Investigation Workspace

Entity: 20.89.58.48 (Ip)

Entity Details
Type
Ip
ASN
AS8075 - Microsoft Corporation
Threat Intelligence
Engaged in highly malicious activity, with all accessed paths flagged by WAF, numerous detected threat requests, and triggered WAF deny rules including IP blocking and bot impersonation.
Linked Entities
TLS Fingerprints (1)
Hostnames Targeted
Hostname Request Count
akamai.darcherif.fr 302
Paths Targeted (with Request Counts)
Path Request Count
_sec/cp_challenge/challenge 124
index/function.php 3
404.php 3
wp-content/languages/index.php 3
admin/function.php 3
wp-content/plugins/hellopress/wp_filemanager.php 3
install.php 3
wp-content/themes/about.php 3
wp-admin/maint/index.php 3
gdn.php 3
an.php 3
rip.php 3
dropdown.php 3
function/function.php 2
f.php 2
lala.php 2
doc.php 2
wp-includes/pomo/index.php 2
shell20211028.php 2
8xyz.php 2
wp-config-sample.php 2
shell.php 2
wp-admin/user-new.php 2
wp-includes/Text/Diff/index.php 2
wp-includes/admin.php 2
autoload_classmap.php 2
wp-includes/css/about.php 2
fetch.php 2
z.php 2
403.php 2
a2.php 2
wp-includes/assets/index.php 2
system_log.php 2
wp-content/uploads/index.php 2
favicon.php 2
wp-content/themes/seotheme/mar.php 2
byp.php 2
x.php 2
wp-includes/Text/wp-login.php 2
elp.php 2
gettest.php 2
css/index.php 2
wp-content/plugins/index.php 2
b.php 2
system.php 2
wp-includes/ID3/index.php 2
cgi-bin/index.php 2
.well-known/wp-login.php 1
phpinfo.php 1
chosen.php 1
🚫

Block

Engaged in highly malicious activity, with all accessed paths flagged by WAF, numerous detected threat requests, and triggered WAF deny rules including IP blocking and bot impersonation.

2026-02-23 21:37:08