Investigation Workspace

Entity: 4.190.211.79 (Ip)

Entity Details
Type
Ip
ASN
AS8075 - Microsoft Corporation
Threat Intelligence
All requests were detected as threats, targeted known malicious PHP files including a 'wp_filemanager.php' exploit, triggered a critical 'IPBLOCK' WAF deny rule, and its ASN (AS8075) is already blocklisted for persistent and identical malicious activity from multiple other IPs.
Linked Entities
Hostnames Targeted
Hostname Request Count
akamai.darcherif.fr 16
Paths Targeted (with Hostname Counts)
Path Distinct Hostnames
iov.php 1
mds.php 1
xwpg.php 1
wen.php 1
mga.php 1
baee.php 1
motu.php 1
xsas.php 1
str.php 1
6y7t.php 1
bnnof6.php 1
monso.php 1
bgymj.php 1
rendi59.php 1
assacc.php 1
wp-content/plugins/hellopress/wp_filemanager.php 1
🚫

Block

All requests were detected as threats, targeted known malicious PHP files including a 'wp_filemanager.php' exploit, triggered a critical 'IPBLOCK' WAF deny rule, and its ASN (AS8075) is already blocklisted for persistent and identical malicious activity from multiple other IPs.

2026-01-08 15:40:46