DigitalOcean Referral Badge
cloud1
cloud2
cloud3
cloud4
cloud5
cloud6
← Back to IP report

Log Explorer

Fact drill-down for 179.61.245.25
Risk 5 LOW Scope All time All-time facts 34 In-scope 34 Filtered 34 Seen 2024-02-072024-02-07
Active (none) Clear
Faceted filters (facts-based) exact core + snapshot + optional start/end
Annotation facets
HTTP facets
Snapshot facets
Custom time window (optional override)
Provide start/end to scope time explicitly (overrides days). Leave blank for all-time.
Tip: keep windows tight when you need speed, but the default is fact-complete.
Top annotators (facts, in-scope)
Top labels (facts, in-scope)
Click a pill to apply it as a filter.

Annotated access events

Showing page 1 / 1 — total 34 rows
#1 2024-02-07 11:26:37 event 912499 GET 404 bytes 13470
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/_info.php
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
summary
event observed
details
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#2 2024-02-07 11:26:25 event 912496 GET 200 bytes 15862
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:105.0) Gecko/20100101 Firefox/105.0
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/?phpinfo=-1
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:105.0) Gecko/20100101 Firefox/105.0
summary
event observed
details
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#3 2024-02-07 11:25:48 event 912485 GET 404 bytes 13470
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (X11; Linux x86_64; rv:106.0) Gecko/20100101 Firefox/106.0
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/app_dev.php/_profiler/phpinfo
referer
-
UA
Mozilla/5.0 (X11; Linux x86_64; rv:106.0) Gecko/20100101 Firefox/106.0
summary
event observed
details
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#4 2024-02-07 11:25:39 event 912483 POST 403 bytes 1867
ann base label observed
Request event observed
/
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36
summary
event observed
details
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#5 2024-02-07 11:25:14 event 912474 POST 410 bytes 545
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/rest/.env
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
summary
event observed
details
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#6 2024-02-07 11:25:14 event 912474 POST 410 bytes 545
ann sfp 40 label sensitive_file
Request Probe for environment/secret file (.env)
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
Annotation facts
label
sensitive_file
rule
sfp:file:env
conf
92.00
details
Request targeted a .env-style file (often contains secrets). Snippet='/rest/.env'
More (full fields + snapshot) expand
url
/rest/.env
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
summary
Probe for environment/secret file (.env)
details
Request targeted a .env-style file (often contains secrets). Snippet='/rest/.env'
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#7 2024-02-07 11:25:05 event 912470 POST 410 bytes 545
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/__tests__/test-become/.env
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
summary
event observed
details
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#8 2024-02-07 11:25:05 event 912470 POST 410 bytes 545
ann sfp 40 label sensitive_file
Request Probe for environment/secret file (.env)
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
Annotation facts
label
sensitive_file
rule
sfp:file:env
conf
92.00
details
Request targeted a .env-style file (often contains secrets). Snippet='/__tests__/test-become/.env'
More (full fields + snapshot) expand
url
/__tests__/test-become/.env
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
summary
Probe for environment/secret file (.env)
details
Request targeted a .env-style file (often contains secrets). Snippet='/__tests__/test-become/.env'
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#9 2024-02-07 11:23:38 event 912438 POST 410 bytes 143
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; rv:105.0) Gecko/20100101 Firefox/105.0
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/cp/.env
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; rv:105.0) Gecko/20100101 Firefox/105.0
summary
event observed
details
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#10 2024-02-07 11:23:38 event 912438 POST 410 bytes 143
ann sfp 40 label sensitive_file
Request Probe for environment/secret file (.env)
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; rv:105.0) Gecko/20100101 Firefox/105.0
Annotation facts
label
sensitive_file
rule
sfp:file:env
conf
92.00
details
Request targeted a .env-style file (often contains secrets). Snippet='/cp/.env'
More (full fields + snapshot) expand
url
/cp/.env
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; rv:105.0) Gecko/20100101 Firefox/105.0
summary
Probe for environment/secret file (.env)
details
Request targeted a .env-style file (often contains secrets). Snippet='/cp/.env'
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#11 2024-02-07 11:22:33 event 912413 POST 410 bytes 545
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/.env.save
referer
-
UA
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36
summary
event observed
details
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#12 2024-02-07 11:22:33 event 912413 POST 410 bytes 545
ann sfp 16 label sensitive_file
Request Probe for backup/editor artifact
referer
-
UA
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36
Annotation facts
label
sensitive_file
rule
sfp:file:backup_artifact
conf
70.00
details
Request path contains a common backup/editor artifact extension/suffix. Snippet='/.env.save'
More (full fields + snapshot) expand
url
/.env.save
referer
-
UA
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36
summary
Probe for backup/editor artifact
details
Request path contains a common backup/editor artifact extension/suffix. Snippet='/.env.save'
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#13 2024-02-07 11:22:33 event 912413 POST 410 bytes 545
ann sfp 40 label sensitive_file
Request Probe for environment/secret file (.env)
referer
-
UA
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36
Annotation facts
label
sensitive_file
rule
sfp:file:env
conf
92.00
details
Request targeted a .env-style file (often contains secrets). Snippet='/.env.save'
More (full fields + snapshot) expand
url
/.env.save
referer
-
UA
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36
summary
Probe for environment/secret file (.env)
details
Request targeted a .env-style file (often contains secrets). Snippet='/.env.save'
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#14 2024-02-07 11:21:18 event 912375 GET 301 bytes 169
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/107.0.0.0 Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/sources/.env
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/107.0.0.0 Safari/537.36
summary
event observed
details
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#15 2024-02-07 11:21:18 event 912375 GET 301 bytes 169
ann sfp 40 label sensitive_file
Request Probe for environment/secret file (.env)
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/107.0.0.0 Safari/537.36
Annotation facts
label
sensitive_file
rule
sfp:file:env
conf
92.00
details
Request targeted a .env-style file (often contains secrets). Snippet='/sources/.env'
More (full fields + snapshot) expand
url
/sources/.env
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/107.0.0.0 Safari/537.36
summary
Probe for environment/secret file (.env)
details
Request targeted a .env-style file (often contains secrets). Snippet='/sources/.env'
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#16 2024-02-07 11:21:12 event 912371 GET 301 bytes 169
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/rest/.env
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36
summary
event observed
details
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#17 2024-02-07 11:21:12 event 912371 GET 301 bytes 169
ann sfp 40 label sensitive_file
Request Probe for environment/secret file (.env)
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36
Annotation facts
label
sensitive_file
rule
sfp:file:env
conf
92.00
details
Request targeted a .env-style file (often contains secrets). Snippet='/rest/.env'
More (full fields + snapshot) expand
url
/rest/.env
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36
summary
Probe for environment/secret file (.env)
details
Request targeted a .env-style file (often contains secrets). Snippet='/rest/.env'
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#18 2024-02-07 11:21:11 event 912370 POST 301 bytes 169
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/local/.env
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
summary
event observed
details
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#19 2024-02-07 11:21:11 event 912370 POST 301 bytes 169
ann sfp 40 label sensitive_file
Request Probe for environment/secret file (.env)
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
Annotation facts
label
sensitive_file
rule
sfp:file:env
conf
92.00
details
Request targeted a .env-style file (often contains secrets). Snippet='/local/.env'
More (full fields + snapshot) expand
url
/local/.env
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
summary
Probe for environment/secret file (.env)
details
Request targeted a .env-style file (often contains secrets). Snippet='/local/.env'
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#20 2024-02-07 11:21:01 event 912362 POST 301 bytes 169
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/core/.env
referer
-
UA
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36
summary
event observed
details
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#21 2024-02-07 11:21:01 event 912361 GET 301 bytes 169
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/core/.env
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
summary
event observed
details
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#22 2024-02-07 11:21:01 event 912362 POST 301 bytes 169
ann sfp 40 label sensitive_file
Request Probe for environment/secret file (.env)
referer
-
UA
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36
Annotation facts
label
sensitive_file
rule
sfp:file:env
conf
92.00
details
Request targeted a .env-style file (often contains secrets). Snippet='/core/.env'
More (full fields + snapshot) expand
url
/core/.env
referer
-
UA
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36
summary
Probe for environment/secret file (.env)
details
Request targeted a .env-style file (often contains secrets). Snippet='/core/.env'
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#23 2024-02-07 11:21:01 event 912361 GET 301 bytes 169
ann sfp 40 label sensitive_file
Request Probe for environment/secret file (.env)
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
Annotation facts
label
sensitive_file
rule
sfp:file:env
conf
92.00
details
Request targeted a .env-style file (often contains secrets). Snippet='/core/.env'
More (full fields + snapshot) expand
url
/core/.env
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
summary
Probe for environment/secret file (.env)
details
Request targeted a .env-style file (often contains secrets). Snippet='/core/.env'
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#24 2024-02-07 11:20:41 event 912349 GET 301 bytes 169
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/script/.env
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
summary
event observed
details
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#25 2024-02-07 11:20:41 event 912349 GET 301 bytes 169
ann sfp 40 label sensitive_file
Request Probe for environment/secret file (.env)
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
Annotation facts
label
sensitive_file
rule
sfp:file:env
conf
92.00
details
Request targeted a .env-style file (often contains secrets). Snippet='/script/.env'
More (full fields + snapshot) expand
url
/script/.env
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
summary
Probe for environment/secret file (.env)
details
Request targeted a .env-style file (often contains secrets). Snippet='/script/.env'
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#26 2024-02-07 11:20:36 event 912345 GET 301 bytes 169
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/docker/.env
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36
summary
event observed
details
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#27 2024-02-07 11:20:36 event 912345 GET 301 bytes 169
ann sfp 40 label sensitive_file
Request Probe for environment/secret file (.env)
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36
Annotation facts
label
sensitive_file
rule
sfp:file:env
conf
92.00
details
Request targeted a .env-style file (often contains secrets). Snippet='/docker/.env'
More (full fields + snapshot) expand
url
/docker/.env
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/105.0.0.0 Safari/537.36
summary
Probe for environment/secret file (.env)
details
Request targeted a .env-style file (often contains secrets). Snippet='/docker/.env'
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#28 2024-02-07 11:20:18 event 912337 GET 301 bytes 169
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/apps/.env%20
referer
-
UA
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
summary
event observed
details
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#29 2024-02-07 11:20:13 event 912332 POST 301 bytes 169
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (X11; Linux x86_64; rv:105.0) Gecko/20100101 Firefox/105.0
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/api/.env
referer
-
UA
Mozilla/5.0 (X11; Linux x86_64; rv:105.0) Gecko/20100101 Firefox/105.0
summary
event observed
details
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#30 2024-02-07 11:20:13 event 912332 POST 301 bytes 169
ann sfp 40 label sensitive_file
Request Probe for environment/secret file (.env)
referer
-
UA
Mozilla/5.0 (X11; Linux x86_64; rv:105.0) Gecko/20100101 Firefox/105.0
Annotation facts
label
sensitive_file
rule
sfp:file:env
conf
92.00
details
Request targeted a .env-style file (often contains secrets). Snippet='/api/.env'
More (full fields + snapshot) expand
url
/api/.env
referer
-
UA
Mozilla/5.0 (X11; Linux x86_64; rv:105.0) Gecko/20100101 Firefox/105.0
summary
Probe for environment/secret file (.env)
details
Request targeted a .env-style file (often contains secrets). Snippet='/api/.env'
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#31 2024-02-07 11:20:10 event 912329 GET 301 bytes 169
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/107.0.0.0 Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/admin-app/.env%20
referer
-
UA
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/107.0.0.0 Safari/537.36
summary
event observed
details
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#32 2024-02-07 11:19:56 event 912319 GET 301 bytes 169
ann base label observed
Request event observed
referer
-
UA
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/.env.old
referer
-
UA
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
summary
event observed
details
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#33 2024-02-07 11:19:56 event 912319 GET 301 bytes 169
ann sfp 16 label sensitive_file
Request Probe for backup/editor artifact
referer
-
UA
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
Annotation facts
label
sensitive_file
rule
sfp:file:backup_artifact
conf
70.00
details
Request path contains a common backup/editor artifact extension/suffix. Snippet='/.env.old'
More (full fields + snapshot) expand
url
/.env.old
referer
-
UA
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
summary
Probe for backup/editor artifact
details
Request path contains a common backup/editor artifact extension/suffix. Snippet='/.env.old'
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo
#34 2024-02-07 11:19:56 event 912319 GET 301 bytes 169
ann sfp 40 label sensitive_file
Request Probe for environment/secret file (.env)
referer
-
UA
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
Annotation facts
label
sensitive_file
rule
sfp:file:env
conf
92.00
details
Request targeted a .env-style file (often contains secrets). Snippet='/.env.old'
More (full fields + snapshot) expand
url
/.env.old
referer
-
UA
Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/106.0.0.0 Safari/537.36
summary
Probe for environment/secret file (.env)
details
Request targeted a .env-style file (often contains secrets). Snippet='/.env.old'
subnet
179.61.245.0/24
asn
7203 — Leaseweb USA, Inc.
geo
United States, Texas, Houston
org
Ipxo