DigitalOcean Referral Badge
cloud1
cloud2
cloud3
cloud4
cloud5
cloud6
← Back to IP report

Log Explorer

Fact drill-down for 149.129.246.94
Risk 4 LOW Scope All time All-time facts 67 In-scope 67 Filtered 67 Seen 2025-06-272025-07-09
Active (none) Clear
Faceted filters (facts-based) exact core + snapshot + optional start/end
Annotation facets
HTTP facets
Snapshot facets
Custom time window (optional override)
Provide start/end to scope time explicitly (overrides days). Leave blank for all-time.
Tip: keep windows tight when you need speed, but the default is fact-complete.
Click a pill to apply it as a filter.

Annotated access events

Showing page 1 / 2 — total 67 rows
#1 2025-07-09 12:33:05 event 8900338 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/.circleci/config.yml
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#2 2025-07-09 12:33:05 event 8900337 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/_ignition/health-check
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#3 2025-07-09 12:33:04 event 8900336 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/frontend/web/debug/default/view?panel=config
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#4 2025-07-09 12:33:04 event 8900335 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/web/debug/default/view?panel=config
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#5 2025-07-09 12:33:03 event 8900333 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/debug/default/view?panel=config
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#6 2025-07-09 12:33:02 event 8900332 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/config.json
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#7 2025-07-09 12:33:02 event 8900331 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/.config
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#8 2025-07-09 12:33:01 event 8900329 GET 400 bytes 666
ann sfp 24 label sensitive_file
Request Probe for Git metadata
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
sensitive_file
rule
sfp:file:git_metadata
conf
82.00
details
Request targeted Git metadata (can reveal source/config). Snippet='/.git/config'
More (full fields + snapshot) expand
url
/.git/config
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
Probe for Git metadata
details
Request targeted Git metadata (can reveal source/config). Snippet='/.git/config'
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#9 2025-07-09 12:33:01 event 8900330 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/configuration.php-dist
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#10 2025-07-09 12:33:01 event 8900329 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/.git/config
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#11 2025-07-09 12:33:00 event 8900326 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/app_dev.php/_profiler/phpinfo
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#12 2025-07-09 12:32:59 event 8900325 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/php_info.php
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#13 2025-07-09 12:32:59 event 8900324 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/infos.php
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#14 2025-07-09 12:32:58 event 8900323 GET 400 bytes 666
ann sfp 40 label sensitive_file
Request Probe for environment/secret file (.env)
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
sensitive_file
rule
sfp:file:env
conf
92.00
details
Request targeted a .env-style file (often contains secrets). Snippet='/.env.dev.local'
More (full fields + snapshot) expand
url
/.env.dev.local
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
Probe for environment/secret file (.env)
details
Request targeted a .env-style file (often contains secrets). Snippet='/.env.dev.local'
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#15 2025-07-09 12:32:58 event 8900323 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/.env.dev.local
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#16 2025-07-09 12:32:57 event 8900322 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/_profiler/phpinfo.php
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#17 2025-07-09 12:32:57 event 8900319 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/_profiler/phpinfo
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#18 2025-07-09 12:32:56 event 8900318 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/config/aws.yml
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#19 2025-07-09 12:32:55 event 8900316 GET 400 bytes 666
ann sfp 16 label sensitive_file
Request Probe for backup/editor artifact
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
sensitive_file
rule
sfp:file:backup_artifact
conf
70.00
details
Request path contains a common backup/editor artifact extension/suffix. Snippet='/.env.bak'
More (full fields + snapshot) expand
url
/.env.bak
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
Probe for backup/editor artifact
details
Request path contains a common backup/editor artifact extension/suffix. Snippet='/.env.bak'
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#20 2025-07-09 12:32:55 event 8900316 GET 400 bytes 666
ann sfp 40 label sensitive_file
Request Probe for environment/secret file (.env)
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
sensitive_file
rule
sfp:file:env
conf
92.00
details
Request targeted a .env-style file (often contains secrets). Snippet='/.env.bak'
More (full fields + snapshot) expand
url
/.env.bak
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
Probe for environment/secret file (.env)
details
Request targeted a .env-style file (often contains secrets). Snippet='/.env.bak'
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#21 2025-07-09 12:32:55 event 8900317 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/info.php
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#22 2025-07-09 12:32:55 event 8900316 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/.env.bak
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#23 2025-07-09 12:32:54 event 8900312 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/php.php
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#24 2025-07-09 12:32:53 event 8900311 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/linusadmin-phpinfo.php
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#25 2025-07-09 12:32:53 event 8900310 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/temp.php
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#26 2025-07-09 12:32:52 event 8900309 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/src/phpinfo.php
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#27 2025-07-09 12:32:52 event 8900308 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/configs/application.ini
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#28 2025-07-09 12:32:51 event 8900307 GET 400 bytes 666
ann sfp 16 label sensitive_file
Request Probe for backup/editor artifact
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
sensitive_file
rule
sfp:file:backup_artifact
conf
70.00
details
Request path contains a common backup/editor artifact extension/suffix. Snippet='/settings.php.bak'
More (full fields + snapshot) expand
url
/settings.php.bak
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
Probe for backup/editor artifact
details
Request path contains a common backup/editor artifact extension/suffix. Snippet='/settings.php.bak'
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#29 2025-07-09 12:32:51 event 8900307 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/settings.php.bak
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#30 2025-07-09 12:32:50 event 8900305 GET 400 bytes 666
ann trav 34 label trav
Request Path traversal / LFI indicator detected
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
trav
rule
trav:sensitive_target
conf
95.00
details
Detected explicit traversal/LFI mechanics (dotdot segments, encoded traversal, local file / stream wrappers, or sensitive file targets). This annotator intentionally does not fire on mere URL depth or on traversal-ish parameter names without mechanics.
More (full fields + snapshot) expand
url
/wp-config.php.bak
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
Path traversal / LFI indicator detected
details
Detected explicit traversal/LFI mechanics (dotdot segments, encoded traversal, local file / stream wrappers, or sensitive file targets). This annotator intentionally does not fire on mere URL depth or on traversal-ish parameter names without mechanics.
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#31 2025-07-09 12:32:50 event 8900305 GET 400 bytes 666
ann sfp 16 label sensitive_file
Request Probe for backup/editor artifact
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
sensitive_file
rule
sfp:file:backup_artifact
conf
70.00
details
Request path contains a common backup/editor artifact extension/suffix. Snippet='/wp-config.php.bak'
More (full fields + snapshot) expand
url
/wp-config.php.bak
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
Probe for backup/editor artifact
details
Request path contains a common backup/editor artifact extension/suffix. Snippet='/wp-config.php.bak'
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#32 2025-07-09 12:32:50 event 8900305 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/wp-config.php.bak
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#33 2025-07-09 12:32:50 event 8900304 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/s3cmd.ini
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#34 2025-07-09 12:32:49 event 8900302 GET 400 bytes 666
ann scan_velocity 22 label scan_velocity
Request Scan-velocity indicator: scanv:ext_enum
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
scan_velocity
rule
scanv:ext_enum
conf
85.00
details
ext_hits=8; score=11; window=90s; total=18; rpm_equiv=12.0; upm_nonstatic_equiv=9.3; 404=0/18(0.00); ext_hits=8; ua_sig=1; methods=['GET']
More (full fields + snapshot) expand
url
/configs/s3_config.json
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
Scan-velocity indicator: scanv:ext_enum
details
ext_hits=8; score=11; window=90s; total=18; rpm_equiv=12.0; upm_nonstatic_equiv=9.3; 404=0/18(0.00); ext_hits=8; ua_sig=1; methods=['GET']
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#35 2025-07-09 12:32:49 event 8900302 GET 400 bytes 666
ann scan_velocity 22 label scan_velocity
Request Scan-velocity indicator: scanv:ua_signature
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
scan_velocity
rule
scanv:ua_signature
conf
85.00
details
ua=scanner_signature; score=11; window=90s; total=18; rpm_equiv=12.0; upm_nonstatic_equiv=9.3; 404=0/18(0.00); ext_hits=8; ua_sig=1; methods=['GET']
More (full fields + snapshot) expand
url
/configs/s3_config.json
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
Scan-velocity indicator: scanv:ua_signature
details
ua=scanner_signature; score=11; window=90s; total=18; rpm_equiv=12.0; upm_nonstatic_equiv=9.3; 404=0/18(0.00); ext_hits=8; ua_sig=1; methods=['GET']
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#36 2025-07-09 12:32:49 event 8900302 GET 400 bytes 666
ann scan_velocity label scan_velocity
Request Scan-velocity window summary
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
scan_velocity
rule
scanv:window
conf
details
window=90s; total=18; rpm_equiv=12.0; upm_nonstatic_equiv=9.3; 404=0/18(0.00); ext_hits=8; ua_sig=1; methods=['GET']
More (full fields + snapshot) expand
url
/configs/s3_config.json
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
Scan-velocity window summary
details
window=90s; total=18; rpm_equiv=12.0; upm_nonstatic_equiv=9.3; 404=0/18(0.00); ext_hits=8; ua_sig=1; methods=['GET']
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#37 2025-07-09 12:32:49 event 8900302 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/configs/s3_config.json
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#38 2025-07-09 12:32:49 event 8900301 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/phpinfo.php
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#39 2025-07-09 12:32:48 event 8900300 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/pinfo.php
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#40 2025-07-09 12:32:47 event 8900297 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/php-info.php
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#41 2025-07-09 12:32:47 event 8900291 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/phpinfo/phpinfo.php
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#42 2025-07-09 12:32:46 event 8900289 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/tmp/phpinfo.php
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#43 2025-07-09 12:32:45 event 8900288 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/phpinfo
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#44 2025-07-09 12:32:45 event 8900287 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/frontend_dev.php/$
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#45 2025-07-09 12:32:44 event 8900286 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/.aws/credentials
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#46 2025-07-09 12:32:44 event 8900285 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/env.js
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#47 2025-07-09 12:32:43 event 8900284 GET 400 bytes 666
ann sfp 16 label sensitive_file
Request Probe for backup/editor artifact
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
sensitive_file
rule
sfp:file:backup_artifact
conf
70.00
details
Request path contains a common backup/editor artifact extension/suffix. Snippet='/.env.old'
More (full fields + snapshot) expand
url
/.env.old
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
Probe for backup/editor artifact
details
Request path contains a common backup/editor artifact extension/suffix. Snippet='/.env.old'
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#48 2025-07-09 12:32:43 event 8900284 GET 400 bytes 666
ann sfp 40 label sensitive_file
Request Probe for environment/secret file (.env)
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
sensitive_file
rule
sfp:file:env
conf
92.00
details
Request targeted a .env-style file (often contains secrets). Snippet='/.env.old'
More (full fields + snapshot) expand
url
/.env.old
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
Probe for environment/secret file (.env)
details
Request targeted a .env-style file (often contains secrets). Snippet='/.env.old'
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#49 2025-07-09 12:32:43 event 8900284 GET 400 bytes 666
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/.env.old
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
event observed
details
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org
#50 2025-07-09 12:32:42 event 8900282 GET 400 bytes 666
ann sfp 40 label sensitive_file
Request Probe for environment/secret file (.env)
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
Annotation facts
label
sensitive_file
rule
sfp:file:env
conf
92.00
details
Request targeted a .env-style file (often contains secrets). Snippet='/.env.example'
More (full fields + snapshot) expand
url
/.env.example
referer
-
UA
Mozilla/5.0 (Linux; Android 10; Pixel Build/QP1A.190711.019; wv) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/76.0.3809.132 Mobile Safari/537.36
summary
Probe for environment/secret file (.env)
details
Request targeted a .env-style file (often contains secrets). Snippet='/.env.example'
subnet
149.129.246.0/24
asn
45102 — Alibaba (US) Technology Co., Ltd.
geo
Indonesia, Jakarta, Jakarta
org