Investigation Workspace

Entity: AS16509 (Asn)

Entity Details
Type
Asn
ASN
AS16509 - Amazon.com, Inc.
Threat Intelligence
High ratio of detected threat requests and a critical 'IPBLOCK' WAF deny rule was triggered. This ASN is already in the blocklist for persistent malicious activity.
Linked Entities
TLS Fingerprints (32)
Hostnames Targeted
Hostname Request Count
akamai.darcherif.fr 3670
www.darcherif.fr 2212
74
Paths Targeted (with Request Counts)
Path Request Count
/ 1227
favicon.ico 386
robots.txt 385
.git/config 24
api/actions 23
.env 23
api/action 23
apps 23
_next/data 23
index.php/wp-json/oembed/1.0/embed 17
wp-content/themes/highlight/style.min.css 16
wp-content/themes/mesmerize/assets/css/theme.bundle.min.css 16
wp-includes/css/dist/block-library/style.min.css 16
index.php/2023/04/27/ddos-what-is-it-how-does-it-work-and-how-to-be-protected/ 16
index.php/2020/01/22/industry-4-0-concept-threat-landscape-and-security-challenges-of-smart-factories/ 16
wp-content/themes/mesmerize/style.min.css 16
.env.old 14
.env.backup 14
index.php/2020/01/24/industry-4-0-corrupted-smart-factories-examples/ 13
.env.local 12
index.php/2020/01/24/industry-4-0-threat-landscape/ 12
.env.production 12
admin/.env 12
app/.env 12
.env.development 12
api/.env 12
.env.bak 12
config/.env 12
.env.test 12
xmlrpc.php 12
core/.env 11
wp-content/themes/highlight/customizer/sections/content.css 11
index.php/2020/05/13/industrial-cyber-security-evf-2019-alexandre-darcherif/ 11
public/.env 11
vendor/.env 11
.env.dev 11
assets/.env 11
lib/.env 11
wp-content/plugins/mesmerize-companion/theme-data/mesmerize/assets/js/companion.bundle.min.js 10
wp-includes/js/jquery/jquery.min.js 10
wp-includes/js/masonry.min.js 10
wp-content/themes/mesmerize/assets/js/theme.bundle.min.js 10
.env.save 10
wp-includes/js/jquery/jquery-migrate.min.js 10
index.php/tag/cps/ 10
.env.swp 10
wp-content/themes/highlight/assets/js/theme-child.js 10
wp-includes/js/imagesloaded.min.js 10
.env.sample 10
.env.staging 10
🚫

Block

High ratio of detected threat requests and a critical 'IPBLOCK' WAF deny rule was triggered. This ASN is already in the blocklist for persistent malicious activity.

2025-12-16 15:59:12