Investigation Workspace

Entity: 68.183.9.16 (Ip)

Entity Details
Type
Ip
ASN
AS14061 - DigitalOcean, LLC
Threat Intelligence
Aggressive reconnaissance for sensitive files and API documentation, all requests flagged by WAF, multiple critical security alerts (including bot impersonation), and triggered critical deny rules (LFI-ANOMALY, IPBLOCK-PENALTY-BOX). Associated ASN AS14061 is blocklisted for identical malicious activity.
Linked Entities
Hostnames Targeted
Hostname Request Count
akamai.darcherif.fr 60
Paths Targeted (with Request Counts)
Path Request Count
/ 7
v2/_catalog 2
ecp/Current/exporttool/microsoft.exchange.ediscovery.exporttool.application 2
_sec/cp_challenge/challenge 2
_all_dbs 2
.env 2
info.php 2
server 2
about 2
.vscode/sftp.json 2
server-status 2
.git/config 2
actuator/env 2
debug/default/view 2
telescope/requests 2
.DS_Store 2
login.action 2
@vite/env 2
config.json 2
v3/api-docs 1
swagger-ui.html 1
v2/api-docs 1
api/graphql 1
api/swagger.json 1
swagger.json 1
graphql/api 1
swagger/swagger-ui.html 1
swagger/v1/swagger.json 1
api 1
api-docs/swagger.json 1
swagger/index.html 1
graphql 1
webjars/swagger-ui/index.html 1
s/131313e2338313e26313e223/_/;/META-INF/maven/com.atlassian.jira/jira-webapp-dist/pom.properties 1
api/gql 1
s/2393e2430323e26313e223/_/;/META-INF/maven/com.atlassian.jira/jira-webapp-dist/pom.properties 1
🚫

Block

Aggressive reconnaissance for sensitive files and API documentation, all requests flagged by WAF, multiple critical security alerts (including bot impersonation), and triggered critical deny rules (LFI-ANOMALY, IPBLOCK-PENALTY-BOX). Associated ASN AS14061 is blocklisted for identical malicious activity.

2026-01-14 09:49:05