Investigation Workspace

Entity: AS48090 (Asn)

Entity Details
Type
Asn
ASN
AS48090 - TECHOFF SRV LIMITED
Threat Intelligence
Associated with IP 45.148.10.246, which demonstrated extensive probing of sensitive files, had all requests flagged by WAF, and triggered critical deny rules including LFI-ANOMALY and IPBLOCK.
Linked Entities
TLS Fingerprints (8)
Hostnames Targeted
Hostname Request Count
akamai.darcherif.fr 254
www.darcherif.fr 8
akamai.darcherif.fr:80 2
akamai.darcherif.fr:443 1
Paths Targeted (with Hostname Counts)
Path Distinct Hostnames
.git/config 2
config/smtp.php.bak 1
cdnjs.cloudflare.com/ajax/libs/jquery/3.4.1/jquery.min.js 1
config/mail.php.save/ 1
app/Config/stripe.php 1
config/.env.production 1
config/mail.bak.php 1
./.env.local.backup 1
.env.local.backup 1
config/email.php.swp 1
.env.test.backup/ 1
config/application.rb 1
./config/email.php.back 1
./config/.env.staging 1
app/Config/email.php/ 1
./config/email.php.save 1
./config/email.php.bak 1
config/secrets.yml 1
./config/.env.production 1
config/.env.local/ 1
./.env.production.backup 1
mail/contact_me.js 1
config/email.php.save/ 1
config/mail.php.save 1
config/mail.php.bak 1
config/mail.php%7e 1
./config/email.php%7e 1
./app/Config/stripe.php 1
config/mail.php.swp/ 1
config/.env.staging 1
config/email.php%7e 1
config/mail.old.php 1
config/stripe.yml/ 1
config/.env.production/ 1
_profiler/phpinfo 1
config/mail_backup.php/ 1
config/email.bak.php/ 1
config/email.php.swp/ 1
./.env.test.backup 1
config/mail.bak.php/ 1
config/stripe.yml 1
cdnjs.cloudflare.com/ajax/libs/font-awesome/5.13.0/js/all.min.js 1
app/Config/email.php 1
./config/.env.dev 1
config/email.php.old 1
./config/.env.local 1
app/.env.production/ 1
config/initializers/smtp.rb 1
%22assets/mail/jqBootstrapValidation.js%22 1
.env.local.backup/ 1
🚫

Block

Associated with IP 45.148.10.246, which demonstrated extensive probing of sensitive files, had all requests flagged by WAF, and triggered critical deny rules including LFI-ANOMALY and IPBLOCK.

2025-12-04 12:34:38