Investigation Workspace

Entity: AS42821 (Asn)

Entity Details
Type
Asn
ASN
AS42821 - K&K Kommunikationssysteme GmbH
Threat Intelligence
ASN linked to IP 213.209.159.151, which targeted highly sensitive files, was fully flagged by WAF, and triggered critical IPBLOCK-BURST4 deny rules. Blocking the entire ASN is necessary to mitigate persistent threats from this network.
Linked Entities
TLS Fingerprints (1)
Hostnames Targeted
Hostname Request Count
akamai.darcherif.fr 192
Paths Targeted (with Hostname Counts)
Path Distinct Hostnames
settings.gradle 1
js/mpulse.js 1
infos.php 1
latest/user-data 1
.well-known/ 1
.env.resend 1
.env.development 1
.env.sentry 1
.ssh/config 1
.ssh/id_dsa 1
.bash_profile 1
Dockerfile 1
.env.example 1
.htpasswd 1
.aws/credentials 1
phpinfo.php4 1
.ssh/known_hosts 1
phpinfos.php 1
pinfo.php 1
.terraform/ 1
.env.backup 1
.env.sample 1
.env.stripe 1
.env.openai 1
.env.heroku 1
yarn.lock 1
php-info.php 1
php_info.php 1
docker-compose.*.yml 1
install/index.php 1
config/broadcasting.php 1
config/cli_bootstrap.php 1
config/bootstrap.php 1
config/brevo.json 1
config/autoload/global.php 1
api/v1/namespaces 1
helpers/utility.js 1
.env.aws_credentials 1
root/.aws/credentials 1
%7e/.aws/credentials 1
config/config.json 1
config/app_local.php 1
docker-compose.yml 1
latest/dynamic/instance-identity/document 1
config/application.config.php 1
config/database.config.php 1
var/www/html/postmark_config.php 1
dashboard/phpinfo.php 1
application/config/profiler.php 1
config/autoload/local.php 1
🚫

Block

ASN linked to IP 213.209.159.151, which targeted highly sensitive files, was fully flagged by WAF, and triggered critical IPBLOCK-BURST4 deny rules. Blocking the entire ASN is necessary to mitigate persistent threats from this network.

2025-12-21 22:55:50