Investigation Workspace

Entity: 20.220.232.240 (Ip)

Entity Details
Type
Ip
ASN
AS8075 - Microsoft Corporation
Threat Intelligence
All 141 requests were flagged as threats and denied by WAF's IPBLOCK rule, accessing multiple suspicious PHP files. Indicates highly malicious activity.
Linked Entities
Hostnames Targeted
Hostname Request Count
akamai.darcherif.fr 403
Paths Targeted (with Request Counts)
Path Request Count
wp-content/plugins/hellopress/wp_filemanager.php 3
ms.php 3
bolt.php 2
forbidals.php 2
xml.php 2
gec.php 2
fff.php 2
wp-blog.php 2
grsiuk.php 2
vx.php 2
public/vx.php 2
wp-the.php 2
erty.php 2
dom.php 2
ffile.php 2
wp-access.php 2
xqq.php 2
ms-edit.php 2
fr/ms.php 2
0.php 2
file59.php 2
ze.php 2
pouhg.php 2
gmo.php 2
thui.php 2
opts.php 2
xa.php 2
x.php 2
plugins.php 2
un.php 2
wp-good.php 2
koiy.php 2
moon.php 2
app.php 2
X57.php 2
wp-admin/css/bolt.php 2
byp8.php 2
public/wp-blog.php 2
god.php 2
wp5.php 2
666.php 2
ws60.php 2
kj.php 2
X7x.php 2
vgtyu.php 2
mcs.php 2
xda.php 2
motu.php 2
wp-act.php 2
new4.php 2
🚫

Block

All 141 requests were flagged as threats and denied by WAF's IPBLOCK rule, accessing multiple suspicious PHP files. Indicates highly malicious activity.

2026-02-28 07:50:20