | 2,353 |
#106 | /wp_wrong_datlib.php | 2,352 |
#107 | /wp-content/plugin.php | 2,320 |
#108 | /wp-content/x.php | 2,318 |
#109 | /wp-content/1.php | 2,316 |
#110 | /wp-content/wp.php | 2,303 |
#111 | /wp-config.php.bak | 2,261 |
#112 | /wp-content/click.php | 2,207 |
#113 | /wp-includes/widgets/autoload_classmap.php | 2,199 |
#114 | /wp-includes/fonts/autoload_classmap.php | 2,199 |
#115 | /wp-includes/IXR/chosen.php | 2,198 |
#116 | /wp-comments.php | 2,195 |
#117 | /wp-includes/style-engine/autoload_classmap.php | 2,176 |
#118 | /wp-error.php | 2,152 |
#119 | /wp-includes/wp_class_datlib.php | 2,149 |
#120 | /wp-includes/css/autoload_classmap.php | 2,143 |
#121 | /sanitas-bk/wp-json/metform/v1/forms/views/654 | 2,140 |
#122 | /wp-includes/PHPMailer/file.php | 2,129 |
#123 | /wp-includes/js/tinymce/langs/about.php | 2,122 |
#124 | /wp-config | 2,121 |
#125 | /wp-admin/includes/about.php | 2,107 |
#126 | /wp-includes/pomo/about.php | 2,099 |
#127 | /wp-includes/certificates/chosen.php | 2,086 |
#128 | /wp-content/uploads/chosen.php | 2,075 |
#129 | /wp-includes/SimplePie/chosen.php | 2,073 |
#130 | /wp-admin/images/about.php | 2,044 |
#131 | /wp-admin/maint | 2,029 |
#132 | /wp-content/file.php | 2,015 |
#133 | /wp-content/plugins/revslider/includes/external/page/index.php | 1,954 |
#134 | /wp-admin/js/widgets/index.php | 1,940 |
#135 | /wp-includes/autoload_classmap.php | 1,901 |
#136 | /wp-admin/css/about.php | 1,869 |
#137 | /wp-file.php | 1,861 |
#138 | /wp-content/plugins/simple/simple.php | 1,828 |
#139 | /wp1/wp-includes/wlwmanifest.xml | 1,807 |
#140 | /wp-content/themes/seotheme/mar.php | 1,782 |
#141 | /wp-admin/includes | 1,760 |
#142 | /wp-content/plugins/pwnd/pwnd.php | 1,744 |
#143 | /wp-content/style.php | 1,693 |
#144 | /wp-includes/blocks/wp-conflg.php | 1,677 |
#145 | /wp-content/plugins/wp-conflg.php | 1,652 |
#146 | /wp-gr.php | 1,634 |
#147 | /wp-includes/ID3/about.php | 1,631 |
#148 | /wp-content/uploads/index.php | 1,608 |
#149 | /wp-includes/Requests/about.php | 1,600 |
#150 | /wp-admin/js/widgets | 1,560 |
#151 | /wp-2019.php | 1,554 |
#152 | /wp-admin/images/cloud.php | 1,529 |
#153 | /wp-configs.php | 1,518 |
#154 | /wp-content/themes/twentytwenty/404.php | 1,507 |
#155 | /wp-content/uploads | 1,506 |
#156 | /wp-blog.php | 1,500 |
#157 | /wp-links.php | 1,498 |
#158 | /wp-content/themes/classwithtostring.php | 1,489 |
#159 | /wp-admin/images/index.php | 1,481 |
#160 | /wp-includes/rest-api/index.php | 1,480 |
#161 | /wp-includes/SimplePie/about.php | 1,477 |
#162 | /wp-includes/blocks/calendar/index.php | 1,475 |
#163 | /wp-includes/ID3 | 1,469 |
#164 | /wp-includes/Text/about.php | 1,467 |
#165 | /wp-admin/css/colors/blue/admin.php | 1,459 |
#166 | /wp-content/plugins/admin.php | 1,424 |
#167 | /wp-includes/customize/chosen.php | 1,423 |
#168 | /wp-admin/css/index.php | 1,414 |
#169 | /wp-admin/function.php | 1,407 |
#170 | /es/wp-json/oembed/1.0/embed | 1,395 |
#171 | /wp-content/plugins/janus/janus.php | 1,385 |
#172 | /wp-includes/customize/about.php | 1,382 |
#173 | /wp-includes/Text/autoload_classmap.php | 1,382 |
#174 | /wp-includes/js/jcrop/Jcrop.php | 1,374 |
#175 | /wp-content/plugins/index.php | 1,370 |
#176 | /wp-includes/blocks/site-title/index.php | 1,369 |
#177 | /wp-json/litespeed/v1/cdn_status | 1,367 |
#178 | /wp-admin/dropdown.php | 1,357 |
#179 | /wp-content/plugins/apikey/apikey.php | 1,354 |
#180 | /wp-content/plugins/dummyyummy/wp-signup.php | 1,342 |
#181 | /wp-includes | 1,342 |
#182 | /wp-admin/includes/xmrlpc.php | 1,337 |
#183 | /wp-content/languages/about.php | 1,335 |
#184 | /wp-content/themes/pridmag/db.php | 1,334 |
#185 | /wp-json/storychief | 1,332 |
#186 | /wp-includes/pomo/pomo.php | 1,326 |
#187 | /wp-admin/style.php | 1,320 |
#188 | /wp-content/themes/wp-pridmag/init.php | 1,319 |
#189 | /wp-includes/widgets/about.php | 1,314 |
#190 | /wp-signup.php | 1,312 |
#191 | /wp-content/plugins/revslider/includes/external/page | 1,299 |
#192 | /wp-includes/style-engine/about.php | 1,296 |
#193 | /wp-json/wp-block-editor | 1,295 |
#194 | /wp-includes/assets/index.php | 1,291 |
#195 | /wp-admin/maint/index.php | 1,276 |
#196 | /wp-includes/css | 1,268 |
#197 | /test/wp-includes/wlwmanifest.xml | 1,238 |
#198 | /wp-class.php | 1,218 |
#199 | /wp-content/themes/style.php | 1,208 |
#200 | /wp-admin/css/admin.php | 1,200 |
#201 | /wp-content/plugins/apikey/apikey.php.suspected | 1,198 |
#202 | /sanitas-bk/wp-json/metform/v1/forms/views/727 | 1,194 |
#203 | /wp-includes/images/smilies/about.php | 1,194 |
#204 | /wp-admin/css/colors/index.php | 1,190 |
#205 | /wp-json/oembed | 1,181 |
#206 | /wp-admin/user/xmrlpc.php | 1,171 |
#207 | /wp-activate.php | 1,155 |
#208 | /wp-json/wp | 1,154 |
#209 | /wp-content/plugins/xt | 1,149 |
#210 | /wp-admin/maint/admin.php | 1,147 |
#211 | /wp-admin/images | 1,145 |
#212 | /wp-json/wp-site-health | 1,139 |
#213 | /site/wp-includes/wlwmanifest.xml | 1,138 |
#214 | /cms/wp-includes/wlwmanifest.xml | 1,133 |
#215 | /wp-admin/images/admin.php | 1,132 |
#216 | /wp-includes/css/index.php | 1,126 |
#217 | /cgi-bin/wp-login.php | 1,124 |
#218 | /wp-includes/block-patterns/about.php | 1,123 |
#219 | /wp-info.php | 1,122 |
#220 | /wp-update.php | 1,120 |
#221 | /wp-admin/user/chosen.php | 1,111 |
#222 | /wp-admin/js/js/cache.php | 1,078 |
#223 | /wp-admin/css/css/cache.php | 1,078 |
#224 | /wp-includes/IXR/about.php | 1,078 |
#225 | /wp-admin/images/images/cache.php | 1,076 |
#226 | /wp-admin/css/colors/about.php | 1,068 |
#227 | /wp-content/plugins/core-plugin/include.php | 1,062 |
#228 | /wp-content/themes | 1,057 |
#229 | /wp-content/upgrade/index.php | 1,054 |
#230 | /wp-includes/images/about.php | 1,053 |
#231 | /wp-content/cong.php | 1,048 |
#232 | /wp-json/sure-triggers/v1 | 1,040 |
#233 | /wp-includes/install.php | 1,040 |
#234 | /wp-content/upgrade-temp-backup/about.php | 1,029 |
#235 | /wp-admin/css/colors | 1,026 |
#236 | /wp-old | 1,021 |
#237 | /wp-includes/rest-api/about.php | 1,011 |
#238 | /wp-content/plugins/janusv5/janus.php | 1,010 |
#239 | /wp-includes/wp-includes_function.php | 1,006 |
#240 | /wp-admin/x.php | 1,001 |
#241 | /wp-includes/SimplePie | 997 |
#242 | /sim.php/wp-includes/certificates/plugins.php | 994 |
#243 | /wp-admin/network/index.php | 988 |
#244 | /wp-admin/css/colors/midnight/colors.php | 986 |
#245 | /wp-content/upgrade | 972 |
#246 | /wp-content/themes/index.php | 969 |
#247 | /wp-admin/css/colors/blue/xboom.php | 968 |
#248 | /wp-admin/css/colors/sunrise | 952 |
#249 | /wp-admin/includes/cloud.php | 946 |
#250 | /wp-content/plugins/pwnd-1/pwnd.php | 943 |
#251 | /wp-admin/user/wp-login.php | 942 |
#252 | /wp-admin/css/colors/midnight | 941 |
#253 | /wp-includes/Text/wp-conflg.php | 932 |
#254 | /wp-admin/users.php | 932 |
#255 | /wp-admin/css/colors/ocean | 929 |
#256 | /blog/wp-login.php | 916 |
#257 | /wp-admin/maint/siteone.php | 912 |
#258 | /wp-json/elementor-ai | 911 |
#259 | /wp-includes/block-supports/index.php | 906 |
#260 | /wp-admin/js/widgets/about.php | 894 |
#261 | /wp-admin/network/chosen.php | 891 |
#262 | /wp-config-sample.php | 891 |
#263 | /wp-admin/js/let.php | 879 |
#264 | /wp-json/elementor-pro | 879 |
#265 | /wp-admin/css/colors/light/browser.php | 872 |
#266 | /wp-admin/maint/techl.php | 863 |
#267 | /wp-admin/css/colors/blue/uploader.php | 851 |
#268 | /wp-content/themes/alera/alpha.php | 850 |
#269 | /wp-admin/css/wp-admins.php | 841 |
#270 | /wp-admin/images/lightspped.php | 840 |
#271 | /wp-files.php | 838 |
#272 | /wp-json/elementor | 838 |
#273 | /wp-content/languages/index.php | 835 |
#274 | /wp-content/plugins/Cache/Cache.php | 826 |
#275 | /wp-admin/images/xmrlpc.php | 821 |
#276 | /wp-includes/sitemaps/providers | 819 |
#277 | /wp-admin/css/colors/ectoplasm | 819 |
#278 | /wp-json/wordfence | 810 |
#279 | /wp-includes/index.php | 803 |
#280 | /wp-config.php | 800 |
#281 | /wp-mail.php | 798 |
#282 | /wp-includes/rest-api | 798 |
#283 | /wp-admin/includes/port.php | 790 |
#284 | /wp-fmfile.php | 790 |
#285 | /wp-includes/sitemaps/rz.php | 787 |
#286 | /wp/wp-admin/includes | 786 |
#287 | /wp-admin/user | 784 |
#288 | /wp-includes/images/wp-login.php | 778 |
#289 | /wordpress-vs-html | 776 |
#290 | /wp-includes/customize | 769 |
#291 | /wp-content/content.php | 766 |
#292 | /wp-json | 766 |
#293 | /wp-admin/css/colors/ectoplasm/wp-login.php | 763 |
#294 | /wp-blog-header.php | 762 |
#295 | /wp-admin/edit-tags.php | 757 |
#296 | /wp-includes/js/codemirror/index.php | 756 |
#297 | /wp-content/uploads/wp-conflg.php | 754 |
#298 | /wp-content/plugins | 751 |
#299 | /wp2/wp-includes/wlwmanifest.xml | 751 |
#300 | /wp-includes/admin.php | 747 |
#301 | /wp-content/plugins/linkpreview/db.php | 744 |
#302 | /wp-includes/class-wp-network-cron.php | 740 |
#303 | /wp-includes/certificates | 735 |
#304 | /wp-content/themes/twenty/twenty.php | 733 |
#305 | /wp-admin/css/colors/light/about.php | 733 |
#306 | /wp-admin/css/colors/light | 733 |
#307 | /wp-seo.php | 731 |
#308 | /wp-includes/Text/Diff/Renderer/about.php | 730 |
#309 | /wp-includes/customize/index.php | 727 |
#310 | /wp-includes/images/smilies/index.php | 724 |
#311 | /wp-includes/pomo | 723 |
#312 | /wp-admin/maint/wp-login.php | 719 |
#313 | /wp-content/plugins/seoplugins/db.php | 717 |
#314 | /wp-includes/ID3/el.php | 713 |
#315 | /wp-includes/SimplePie/index.php | 713 |
#316 | /.well-known/pki-validation/wp-login.php | 712 |
#317 | /wp-admin/network/xmrlpc.php | 709 |
#318 | /wp-includes/fonts | 708 |
#319 | /wp-includes/PHPMailer | 708 |
#320 | /wp-admin/css/colors/blue/wp-login.php | 705 |
#321 | /wp-content/plugins/seoplugins/mar.php | 703 |
#322 | /wp-admin/meta | 703 |
#323 | /wp-includes/we2.php | 698 |
#324 | /wp-includes/x.php | 696 |
#325 | /wp-admin/css/colors/coffee/index.php | 694 |
#326 | /wp-content/languages/chosen.php | 693 |
#327 | /wp-admin/user/index.php | 691 |
#328 | /wp-json/google-site-kit | 689 |
#329 | /wp-head.php | 687 |
#330 | /wp-includes/js/tinymce/skins/lightgray/img/index.php | 687 |
#331 | /wp-index.php | 686 |
#332 | /sito/wp-includes/wlwmanifest.xml | 686 |
#333 | /wp-content/plugins/elementor/assets/js/undefined | 680 |
#334 | /wp-admin/network/cloud.php | 680 |
#335 | /wp-content/uploads/autoload_classmap.php | 672 |
#336 | /wp-content/plugins/wp-help/admin/wp-fclass.php | 670 |
#337 | /wp-admin/css/wp-css.php | 669 |
#338 | /wp-admin/radio.php | 669 |
#339 | /wp-includes/css/wp-conflg.php | 667 |
#340 | /wp-includes/Text/Diff/Engine/about.php | 664 |
#341 | /wp-content/themes/file.php | 661 |
#342 | /wp-includes/html-api | 658 |
#343 | /wp-theme.php | 657 |
#344 | /wp-includes/images | 648 |
#345 | /wp-admin/css/colors/modern | 647 |
#346 | /features/wordpress-management-tools | 646 |
#347 | /wp-admin/wp-admin.php | 644 |
#348 | /wp-json/sure-triggers/v1/automation/action | 644 |
#349 | /wp-remote-api | 642 |
#350 | /wp-admin/css/colors/blue/ff.php | 637 |
#351 | /wp-admin/alfa.php | 637 |
#352 | /wp-admin/js/admin.php | 636 |
#353 | /wp-includes/IXR/index.php | 630 |
#354 | /wp/wp-login.php | 629 |
#355 | /wp-admin/includes/class-core-upgrader-first.php | 625 |
#356 | /wp-admin/images/download.php | 624 |
#357 | /wp-content/themes/aahana/json.php | 624 |
#358 | /wp-includes/PHPMailer/admin.php | 623 |
#359 | /wp-admin/network | 621 |
#360 | /wp-includes/Text/Diff/alfa-rex.php | 617 |
#361 | /wp-includes/fonts/about.php | 616 |
#362 | /wp-admin/css/colors/blue/aurora%20(1).php | 614 |
#363 | /wp-admin/css/wp-login.php | 613 |
#364 | /wp-content/plugins/bdthemes-prime-slider-lite/images/backgrounds | 613 |
#365 | /wp-admin/about.php | 608 |
#366 | /wp-includes/ID3/autoload_classmap.php | 603 |
#367 | /wp-includes/IXR/goto.php | 601 |
#368 | /wp-json/wp-rocket | 597 |
#369 | /wp-admin/js/widgets/about.php7 | 597 |
#370 | /wp-admin/css/colors/midnight/gmail.php | 596 |
#371 | /wp-mn.php | 595 |
#372 | /wp-includes/SimplePie/admin.php | 594 |
#373 | /wp-admin/css/colors/blue/VzlaTeam.php | 593 |
#374 | /wp-includes/html-api/wp-login.php | 592 |
#375 | /wp-content/plugins/wp-automatic/inc/csv.php | 589 |
#376 | /wp-includes/IXR/wp-login.php | 588 |
#377 | /wp-admin/admin-post.php | 586 |
#378 | /wp-admin/images/install.php | 584 |
#379 | /wp-includes/assets | 583 |
#380 | /wp-content/radio.php | 582 |
#381 | /wp-admin/includes/BDKR28_shell.php | 580 |
#382 | /wp-json/aioseo | 580 |
#383 | /wp-json/hfe | 579 |
#384 | /wp-content/uploads/about.php | 579 |
#385 | /wp-admin/css/colors/blue/info.php | 578 |
#386 | /wp-admin/includes/class-wp-privacy-data-removal-requests-list-table-package.php | 578 |
#387 | /wp-activat.php | 578 |
#388 | /wp-admin/includes/el.php | 576 |
#389 | /wp-includes/plugins.php | 576 |
#390 | /wp-json/webp-converter | 575 |
#391 | /wp-admin/css/colors/ectoplasm/upload.php | 573 |
#392 | /wp-admin/js/widgets/zip.php | 571 |
#393 | /wp-json/elementor-hello-elementor | 569 |
#394 | /wp-json/v1/u | 565 |
#395 | /wp-json/buddyboss-app/v1/signup/form | 561 |
#396 | /wp-admin/includes/theme-install.php.INFECTED.php | 555 |
#397 | /wp-admin/css/colors/coffee/cloud.php | 555 |
#398 | /wp-content/cache/index.php | 550 |
#399 | /wp-admin/css/colors/coffee | 550 |
#400 | /wp-content/uploads/elementor/css/link%20da%20imagem | 550 |
#401 | /wp-includes/feed-rsss.php | 548 |
#402 | /wp-content/install.php | 547 |
#403 | /wp-admin/js/wp-login.php | 543 |
#404 | /wp-content/uploads/2022/10/upload.php | 542 |
#405 | /wp-content/plugins/litespeed-cache/guest.vary.php | 541 |
#406 | /wp-content/plugins/up/up.php | 541 |
#407 | /wp-admin/maint/edit.php | 539 |
#408 | /wp-content/themes/astra/inc/ki1k.php | 536 |
#409 | /wp-admin/includes/template.php.INFECTED.php | 535 |
#410 | /wp-content/upgrade/about.php | 534 |
#411 | /wp-admin/includes/plugin-install.php.INFECTED.php | 533 |
#412 | /wp-includes/certificates/about.php | 528 |
#413 | /wp-admin/includes/menu-cookie.php | 527 |
#414 | /wp-content/uploads/2024/index.php | 527 |
#415 | /wp-admin/images/profile.php | 526 |
#416 | /wp-includes/pomo/index.php | 522 |
#417 | /wp-includes/css/about.php | 520 |
#418 | /wp-header.php | 516 |
#419 | /wp-includes/Requests | 514 |
#420 | /wp-includes/class-wp-feed-cache-transient-part.php | 511 |
#421 | /wp-content/themes/twentytwentytwo/index.php | 510 |
#422 | /wp-includes/embed-database.php | 507 |
#423 | /wp-includes/hel.php | 507 |
#424 | /wp-content/plugins/view-more/ioxi.php | 506 |
#425 | /wp-includes/certificates/wp-login.php | 505 |
#426 | /wp-content/x | 500 |
#427 | /wp-22.php | 500 |
#428 | /wp-content/dn.php | 499 |
#429 | /wp-content/x/index.php | 499 |
#430 | /wp-admin/js/chosen.php | 495 |
#431 | /wp-admin/css/network.php | 493 |
#432 | /wp-json/wp/v2/users | 493 |
#433 | /wp-includes/css/admin.php | 490 |
#434 | /wp-includes/Text/Diff/Engine.php | 488 |
#435 | /wp-includes/Requests/Text/admin.php | 488 |
#436 | /wp-includes/ID3/admin.php | 487 |
#437 | /wp-includes/repeater.php | 487 |
#438 | /wp-includes/js/codemirror | 487 |
#439 | /wp-includes/css/dist | 486 |
#440 | /wp-content/worksec.php | 485 |
#441 | /wp-includes/images/media | 484 |
#442 | /wp-admin/maint/fie.php | 484 |
#443 | /wp-includes/css/babu.php | 480 |
#444 | /wp-includes/theme-compat/about.php | 480 |
#445 | /wp-content/plugins/php-migrator/migrator.php | 477 |
#446 | /wp-includes/ID3/module.audio-video.as.php | 475 |
#447 | /wp-includes/html-api/chosen.php | 475 |
#448 | /wp-includes/IXR/admin.php | 475 |
#449 | /shop/wp-login.php | 472 |
#450 | /wp-sigunq.php | 471 |
#451 | /wp-content/plugins/envato-market/inc/class-envato-market-github.php | 469 |
#452 | /wp-includes/f35.php | 468 |
#453 | /wp-editor.php | 467 |
#454 | /wp-includes/fonts/wp-login.php | 466 |
#455 | /wp-content/atomlib.php | 458 |
#456 | /wp-includes/Requests/library | 455 |
#457 | /wp-content/plugins/linkpreview | 453 |
#458 | /wp-admin/css/colors/blue/system_log.php | 451 |
#459 | /wp-json/forminator | 449 |
#460 | /wp-admin/maint/maint/ajax-actions.php | 448 |
#461 | /wp-content/mu-plugins-old | 448 |
#462 | /wp-includes/images/crystal | 446 |
#463 | /wp-admin/doc.php | 445 |
#464 | /wp-admin/css/as.php | 444 |
#465 | /wp-admin/maint/wp.php | 444 |
#466 | /wp-includes/sitemaps | 444 |
#467 | /wp-admin/ajax-actions.php | 443 |
#468 | /wp-content/plugins/core/include.php | 443 |
#469 | /wp-admin/css/getid3s.php | 442 |
#470 | /wp-includes/IXR | 442 |
#471 | /wp-admin/network/getid3s.php | 440 |
#472 | /wp-includes/Text/Diff/Renderer | 439 |
#473 | /wp-admin/css/colors/coffee/alfa-rex.php | 438 |
#474 | /wp-json/wp/v2/posts | 438 |
#475 | /wp-includes/Text/Diff/Engine/wp-login.php | 437 |
#476 | /wp-admin/pages.php | 437 |
#477 | /wp-json/nps-survey | 437 |
#478 | /new/wp-admin/setup-config.php | 437 |
#479 | /wp-includes/Text/Diff/Engine/index.php | 436 |
#480 | /wp-content/uploads/cong.php | 435 |
#481 | /wp-content/plugins/linkpreview/index.php | 435 |
#482 | /wp/wp-admin/setup-config.php | 435 |
#483 | /wp-includes/js/codemirror/about.php | 433 |
#484 | /wp-content/uploads/makeasmtp.php | 428 |
#485 | /wp-admin/js/widgets/xmrlpc.php | 426 |
#486 | /wp-admin/user/cloud.php | 426 |
#487 | /wp-content/uploads/2021 | 426 |
#488 | /wp-admin/network/about.php | 425 |
#489 | /wp-includes/wp-mail.php | 424 |
#490 | /wp-includes/fonts/class-wp-font-library.php | 424 |
#491 | /wp-includes/blocks | 424 |
#492 | /wp-corn-sample.php | 423 |
#493 | /wp-content/plugins/ubh/1.php | 423 |
#494 | /wp-content/style-css.php | 423 |
#495 | /wp-includes/ID3/file.php | 423 |
#496 | /wp-admin/xmrlpc.php | 423 |
#497 | /wp-json/hub-connector | 423 |
#498 | /wp-includes/rest-api/endpoints/index.php | 422 |
#499 | /.well-known/wp-login.php | 421 |
#500 | /wp-content/languages/wp-login.php | 421 |
Data was last updated on: Sep 17, 2025
We love logs. In this section we will share some of the data we are parsing from our logs and honeypots we have live.
Logging for fun and a good night of sleep.
Latest log-based threat analysis added.
Do you have an idea for a research that is not here? See something wrong? Contact us at support@noc.org
14 days free trial. No credit card required.