Investigation Workspace

Entity: 45.148.10.246 (Ip)

Entity Details
Type
Ip
ASN
AS48090 - TECHOFF SRV LIMITED
Threat Intelligence
Extensive probing of sensitive configuration files and backups (e.g., .env, config/mail), all requests (100%) flagged by WAF, and multiple critical deny rules triggered including LFI-ANOMALY and IPBLOCK.
Linked Entities
TLS Fingerprints (1)
Hostnames Targeted
Hostname Request Count
akamai.darcherif.fr 5438
www.darcherif.fr 1
Paths Targeted (with Request Counts)
Path Request Count
.git/config 10
app/Config/stripe.php 8
settings.py 8
config/stripe.php 8
app/Config/email.php 8
config/mail.php 6
config/settings.py 6
config.toml 6
config/services.php 6
wp-content/plugins/wp-mailgun/wp-mailgun.php 4
application/config/email.php 4
aws-ses.php 4
config/email.js 4
./config/stripe.php 4
config/email.php 4
app/Config/Email.php 4
config/stripe.local.php 4
ses.php 4
postmark_config.php 4
mailgun_config.php 4
app/Config/stripe.php/ 4
application/config/stripe.php 4
./settings.py 4
config/stripe.test.php 4
config/stripe.production.php 4
config/config.py 4
ses_config.php 4
config/.env 4
.env 4
mailjet.php 4
sparkpost.php 4
config/stripe.staging.php 4
postmark.php 4
sendgrid.php 4
app/config.py 4
.env.development 4
config/stripe.php/ 4
config.py 4
app/Config/Stripe.php 4
config/mail_config.php 4
config/secrets.yml 4
mailgun.php 4
config/stripe.config.js 4
settings.py/ 4
application/config/smtp.php 4
core/settings.py 4
mailjet_config.php 4
.env.production 4
config/email_config.php 4
sendgrid_config.php 4
🚫

Block

Extensive probing of sensitive configuration files and backups (e.g., .env, config/mail), all requests (100%) flagged by WAF, and multiple critical deny rules triggered including LFI-ANOMALY and IPBLOCK.

2025-12-04 12:34:38