Investigation Workspace

Entity: 149.57.191.20 (Ip)

Entity Details
Type
Ip
Threat Intelligence
Accessed a WAF-flagged obfuscated path ("akam/13/pixel_2eb3b1d8") and triggered security alert '3910006', a pattern consistent with malicious probing observed from other blocklisted IPs.
Linked Entities
TLS Fingerprints (1)
Hostnames Targeted
Hostname Request Count
www.darcherif.fr 25
2
Paths Targeted (with Request Counts)
Path Request Count
74UNan/Dgdn/2cCO/YC0U/w00tGm/z39kDm9N7rfOtQOY/aS12AxAB/Rk9OKhcp/URMB 3
akam/13/pixel_2eb3b1d8 2
/ 1
akam/13/2eb3b1d8 1
wp-content/themes/mesmerize/assets/fonts/fontawesome-webfont.woff2 1
wp-content/themes/highlight/assets/images/hero-3.jpg 1
wp-includes/js/masonry.min.js 1
wp-content/themes/highlight/assets/images/hero-1.jpg 1
wp-content/plugins/mesmerize-companion/theme-data/mesmerize/assets/js/companion.bundle.min.js 1
wp-content/themes/mesmerize/assets/css/theme.bundle.min.css 1
wp-content/themes/mesmerize/assets/js/theme.bundle.min.js 1
wp-content/themes/highlight/customizer/sections/content.css 1
wp-includes/js/jquery/jquery.min.js 1
wp-includes/css/dist/block-library/style.min.css 1
favicon.ico 1
wp-content/themes/mesmerize/style.min.css 1
wp-content/themes/highlight/style.min.css 1
wp-includes/js/jquery/jquery-migrate.min.js 1
wp-content/themes/highlight/assets/js/theme-child.js 1
wp-includes/js/imagesloaded.min.js 1
wp-content/uploads/2020/05/ConferenceIndiaCropped.png 1
wp-content/themes/highlight/assets/images/hero-2.jpg 1
wp-content/plugins/mesmerize-companion/theme-data/mesmerize/assets/css/companion.bundle.min.css 1
wp-content/uploads/2020/01/Czech-Republic-operation-Temelin-Nuclear-Power-Plant-2003-1024x669.jpg 1
ℹ️

Watchlist

Low ratio of detected threat requests (1/27) and a single WAF alert (3910006) on an 'akamai pixel' path, insufficient evidence for immediate blocking but warrants monitoring for escalating malicious behavior.

2026-02-04 05:58:33
ℹ️

Watchlist

Entity continues to show low-level suspicious activity, including an obfuscated path flagged by WAF and a security alert, but lacks enough critical evidence for immediate blocking. Further monitoring is required.

2026-02-04 06:38:31
ℹ️

Ignore

This IP has shown no traffic or detected threat requests since being added to the watchlist, indicating no current malicious activity.

2026-02-04 06:48:32
ℹ️

Watchlist

Low percentage of detected threat requests (3.7%), a single obfuscated path flagged by WAF, and one security alert (3910006) indicate suspicious but not critically malicious activity, warranting continued monitoring.

2026-02-04 06:58:28
🚫

Block

Accessed a WAF-flagged obfuscated path ("akam/13/pixel_2eb3b1d8") and triggered security alert '3910006', a pattern consistent with malicious probing observed from other blocklisted IPs.

2026-02-04 09:28:40