Investigation Workspace

Entity: 195.178.110.132 (Ip)

Entity Details
Type
Ip
ASN
AS48090 - TECHOFF SRV LIMITED
Threat Intelligence
Actively probing for sensitive configuration files, detected as a bot impersonator, triggered critical LFI and IPBLOCK burst WAF deny rules, and its ASN (AS48090) is already blocklisted for identical malicious activity from other IPs.
Linked Entities
TLS Fingerprints (2)
Hostnames Targeted
Hostname Request Count
akamai.darcherif.fr 28
Paths Targeted (with Hostname Counts)
Path Distinct Hostnames
.env.bak 1
.env 1
.git/config 1
wp-config.php 1
config.js 1
aws.config.js 1
.env.save 1
config.php 1
config.php.bak 1
js/scripts.js 1
aws-config.js 1
admin/.env 1
js/mpulse.js 1
backend/.env 1
%22js/scripts.js%22 1
%22js/mpulse.js%22 1
wp-config.php.old 1
%22assets/mail/contact_me.js%22 1
_sec/cp_challenge/challenge 1
assets/mail/contact_me.js 1
%22assets/mail/jqBootstrapValidation.js%22 1
assets/42253d6047f4935a64a6053620f9ffbce001188a776 1
assets/mail/jqBootstrapValidation.js 1
🚫

Block

Actively probing for sensitive configuration files, detected as a bot impersonator, triggered critical LFI and IPBLOCK burst WAF deny rules, and its ASN (AS48090) is already blocklisted for identical malicious activity from other IPs.

2026-01-08 15:40:46