Investigation Workspace

Entity: 213.209.159.151 (Ip)

Entity Details
Type
Ip
ASN
AS42821 - K&K Kommunikationssysteme GmbH
Threat Intelligence
All requests targeted highly sensitive configuration and credential files, were flagged by WAF, and triggered critical IPBLOCK-BURST4 deny rules.
Linked Entities
TLS Fingerprints (1)
Hostnames Targeted
Hostname Request Count
akamai.darcherif.fr 192
Paths Targeted (with Hostname Counts)
Path Distinct Hostnames
settings.gradle 1
js/mpulse.js 1
infos.php 1
latest/user-data 1
.well-known/ 1
.env.resend 1
.env.development 1
.env.sentry 1
.ssh/config 1
.ssh/id_dsa 1
.bash_profile 1
Dockerfile 1
.env.example 1
.htpasswd 1
.aws/credentials 1
phpinfo.php4 1
.ssh/known_hosts 1
phpinfos.php 1
pinfo.php 1
.terraform/ 1
.env.backup 1
.env.sample 1
.env.stripe 1
.env.openai 1
.env.heroku 1
yarn.lock 1
php-info.php 1
php_info.php 1
docker-compose.*.yml 1
install/index.php 1
config/broadcasting.php 1
config/cli_bootstrap.php 1
config/bootstrap.php 1
config/brevo.json 1
config/autoload/global.php 1
api/v1/namespaces 1
helpers/utility.js 1
.env.aws_credentials 1
root/.aws/credentials 1
%7e/.aws/credentials 1
config/config.json 1
config/app_local.php 1
docker-compose.yml 1
latest/dynamic/instance-identity/document 1
config/application.config.php 1
config/database.config.php 1
var/www/html/postmark_config.php 1
dashboard/phpinfo.php 1
application/config/profiler.php 1
config/autoload/local.php 1
🚫

Block

All requests targeted highly sensitive configuration and credential files, were flagged by WAF, and triggered critical IPBLOCK-BURST4 deny rules.

2025-12-21 22:55:50