381
99.0%
50
IP: 47 ASN: 1 TLS: 2
| Entity | Type | Hostnames | Reason | Blocked At | AI Confidence | AI Details |
|---|---|---|---|---|---|---|
| 74.7.242.31 | IP | www.darcherif.fr | IP from blocklisted ASN AS8075 with 100% threat requests, all paths flagged by WAF, and triggered security alert '3991023', indicating persistent malicious probing. | 2025-12-28 00:04:41 | 100.0% | Critical |
| 205.169.39.11 | IP | www.darcherif.fr | IP from ASN AS3356, which has multiple IPs blocklisted for accessing suspicious/obfuscated paths. This IP exhibits similar behavior with a WAF-flagged path ('akam/13/2f321df0') and triggered security alert '3900999', indicating ongoing malicious probing. | 2025-12-27 19:24:27 | 90.0% | Critical |
| 13.211.133.155 | IP | akamai.darcherif.fr | All requests (100%) from this IP were flagged as threats, all accessed paths were flagged by WAF, and a critical 'IPBLOCK' deny rule was triggered. Its associated ASN (AS16509) is already blocklisted for persistent malicious activity, with multiple other IPs from this ASN also blocklisted for identical behavior. | 2025-12-27 12:54:06 | 100.0% | Critical |
| 3.26.215.6 | IP | akamai.darcherif.fr | All requests (100%) from this IP were flagged as threats, all accessed paths were flagged by WAF, and a critical 'IPBLOCK' deny rule was triggered. Its associated ASN (AS16509) is already blocklisted for persistent malicious activity, with multiple other IPs from this ASN also blocklisted for identical behavior. | 2025-12-27 11:34:05 | 100.0% | Critical |
| 87.251.78.138 | IP | akamai.darcherif.fr | Extremely high number of detected threat events (60 over 10 requests), all accessed paths flagged by WAF, and multiple security alerts including 'BOT-BROWSER-IMPERSONATOR', indicating severe automated malicious probing and exploit attempts. | 2025-12-27 11:04:00 | 100.0% | Critical |
| 16.176.222.217 | IP | akamai.darcherif.fr | All requests (100%) from this IP were flagged as threats, all accessed paths were flagged by WAF, and a critical 'IPBLOCK' deny rule was triggered. Its associated ASN (AS16509) is already blocklisted for persistent malicious activity, with multiple other IPs from this ASN also blocklisted for identical behavior. | 2025-12-27 07:03:48 | 100.0% | Critical |
| 2600:3c00::2000:72ff:fe7b:3e96 | IP | www.darcherif.fr | Accessed a highly obfuscated and suspicious path (cMzmRHv2McZmnWgO3JrScmKtz0o/1Dw3GczYaVuVQN/Qk1QICE/KR9JTB/QVeC0), strongly indicating malicious probing or attempted exploitation, despite no direct WAF flags yet. | 2025-12-27 05:33:47 | 95.0% | Critical |
| 16.176.215.135 | IP | akamai.darcherif.fr | All requests (100%) from this IP were flagged as threats, all accessed paths were flagged by WAF, and a critical 'IPBLOCK' deny rule was triggered. Its associated ASN (AS16509) is already blocklisted for persistent malicious activity, with multiple other IPs from this ASN also blocklisted for identical behavior. | 2025-12-27 05:33:47 | 100.0% | Critical |
| 66.249.66.66 | IP | www.darcherif.fr | All requests (100%) from this IP were detected as threats, all accessed paths were flagged by WAF, and security alert '3991006' was triggered. This behavior is consistent with other blocklisted IPs and the blocklisted ASN AS15169 for similar malicious activity. | 2025-12-27 02:53:38 | 100.0% | Critical |
| 45.86.202.100 | IP | akamai.darcherif.fr | Aggressively probing sensitive PHP info files and configuration files (.env), with all accessed paths flagged by WAF, triggering critical IP block burst and LFI deny rules, and showing bot impersonation. This indicates persistent malicious reconnaissance and exploitation attempts. | 2025-12-26 21:13:20 | 100.0% | Critical |
| 45.86.202.87 | IP | akamai.darcherif.fr | Aggressively probing sensitive PHP info files and configuration files (.env.example), with almost all accessed paths flagged by WAF, triggering a critical IP block burst deny rule, and showing bot impersonation. This indicates persistent malicious reconnaissance and exploitation attempts, consistent with other malicious IPs from the same ASN (AS206092). | 2025-12-26 21:13:20 | 100.0% | Critical |
| 20.37.218.115 | IP | akamai.darcherif.fr | All requests (100%) from this IP were flagged by WAF, accessed suspicious PHP and admin files, and triggered a critical 'IPBLOCK' deny rule. Its associated ASN (AS8075) is already blocklisted for persistent malicious activity, with multiple other IPs from this ASN also blocklisted for identical behavior. | 2025-12-26 17:13:04 | 100.0% | Critical |
| 141.98.11.23 | IP | www.darcherif.fr | IP is performing WordPress brute-force attempts targeting 'wp-login.php' and triggered a WAF alert (3900998). This IP's ASN (AS209605) is already blocklisted for similar critical malicious activity, with other IPs from this ASN also blocklisted for identical behavior. | 2025-12-26 16:02:56 | 100.0% | Critical |
| 216.73.216.215 | IP | www.darcherif.fr | High percentage of detected threat requests (66.67%), triggered WAF alert '3991023', accessed highly obfuscated and suspicious paths, and belongs to ASN AS16509 which is already blocklisted for persistent malicious activity. | 2025-12-26 12:22:46 | 100.0% | Critical |
| 136.117.243.55 | IP | akamai.darcherif.fr | IP performing extensive WordPress enumeration and bot impersonation, triggered a critical WAF deny rule (IPBLOCK-BURST4-318403), and belongs to ASN AS396982, which is blocklisted for highly malicious activity, consistent with other blocklisted IPs from this ASN. | 2025-12-26 10:22:40 | 100.0% | Critical |
| 205.169.39.7 | IP | www.darcherif.fr | Accessed a highly obfuscated and suspicious path, consistent with other blocklisted IPs (205.169.39.14, 205.169.39.58) from the same ASN (AS3356) that were blocked for identical malicious probing and attempted exploitation. | 2025-12-26 09:12:31 | 100.0% | Critical |
| 99.79.31.5 | IP | akamai.darcherif.fr | All requests (100%) from this IP were flagged as threats, all accessed paths were flagged by WAF, and a critical 'IPBLOCK' deny rule was triggered. Its associated ASN (AS16509) is already blocklisted for persistent malicious activity, with multiple other IPs from this ASN also blocklisted for identical behavior. | 2025-12-26 09:02:26 | 100.0% | Critical |
| 152.42.219.118 | IP | akamai.darcherif.fr | IP is performing extensive WordPress enumeration and bot impersonation, triggered a critical WAF deny rule (IPBLOCK-BURST4-318403), and belongs to ASN AS14061, which is blocklisted for highly malicious activity. | 2025-12-26 03:22:08 | 100.0% | Critical |
| 45.135.232.178 | IP | www.darcherif.fr | IP is performing WordPress enumeration and brute-force attacks, targeting 'xmlrpc.php' and 'wp-login.php'. All accessed paths were flagged by WAF, and critical WAF deny rules 'IPBLOCK-PENALTY-BOX' and 'POLICY-ANOMALY' were triggered. This behavior is identical to another blocklisted IP (45.135.232.10) from the same ASN. | 2025-12-26 01:11:58 | 100.0% | Critical |
| 54.245.191.67 | IP | www.darcherif.fr | All requests from this IP were flagged as threats and by WAF, targeting WordPress enumeration paths, and triggering a reputation-based deny rule. Its associated ASN (AS16509) is already blocklisted for persistent malicious activity, with many other IPs from this ASN blocklisted for identical behavior. | 2025-12-26 00:51:56 | 100.0% | Critical |
| 45.156.129.102 | IP | akamai.darcherif.fr | All accessed paths were flagged by WAF, and multiple security alerts including 'BOT-BROWSER-IMPERSONATOR' were triggered, indicating persistent automated malicious probing and reconnaissance attempts. | 2025-12-25 22:31:50 | 98.0% | Critical |
| 78.142.18.43 | IP | www.darcherif.fr | High percentage of detected threat requests (66.67%) specifically targeting 'wp-login.php' and triggering a security alert (3900998) indicative of brute-force attempts. This behavior is consistent with other blocklisted IPs from the same ASN (AS213438) exhibiting identical malicious activity. | 2025-12-25 20:51:40 | 100.0% | Critical |
| 217.113.194.247 | IP | www.darcherif.fr | All requests from this IP were detected as threats and flagged by WAF, triggering a security alert, indicating persistent malicious probing or automated attacks. | 2025-12-25 12:51:13 | 100.0% | Critical |
| 161.97.92.68 | IP | www.darcherif.fr | This IP targeted sensitive configuration files (.env), triggered critical WAF deny rules including LFI-ANOMALY and a reputation-based block (REP_1654536), and showed a very high rate of detected threat requests, consistent with already blocklisted malicious entities. | 2025-12-25 09:31:03 | 100.0% | Critical |
| 13.229.87.61 | IP | akamai.darcherif.fr | All requests (100%) from this IP were flagged as threats, all accessed paths were flagged by WAF, and a critical 'IPBLOCK' deny rule was triggered. Its associated ASN (AS16509) is already blocklisted for persistent malicious activity, with multiple other IPs from this ASN also blocklisted for identical behavior. | 2025-12-25 09:11:00 | 100.0% | Critical |
| 195.178.110.156 | IP | akamai.darcherif.fr | All requests from this IP targeted sensitive configuration files and triggered multiple critical WAF deny rules, including LFI-ANOMALY, IPBLOCK, and reputation-based blocking. The associated ASN (AS48090) is already blocklisted for identical malicious activity. | 2025-12-24 21:00:20 | 100.0% | Critical |
| AS51396 | ASN | akamai.darcherif.fr | All requests from this ASN targeted highly sensitive files and known exploit paths (.env, .git/config, server.js), triggered multiple critical WAF deny rules including LFI-ANOMALY and IPBLOCK-BURST4, and showed bot impersonation, indicating severe malicious activity. | 2025-12-24 18:20:08 | 100.0% | Critical |
| 45.153.34.212 | IP | akamai.darcherif.fr | All requests from this IP were flagged by WAF, targeting sensitive configuration files and known exploit paths (.git/config, .env, wp-config.php), and triggered multiple critical WAF deny rules including LFI-ANOMALY and IPBLOCK-BURST4, along with bot impersonation. | 2025-12-24 18:00:07 | 100.0% | Critical |
| 136.107.98.35 | IP | akamai.darcherif.fr | Extensive WordPress enumeration and bot impersonation attempts detected, triggering a critical 'IPBLOCK-BURST4' deny rule. Associated ASN AS396982 is already blocklisted for identical malicious activity from multiple other IPs. | 2025-12-24 15:09:55 | 100.0% | Critical |
| 13.212.151.30 | IP | akamai.darcherif.fr | All requests (100%) from this IP were flagged as threats and triggered a critical 'IPBLOCK' WAF deny rule. Its associated ASN (AS16509) is already blocklisted for persistent malicious activity, with multiple other IPs from this ASN also blocklisted for identical behavior. | 2025-12-24 10:49:34 | 100.0% | Critical |
| 13.218.151.84 | IP | akamai.darcherif.fr | All requests (100%) from this IP were flagged as threats, all accessed paths were flagged by WAF, and a critical 'IPBLOCK' deny rule was triggered, indicating severe automated malicious activity. | 2025-12-24 04:59:12 | 100.0% | Critical |
| 202.8.42.45 | IP | www.darcherif.fr | Extremely high percentage of detected threat requests (82.35%) and all accessed paths were flagged by WAF, triggering security alert '3991008', indicating persistent malicious probing or automated attacks. | 2025-12-24 02:59:05 | 95.0% | Critical |
| 3%7eb88045f633bfc7f7 | TLS | www.darcherif.fr | Very high percentage (94.4%) of requests associated with this TLS fingerprint were detected as threats and flagged by WAF, triggering alert '3991006'. It also accessed a highly obfuscated path, indicating malicious probing or exploit attempts. | 2025-12-23 14:48:23 | 100.0% | Critical |
| 40.77.167.27 | IP | www.darcherif.fr | All requests (100%) from this IP were flagged by WAF and triggered security alert '3991006'. The associated ASN (AS8075) is already blocklisted for persistent malicious activity. | 2025-12-23 14:48:22 | 100.0% | Critical |
| 52.167.144.218 | IP | www.darcherif.fr | High percentage (88.8%) of requests from this IP were flagged by WAF and triggered security alert '3991006'. It also accessed a highly obfuscated path, strongly indicating malicious probing. The associated ASN (AS8075) is already blocklisted for persistent malicious activity. | 2025-12-23 14:48:22 | 100.0% | Critical |
| 130.33.54.201 | IP | akamai.darcherif.fr | All requests (100%) from this IP were flagged by WAF, accessed suspicious PHP files and admin paths, and triggered a critical 'IPBLOCK' deny rule. Its associated ASN (AS8075) is already blocklisted for persistent malicious activity, with multiple other IPs from this ASN also blocklisted for identical behavior. | 2025-12-23 13:18:15 | 100.0% | Critical |
| 34.58.41.77 | IP | akamai.darcherif.fr | IP is performing extensive WordPress enumeration, bot impersonation, and triggered a critical WAF deny rule (IPBLOCK-BURST4-318403) due to a burst of malicious activity. Its associated ASN (AS396982) is already blocklisted for identical malicious behavior from multiple other IPs. | 2025-12-23 08:28:02 | 100.0% | Critical |
| 205.169.39.58 | IP | www.darcherif.fr | Accessed a highly obfuscated and suspicious path (-mN-Pzl2I/...), strongly indicating malicious probing or attempted exploitation, despite no direct WAF flags yet. | 2025-12-23 06:57:58 | 95.0% | Critical |
| 205.169.39.14 | IP | www.darcherif.fr | Accessed a highly obfuscated and suspicious path (-mN-Pzl2I/...), strongly indicating malicious probing or attempted exploitation, despite no direct WAF flags yet. | 2025-12-23 06:57:58 | 95.0% | Critical |
| 2a07:e05:3:35::1 | IP | akamai.darcherif.fr | All requests (100%) from this IP were flagged by WAF, triggering multiple security alerts including 'BOT-BROWSER-IMPERSONATOR', and demonstrating malicious probing on the same paths as a previously blocklisted IP (2a07:e05:3:1b::1) from the same ASN (AS400587). | 2025-12-22 21:57:26 | 100.0% | Critical |
| 3.9.114.107 | IP | akamai.darcherif.fr | All requests (100%) from this IP were flagged as threats and triggered a critical 'IPBLOCK' WAF deny rule. Its associated ASN (AS16509) is already blocklisted for persistent malicious activity, with multiple other IPs from this ASN also blocklisted for identical behavior. | 2025-12-22 19:07:15 | 100.0% | Critical |
| 66.249.66.201 | IP | www.darcherif.fr | All requests (100%) from this IP were detected as threats, flagged by WAF, and triggered security alert 3991006, consistent with the blocklisted ASN AS15169 for similar malicious activity. | 2025-12-22 16:47:09 | 100.0% | Critical |
| 66.249.66.33 | IP | www.darcherif.fr | All requests (100%) from this IP were detected as threats, flagged by WAF, and triggered security alert 3991006, consistent with the blocklisted ASN AS15169 for similar malicious activity. | 2025-12-22 16:47:09 | 100.0% | Critical |
| 77.90.185.12 | IP | www.darcherif.fr | IP from blocklisted ASN AS215476, with a high percentage (85.7%) of threat requests targeting 'wp-login.php' and triggering a brute-force alert, consistent with other blocklisted IPs from this ASN exhibiting identical malicious activity. | 2025-12-22 15:07:01 | 100.0% | Critical |
| 13.229.89.63 | IP | akamai.darcherif.fr | All requests (100%) from this IP were flagged as threats and triggered a critical 'IPBLOCK' WAF deny rule. Its associated ASN (AS16509) is already blocklisted for persistent malicious activity, with multiple other IPs from this ASN also blocklisted for identical behavior. | 2025-12-22 10:46:49 | 100.0% | Critical |
| 157.230.46.137 | IP | akamai.darcherif.fr | IP is performing WordPress enumeration and bot impersonation, has an extremely high number of detected threat requests, and belongs to ASN AS14061, which is blocklisted for highly malicious activity. | 2025-12-22 10:26:48 | 100.0% | Critical |
| 114.119.151.146 | IP | www.darcherif.fr | All requests (100%) from this IP were detected as threats and flagged by WAF, triggering security alert '3991006', consistent with blocklisted ASN AS136907 for similar malicious activity. | 2025-12-22 09:26:42 | 100.0% | Critical |
| 213.35.96.205 | IP | akamai.darcherif.fr | All requests from this IP targeted sensitive WordPress admin/login paths, were flagged by WAF, triggered multiple security alerts including 'BOT-BROWSER-IMPERSONATOR', and show identical malicious patterns to a previously blocklisted IP from the same ASN and region (213.35.103.66). | 2025-12-22 08:46:41 | 100.0% | Critical |
| 138.197.152.229 | IP | www.darcherif.fr | All requests from this IP were flagged by WAF, triggered critical LFI-ANOMALY and reputation-based deny rules, and its associated ASN AS14061 is already blocklisted for highly malicious activity. | 2025-12-22 08:06:40 | 100.0% | Critical |
| 3%7e2d3399e1bbf557f5 | TLS | www.darcherif.fr | All requests associated with this TLS fingerprint were flagged by WAF, triggered critical LFI-ANOMALY and reputation-based deny rules, and accessed highly suspicious paths indicative of web shell or exploitation attempts. | 2025-12-22 08:06:40 | 100.0% | Critical |