Investigation Workspace

Entity: 45.153.34.212 (Ip)

Entity Details
Type
Ip
ASN
AS51396 - Pfcloud UG
Threat Intelligence
All requests from this IP were flagged by WAF, targeting sensitive configuration files and known exploit paths (.git/config, .env, wp-config.php), and triggered multiple critical WAF deny rules including LFI-ANOMALY and IPBLOCK-BURST4, along with bot impersonation.
Linked Entities
TLS Fingerprints (1)
Hostnames Targeted
Hostname Request Count
akamai.darcherif.fr 133
Paths Targeted (with Hostname Counts)
Path Distinct Hostnames
db.php 1
.gitconfig 1
.env.bak 1
.env.js 1
.env 1
app.js 1
info.php 1
index.php 1
.git/config 1
wp-config.php 1
test.php 1
application.yml 1
settings.php 1
settings.py 1
server_info.php 1
web.config 1
config.php 1
server.js 1
composer.json 1
database.php 1
.env-config.js 1
appsettings.json 1
config.json 1
phpinfo.php 1
functions.php 1
phpinfo/info.php 1
.aws/credentials 1
pinfo.php 1
_sec/cp_challenge/challenge 1
php_info.php 1
config/application.yml 1
docker-compose.yml 1
portal/phpinfo.php 1
configuration.php 1
config/parameters.yml 1
app/config/parameters.yml 1
config.js 1
🚫

Block

All requests from this IP were flagged by WAF, targeting sensitive configuration files and known exploit paths (.git/config, .env, wp-config.php), and triggered multiple critical WAF deny rules including LFI-ANOMALY and IPBLOCK-BURST4, along with bot impersonation.

2025-12-24 18:00:07