751
99.0%
50
IP: 43 TLS: 3 ASN: 4
| Entity | Type | Hostnames | Reason | Blocked At | AI Confidence | AI Details |
|---|---|---|---|---|---|---|
| 13.218.151.84 | IP | akamai.darcherif.fr | All requests (100%) from this IP were flagged as threats, all accessed paths were flagged by WAF, and a critical 'IPBLOCK' deny rule was triggered, indicating severe automated malicious activity. | 2025-12-24 04:59:12 | 100.0% | Critical |
| 202.8.42.45 | IP | www.darcherif.fr | Extremely high percentage of detected threat requests (82.35%) and all accessed paths were flagged by WAF, triggering security alert '3991008', indicating persistent malicious probing or automated attacks. | 2025-12-24 02:59:05 | 95.0% | Critical |
| 3%7eb88045f633bfc7f7 | TLS | www.darcherif.fr | Very high percentage (94.4%) of requests associated with this TLS fingerprint were detected as threats and flagged by WAF, triggering alert '3991006'. It also accessed a highly obfuscated path, indicating malicious probing or exploit attempts. | 2025-12-23 14:48:23 | 100.0% | Critical |
| 40.77.167.27 | IP | www.darcherif.fr | All requests (100%) from this IP were flagged by WAF and triggered security alert '3991006'. The associated ASN (AS8075) is already blocklisted for persistent malicious activity. | 2025-12-23 14:48:22 | 100.0% | Critical |
| 52.167.144.218 | IP | www.darcherif.fr | High percentage (88.8%) of requests from this IP were flagged by WAF and triggered security alert '3991006'. It also accessed a highly obfuscated path, strongly indicating malicious probing. The associated ASN (AS8075) is already blocklisted for persistent malicious activity. | 2025-12-23 14:48:22 | 100.0% | Critical |
| 130.33.54.201 | IP | akamai.darcherif.fr | All requests (100%) from this IP were flagged by WAF, accessed suspicious PHP files and admin paths, and triggered a critical 'IPBLOCK' deny rule. Its associated ASN (AS8075) is already blocklisted for persistent malicious activity, with multiple other IPs from this ASN also blocklisted for identical behavior. | 2025-12-23 13:18:15 | 100.0% | Critical |
| 34.58.41.77 | IP | akamai.darcherif.fr | IP is performing extensive WordPress enumeration, bot impersonation, and triggered a critical WAF deny rule (IPBLOCK-BURST4-318403) due to a burst of malicious activity. Its associated ASN (AS396982) is already blocklisted for identical malicious behavior from multiple other IPs. | 2025-12-23 08:28:02 | 100.0% | Critical |
| 205.169.39.58 | IP | www.darcherif.fr | Accessed a highly obfuscated and suspicious path (-mN-Pzl2I/...), strongly indicating malicious probing or attempted exploitation, despite no direct WAF flags yet. | 2025-12-23 06:57:58 | 95.0% | Critical |
| 205.169.39.14 | IP | www.darcherif.fr | Accessed a highly obfuscated and suspicious path (-mN-Pzl2I/...), strongly indicating malicious probing or attempted exploitation, despite no direct WAF flags yet. | 2025-12-23 06:57:58 | 95.0% | Critical |
| 2a07:e05:3:35::1 | IP | akamai.darcherif.fr | All requests (100%) from this IP were flagged by WAF, triggering multiple security alerts including 'BOT-BROWSER-IMPERSONATOR', and demonstrating malicious probing on the same paths as a previously blocklisted IP (2a07:e05:3:1b::1) from the same ASN (AS400587). | 2025-12-22 21:57:26 | 100.0% | Critical |
| 3.9.114.107 | IP | akamai.darcherif.fr | All requests (100%) from this IP were flagged as threats and triggered a critical 'IPBLOCK' WAF deny rule. Its associated ASN (AS16509) is already blocklisted for persistent malicious activity, with multiple other IPs from this ASN also blocklisted for identical behavior. | 2025-12-22 19:07:15 | 100.0% | Critical |
| 66.249.66.33 | IP | www.darcherif.fr | All requests (100%) from this IP were detected as threats, flagged by WAF, and triggered security alert 3991006, consistent with the blocklisted ASN AS15169 for similar malicious activity. | 2025-12-22 16:47:09 | 100.0% | Critical |
| 66.249.66.201 | IP | www.darcherif.fr | All requests (100%) from this IP were detected as threats, flagged by WAF, and triggered security alert 3991006, consistent with the blocklisted ASN AS15169 for similar malicious activity. | 2025-12-22 16:47:09 | 100.0% | Critical |
| 77.90.185.12 | IP | www.darcherif.fr | IP from blocklisted ASN AS215476, with a high percentage (85.7%) of threat requests targeting 'wp-login.php' and triggering a brute-force alert, consistent with other blocklisted IPs from this ASN exhibiting identical malicious activity. | 2025-12-22 15:07:01 | 100.0% | Critical |
| 13.229.89.63 | IP | akamai.darcherif.fr | All requests (100%) from this IP were flagged as threats and triggered a critical 'IPBLOCK' WAF deny rule. Its associated ASN (AS16509) is already blocklisted for persistent malicious activity, with multiple other IPs from this ASN also blocklisted for identical behavior. | 2025-12-22 10:46:49 | 100.0% | Critical |
| 157.230.46.137 | IP | akamai.darcherif.fr | IP is performing WordPress enumeration and bot impersonation, has an extremely high number of detected threat requests, and belongs to ASN AS14061, which is blocklisted for highly malicious activity. | 2025-12-22 10:26:48 | 100.0% | Critical |
| 114.119.151.146 | IP | www.darcherif.fr | All requests (100%) from this IP were detected as threats and flagged by WAF, triggering security alert '3991006', consistent with blocklisted ASN AS136907 for similar malicious activity. | 2025-12-22 09:26:42 | 100.0% | Critical |
| 213.35.96.205 | IP | akamai.darcherif.fr | All requests from this IP targeted sensitive WordPress admin/login paths, were flagged by WAF, triggered multiple security alerts including 'BOT-BROWSER-IMPERSONATOR', and show identical malicious patterns to a previously blocklisted IP from the same ASN and region (213.35.103.66). | 2025-12-22 08:46:41 | 100.0% | Critical |
| 138.197.152.229 | IP | www.darcherif.fr | All requests from this IP were flagged by WAF, triggered critical LFI-ANOMALY and reputation-based deny rules, and its associated ASN AS14061 is already blocklisted for highly malicious activity. | 2025-12-22 08:06:40 | 100.0% | Critical |
| 3%7e2d3399e1bbf557f5 | TLS | www.darcherif.fr | All requests associated with this TLS fingerprint were flagged by WAF, triggered critical LFI-ANOMALY and reputation-based deny rules, and accessed highly suspicious paths indicative of web shell or exploitation attempts. | 2025-12-22 08:06:40 | 100.0% | Critical |
| 74.7.243.194 | IP | www.darcherif.fr | High percentage of detected threat requests (6/7), multiple paths flagged by WAF including a suspicious obfuscated path, and triggered WAF alert, consistent with the blocklisted ASN AS8075 for persistent malicious activity. | 2025-12-22 03:46:17 | 100.0% | Critical |
| 74.7.175.152 | IP | www.darcherif.fr | All requests (100%) from this IP were flagged by WAF and triggered an alert, consistent with the blocklisted ASN AS8075 for persistent malicious activity. | 2025-12-22 03:46:17 | 100.0% | Critical |
| AS42821 | ASN | akamai.darcherif.fr | ASN linked to IP 213.209.159.151, which targeted highly sensitive files, was fully flagged by WAF, and triggered critical IPBLOCK-BURST4 deny rules. Blocking the entire ASN is necessary to mitigate persistent threats from this network. | 2025-12-21 22:55:50 | 100.0% | Critical |
| 213.209.159.151 | IP | akamai.darcherif.fr | All requests targeted highly sensitive configuration and credential files, were flagged by WAF, and triggered critical IPBLOCK-BURST4 deny rules. | 2025-12-21 22:55:50 | 100.0% | Critical |
| 141.98.11.169 | IP | www.darcherif.fr | High percentage of threat requests (76.9%) targeting 'wp-login.php' and triggering a brute-force alert. This IP's ASN (AS209605) is already blocklisted for similar critical malicious activity. | 2025-12-21 22:25:50 | 100.0% | Critical |
| 103.179.173.163 | IP | www.darcherif.fr | High percentage of detected threat requests (84%) targeting 'wp-login.php' and triggering a brute-force alert. This behavior is consistent with other blocklisted IPs from Vietnam for similar critical malicious activity. | 2025-12-21 21:55:44 | 95.0% | Critical |
| 77.90.185.245 | IP | www.darcherif.fr | High percentage of detected threat requests (87%) targeting 'wp-login.php' and triggering a brute-force alert. This IP's ASN (AS215476) and other IPs within it are already blocklisted for identical critical malicious activity. | 2025-12-21 17:05:27 | 100.0% | Critical |
| 52.172.223.9 | IP | akamai.darcherif.fr | All requests (100%) from this IP were flagged by WAF and targeted suspicious PHP files, triggering a critical 'IPBLOCK' deny rule. The associated ASN (AS8075) is already blocklisted for persistent malicious activity. | 2025-12-21 11:35:13 | 100.0% | Critical |
| 62.60.131.162 | IP | akamai.darcherif.fr | All requests (100%) from this IP were flagged as threats, specifically targeting the sensitive '.git/config' path, indicating a high-confidence reconnaissance or exploit attempt. | 2025-12-21 03:14:37 | 100.0% | Critical |
| 193.142.146.65 | IP | www.darcherif.fr | High percentage of detected threat requests (66.67%) specifically targeting 'wp-login.php' and triggering a security alert indicative of brute-force attempts. Another IP from the same ASN (AS213438) has been previously blocklisted for identical malicious activity. | 2025-12-20 19:24:13 | 100.0% | Critical |
| 13.229.199.18 | IP | akamai.darcherif.fr | All requests (100%) from this IP were flagged as threats and triggered a critical 'IPBLOCK' WAF deny rule. Its associated ASN (AS16509) is already blocklisted for persistent malicious activity. | 2025-12-20 07:23:34 | 100.0% | Critical |
| 3%7e2c022104e7e56fbe | TLS | www.darcherif.fr | TLS fingerprint detected probing 'wp-login.php', triggering a WAF alert (3900998) indicative of brute-force or credential stuffing attempts, consistent with previously blocked malicious activity. | 2025-12-19 11:42:24 | 95.0% | Critical |
| 45.149.173.217 | IP | akamai.darcherif.fr | Extensive WordPress enumeration and bot impersonation detected, triggering multiple WAF alerts and a critical 'IPBLOCK-BURST4' deny rule due to a very high rate of malicious requests. | 2025-12-19 11:22:19 | 100.0% | Critical |
| 91.224.92.93 | IP | www.darcherif.fr | Multiple requests targeting 'wp-login.php', flagged by WAF, triggered brute-force alert '3900998', and associated ASN AS209605 has other IPs blocklisted for similar activity. | 2025-12-19 09:42:14 | 98.0% | Critical |
| AS209605 | ASN | - | Multiple IPs from this ASN, including '91.224.92.93' and '91.224.92.99', are consistently performing brute-force and enumeration attacks on 'wp-login.php' and triggering critical WAF alerts. | 2025-12-19 09:42:14 | 100.0% | Critical |
| 209.38.29.70 | IP | akamai.darcherif.fr | IP from blocklisted ASN AS14061 aggressively attempting Laravel and PHPUnit exploits, command injection, and local file inclusion by targeting sensitive files (.env, .git/config), triggered multiple critical WAF deny rules (CMD-INJECTION-ANOMALY, LFI-ANOMALY), and shows an extremely high number of detected threat requests. | 2025-12-19 08:52:12 | 100.0% | Critical |
| 209.38.88.38 | IP | www.darcherif.fr | IP from blocklisted ASN AS14061 aggressively attempting Laravel and PHPUnit exploits by targeting sensitive files, triggered a critical WAF deny rule, and showed a 100% threat request ratio. | 2025-12-19 07:02:04 | 100.0% | Critical |
| 170.64.219.248 | IP | www.darcherif.fr | IP is aggressively attempting critical exploits (Laravel RCE, PHPUnit RCE, LFI, sensitive file disclosure) and triggered multiple critical WAF deny rules. Its associated ASN (AS14061) is already blocklisted for persistent malicious activity. | 2025-12-19 04:01:53 | 100.0% | Critical |
| 45.135.232.10 | IP | www.darcherif.fr | All requests (100%) from this IP targeted known WordPress exploit paths ('xmlrpc.php', 'wp-login.php') and triggered multiple critical WAF deny rules (IPBLOCK-PENALTY-BOX, PLATFORM-ANOMALY, POLICY-ANOMALY), indicating an active and severe brute-force or enumeration attack. | 2025-12-19 02:11:46 | 100.0% | Critical |
| 34.136.173.106 | IP | www.darcherif.fr | IP belongs to AS396982, which is blocklisted for extensive WordPress enumeration, bot impersonation, and critical WAF deny rules, indicating a high risk of malicious activity. | 2025-12-18 20:11:21 | 95.0% | Critical |
| AS215476 | ASN | www.darcherif.fr | High percentage (88.5%) of detected threat requests originating from this ASN, consistently targeting 'wp-login.php' and triggering security alerts for brute-force attempts. Other IPs within this ASN are already blocklisted for similar persistent malicious activity. | 2025-12-18 20:01:26 | 98.0% | Critical |
| 77.90.185.10 | IP | www.darcherif.fr | High percentage (90%) of detected threat requests targeting 'wp-login.php', triggering security alerts indicative of brute-force attempts. Associated ASN AS215476 also shows high malicious activity and has other IPs blocklisted for similar behavior. | 2025-12-18 20:01:26 | 95.0% | Critical |
| 170.64.167.148 | IP | akamai.darcherif.fr | IP from blocklisted ASN AS14061 aggressively attempting Laravel and PHPUnit exploits, command injection, and local file inclusion by targeting sensitive files (.env, .git/config), triggering multiple critical WAF deny rules (CMD-INJECTION-ANOMALY, LFI-ANOMALY), and showing a very high threat request ratio (101/11). | 2025-12-18 13:31:04 | 100.0% | Critical |
| 114.119.146.15 | IP | www.darcherif.fr | All requests (100%) were detected as threats, including probing 'wp-login.php', and the associated ASN (AS136907) is already blocklisted for similar malicious activity. | 2025-12-18 03:30:22 | 100.0% | Critical |
| 185.177.72.8 | IP | akamai.darcherif.fr | IP from blocklisted ASN AS211590, demonstrating bot-browser impersonation, multiple WAF alerts, and an exceptionally high number of detected threat requests (50 out of 17), indicating persistent malicious probing and automated attacks. | 2025-12-17 23:50:15 | 100.0% | Critical |
| 34.187.144.195 | IP | akamai.darcherif.fr | Extensive WordPress enumeration, bot impersonation, and high detected threat requests (127/27). Triggered critical WAF deny rule 'IPBLOCK-BURST4-318403' and associated ASN (AS396982) is blocklisted for similar activity. | 2025-12-17 17:09:52 | 100.0% | Critical |
| 34.105.63.134 | IP | akamai.darcherif.fr | IP performing extensive WordPress enumeration and bot impersonation, triggering critical WAF deny rules (IPBLOCK-BURST4-318403) and multiple bot alerts. Behavior is consistent with blocklisted ASN AS396982. | 2025-12-17 14:19:47 | 100.0% | Critical |
| AS396982 | ASN | www.darcherif.fr akamai.darcherif.fr | Associated IPs within this ASN are performing extensive WordPress enumeration and bot impersonation, triggering critical WAF deny rules like 'IPBLOCK-BURST4-318403', and demonstrating a very high threat request ratio. | 2025-12-17 11:39:36 | 100.0% | Critical |
| 74.7.243.201 | IP | www.darcherif.fr | High percentage of detected threat requests (75%) including suspicious and obfuscated paths, triggered WAF alert '3991023', and associated ASN AS8075 is blocklisted for persistent malicious activity. | 2025-12-17 10:39:34 | 100.0% | Critical |
| 91.224.92.99 | IP | www.darcherif.fr | Detected brute-force or credential stuffing attempts targeting 'wp-login.php', with WAF flagging the path and triggering security alert '3900998'. Associated ASN (AS209605) has other IPs blocklisted for similar WordPress enumeration and bot activity. | 2025-12-17 10:09:33 | 95.0% | Critical |