Investigation Workspace

Entity: 3%7e19BE7A78618186D4 (Tls)

Entity Details
Type
Tls
Linked Entities
IPs Linked to TLS Fingerprint (5)
Hostnames Targeted
Hostname Request Count
www.darcherif.fr 59
10
Paths Targeted (with Request Counts)
Path Request Count
wp-includes/js/masonry.min.js 5
wp-includes/js/imagesloaded.min.js 5
wp-content/themes/mesmerize/assets/js/theme.bundle.min.js 5
wp-content/plugins/mesmerize-companion/theme-data/mesmerize/assets/js/companion.bundle.min.js 5
wp-content/plugins/mesmerize-companion/theme-data/mesmerize/assets/css/companion.bundle.min.css 4
wp-content/themes/mesmerize/assets/fonts/fontawesome-webfont.woff2 4
favicon.ico 4
wp-includes/js/wp-emoji-release.min.js 4
wp-content/themes/highlight/assets/images/hero-1.jpg 4
wp-content/themes/highlight/assets/js/theme-child.js 4
4_d-_V/lDS/yWK/1LYv0Q/t1u9kwm9YLmEwGVOwu/OUxrAQ/RkkB/cTdvciI 3
STUEpuZc35TSs06jnrWUe6p2gFk/wEp7p4Q3aXQYbJLO/WQBtVw/Hn/AZCEEpZSYB 3
Hgg4DyI0P/YJEzSQq/pQ/5LbiQDYzDEQzL6/XUd3R1VALg/SVw0eUQ1/NSkB 3
7lMhgz/Ux1o6o/Vv80VnR/LEl1c/hicuwmOL7uEQGD/Q3xo/Czk/oElpsWg 3
ANgslx2BX/yGvp/VGtDQ/OrYzQDuziV7LkL/dnwZFnQB/YAV/zFggaNTI 2
akam/13/608e181f 1
akam/13/pixel_35b9b831 1
akam/13/pixel_147a9d43 1
akam/13/pixel_1554f24e 1
akam/13/pixel_608e181f 1
akam/13/pixel_608de2b3 1
akam/13/35b9b831 1
akam/13/1554f24e 1
akam/13/608de2b3 1
akam/13/147a9d43 1
wp-content/themes/highlight/assets/images/hero-2.jpg 1
ℹ️

Watchlist

Low percentage of detected threat requests (6.25%) and only triggered a WAF alert (3910006) on a potentially benign tracking pixel, correlated with IP 91.98.176.9.

2026-01-25 11:08:54
ℹ️

Watchlist

Continues to show minor suspicious activity (single detected threat, WAF flagged path, security alert) but not enough evidence to warrant a block at this time.

2026-01-26 07:50:36
ℹ️

Ignore

TLS fingerprint has shown no further malicious activity since being added to the watchlist.

2026-01-26 08:00:37
ℹ️

Watchlist

TLS fingerprint showed low ratio of detected threat requests (6.25%), but accessed a WAF-flagged obfuscated path ('akam/13/pixel_1554f24e') and triggered a security alert ('3910006'), indicating potential probing.

2026-01-26 08:10:31
🚫

Block

Detected threat requests, WAF flagged suspicious path, and triggered security alert indicate active malicious activity, correlated with another malicious entity.

2026-01-27 09:02:27