Investigation Workspace

Entity: 3%7e2c022104e7e56fbe (Tls)

Entity Details
Type
Tls
Linked Entities
IPs Linked to TLS Fingerprint (50)
Hostnames Targeted
Hostname Request Count
www.darcherif.fr 1210
akamai.darcherif.fr 49
Paths Targeted (with Hostname Counts)
Path Distinct Hostnames
robots.txt 2
wp-admin/ 2
wp-content/ 2
wp-login.php 2
.env 2
wp-includes/ 2
wp-includes/html-api/ 1
services/.env.dist 1
services/.env.staging 1
wp-admin/install.php 1
wp-includes/js/crop/ 1
development/.env.dist 1
functions/api/.env 1
laravel/.env.local 1
develop/.env.local 1
storage/.env.local 1
testing/.env.local 1
developer/config.env 1
admin/.env.staging 1
wp-content/mu-plugins/ 1
.docker/laravel/app/.env 1
marketing/.env.dev 1
cron/.env.production 1
developer/.env.bak 1
default/config.env 1
wp-includes/pomo/ 1
shop/.env.staging 1
config/secrets/.env 1
subscriptions/.env 1
current/.env.dist 1
function/.env.dev 1
client/.env.local 1
.github/workflows/.env 1
web/.env.production 1
service/.env.staging 1
staging/config.env 1
mailer/config.env 1
administration/.env.dist 1
default/.env.local 1
marketing/.env.bak 1
public_html/.env.dist 1
wp-includes/sitemaps/ 1
app/.env.production 1
stg/.env.production 1
website/.env.production 1
backend/.env.production 1
deployment/config.env 1
beta/.env.staging 1
services/config.env 1
.env.staging.local 1
🚫

Block

TLS fingerprint detected probing 'wp-login.php', triggering a WAF alert (3900998) indicative of brute-force or credential stuffing attempts, consistent with previously blocked malicious activity.

2025-12-19 11:42:24