DigitalOcean Referral Badge
cloud1
cloud2
cloud3
cloud4
cloud5
cloud6
← Back to IP report

Log Explorer

Fact drill-down for 213.152.176.252
Risk 7 LOW Scope All time All-time facts 108 In-scope 108 Filtered 108 Seen 2024-06-082024-06-08
Active (none) Clear
Faceted filters (facts-based) exact core + snapshot + optional start/end
Annotation facets
HTTP facets
Snapshot facets
Custom time window (optional override)
Provide start/end to scope time explicitly (overrides days). Leave blank for all-time.
Tip: keep windows tight when you need speed, but the default is fact-complete.
Click a pill to apply it as a filter.

Annotated access events

Showing page 1 / 3 — total 108 rows
#1 2024-06-08 02:43:45 event 1811194 GET http —
ann base label observed
Request event observed
referer
UA
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/config/production.json
referer
UA
summary
event observed
details
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#2 2024-06-08 02:43:45 event 1811193 GET http —
ann base label observed
Request event observed
referer
UA
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/config.json
referer
UA
summary
event observed
details
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#3 2024-06-08 02:43:45 event 1811192 GET http —
ann base label observed
Request event observed
referer
UA
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/etc/ssl/private/server.key
referer
UA
summary
event observed
details
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#4 2024-06-08 02:43:45 event 1811191 GET http —
ann base label observed
Request event observed
referer
UA
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/etc/shadow
referer
UA
summary
event observed
details
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#5 2024-06-08 02:43:45 event 1811190 GET http —
ann base label observed
Request event observed
referer
UA
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/.ssh/id_rsa
referer
UA
summary
event observed
details
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#6 2024-06-08 02:43:45 event 1811189 GET http —
ann base label observed
Request event observed
referer
UA
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/phpinfo.php
referer
UA
summary
event observed
details
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#7 2024-06-08 02:43:45 event 1811188 GET http —
ann base label observed
Request event observed
referer
UA
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/web.config
referer
UA
summary
event observed
details
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#8 2024-06-08 02:43:45 event 1811187 GET http —
ann base label observed
Request event observed
referer
UA
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/dump.sql
referer
UA
summary
event observed
details
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#9 2024-06-08 02:43:45 event 1811186 GET http —
ann base label observed
Request event observed
referer
UA
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/database.sql
referer
UA
summary
event observed
details
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#10 2024-06-08 02:43:45 event 1811185 GET 499
ann base label observed
Request event observed
referer
-
UA
Go-http-client/1.1
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/config/production.json
referer
-
UA
Go-http-client/1.1
summary
event observed
details
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#11 2024-06-08 02:43:45 event 1811184 GET 499
ann base label observed
Request event observed
referer
-
UA
Go-http-client/1.1
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/config.json
referer
-
UA
Go-http-client/1.1
summary
event observed
details
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#12 2024-06-08 02:43:45 event 1811183 GET 499
ann base label observed
Request event observed
referer
-
UA
Go-http-client/1.1
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/etc/ssl/private/server.key
referer
-
UA
Go-http-client/1.1
summary
event observed
details
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#13 2024-06-08 02:43:45 event 1811182 GET 499
ann base label observed
Request event observed
referer
-
UA
Go-http-client/1.1
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/etc/shadow
referer
-
UA
Go-http-client/1.1
summary
event observed
details
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#14 2024-06-08 02:43:45 event 1811181 GET 499
ann base label observed
Request event observed
referer
-
UA
Go-http-client/1.1
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/.ssh/id_rsa
referer
-
UA
Go-http-client/1.1
summary
event observed
details
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#15 2024-06-08 02:43:45 event 1811180 GET 499
ann base label observed
Request event observed
referer
-
UA
Go-http-client/1.1
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/phpinfo.php
referer
-
UA
Go-http-client/1.1
summary
event observed
details
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#16 2024-06-08 02:43:45 event 1811179 GET 499
ann base label observed
Request event observed
referer
-
UA
Go-http-client/1.1
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/web.config
referer
-
UA
Go-http-client/1.1
summary
event observed
details
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#17 2024-06-08 02:43:45 event 1811178 GET 499
ann base label observed
Request event observed
referer
-
UA
Go-http-client/1.1
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/dump.sql
referer
-
UA
Go-http-client/1.1
summary
event observed
details
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#18 2024-06-08 02:43:45 event 1811177 GET 499
ann base label observed
Request event observed
referer
-
UA
Go-http-client/1.1
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/database.sql
referer
-
UA
Go-http-client/1.1
summary
event observed
details
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#19 2024-06-08 02:43:45 event 1811176 GET 404 bytes 5557
ann base label observed
Request event observed
referer
-
UA
Go-http-client/1.1
Annotation facts
label
observed
rule
base_observed
conf
details
More (full fields + snapshot) expand
url
/.ssh/id_ed25519
referer
-
UA
Go-http-client/1.1
summary
event observed
details
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#20 2024-06-08 02:43:45 event 1811194 GET http —
ann ua 6 label ua
Request Missing User-Agent header
referer
UA
Annotation facts
label
ua
rule
ua:missing
conf
60.00
details
Request had no User-Agent value (missing/empty field).
More (full fields + snapshot) expand
url
/config/production.json
referer
UA
summary
Missing User-Agent header
details
Request had no User-Agent value (missing/empty field).
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#21 2024-06-08 02:43:45 event 1811193 GET http —
ann ua 6 label ua
Request Missing User-Agent header
referer
UA
Annotation facts
label
ua
rule
ua:missing
conf
60.00
details
Request had no User-Agent value (missing/empty field).
More (full fields + snapshot) expand
url
/config.json
referer
UA
summary
Missing User-Agent header
details
Request had no User-Agent value (missing/empty field).
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#22 2024-06-08 02:43:45 event 1811192 GET http —
ann ua 6 label ua
Request Missing User-Agent header
referer
UA
Annotation facts
label
ua
rule
ua:missing
conf
60.00
details
Request had no User-Agent value (missing/empty field).
More (full fields + snapshot) expand
url
/etc/ssl/private/server.key
referer
UA
summary
Missing User-Agent header
details
Request had no User-Agent value (missing/empty field).
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#23 2024-06-08 02:43:45 event 1811191 GET http —
ann ua 6 label ua
Request Missing User-Agent header
referer
UA
Annotation facts
label
ua
rule
ua:missing
conf
60.00
details
Request had no User-Agent value (missing/empty field).
More (full fields + snapshot) expand
url
/etc/shadow
referer
UA
summary
Missing User-Agent header
details
Request had no User-Agent value (missing/empty field).
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#24 2024-06-08 02:43:45 event 1811190 GET http —
ann ua 6 label ua
Request Missing User-Agent header
referer
UA
Annotation facts
label
ua
rule
ua:missing
conf
60.00
details
Request had no User-Agent value (missing/empty field).
More (full fields + snapshot) expand
url
/.ssh/id_rsa
referer
UA
summary
Missing User-Agent header
details
Request had no User-Agent value (missing/empty field).
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#25 2024-06-08 02:43:45 event 1811189 GET http —
ann ua 6 label ua
Request Missing User-Agent header
referer
UA
Annotation facts
label
ua
rule
ua:missing
conf
60.00
details
Request had no User-Agent value (missing/empty field).
More (full fields + snapshot) expand
url
/phpinfo.php
referer
UA
summary
Missing User-Agent header
details
Request had no User-Agent value (missing/empty field).
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#26 2024-06-08 02:43:45 event 1811188 GET http —
ann ua 6 label ua
Request Missing User-Agent header
referer
UA
Annotation facts
label
ua
rule
ua:missing
conf
60.00
details
Request had no User-Agent value (missing/empty field).
More (full fields + snapshot) expand
url
/web.config
referer
UA
summary
Missing User-Agent header
details
Request had no User-Agent value (missing/empty field).
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#27 2024-06-08 02:43:45 event 1811187 GET http —
ann ua 6 label ua
Request Missing User-Agent header
referer
UA
Annotation facts
label
ua
rule
ua:missing
conf
60.00
details
Request had no User-Agent value (missing/empty field).
More (full fields + snapshot) expand
url
/dump.sql
referer
UA
summary
Missing User-Agent header
details
Request had no User-Agent value (missing/empty field).
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#28 2024-06-08 02:43:45 event 1811186 GET http —
ann ua 6 label ua
Request Missing User-Agent header
referer
UA
Annotation facts
label
ua
rule
ua:missing
conf
60.00
details
Request had no User-Agent value (missing/empty field).
More (full fields + snapshot) expand
url
/database.sql
referer
UA
summary
Missing User-Agent header
details
Request had no User-Agent value (missing/empty field).
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#29 2024-06-08 02:43:45 event 1811185 GET 499
ann ua 10 label ua
Request HTTP library/automation runtime user-agent
referer
-
UA
Go-http-client/1.1
Annotation facts
label
ua
rule
ua:library_client
conf
72.00
details
UA indicates a low-level HTTP client library or automation runtime.
More (full fields + snapshot) expand
url
/config/production.json
referer
-
UA
Go-http-client/1.1
summary
HTTP library/automation runtime user-agent
details
UA indicates a low-level HTTP client library or automation runtime.
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#30 2024-06-08 02:43:45 event 1811184 GET 499
ann ua 10 label ua
Request HTTP library/automation runtime user-agent
referer
-
UA
Go-http-client/1.1
Annotation facts
label
ua
rule
ua:library_client
conf
72.00
details
UA indicates a low-level HTTP client library or automation runtime.
More (full fields + snapshot) expand
url
/config.json
referer
-
UA
Go-http-client/1.1
summary
HTTP library/automation runtime user-agent
details
UA indicates a low-level HTTP client library or automation runtime.
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#31 2024-06-08 02:43:45 event 1811183 GET 499
ann ua 10 label ua
Request HTTP library/automation runtime user-agent
referer
-
UA
Go-http-client/1.1
Annotation facts
label
ua
rule
ua:library_client
conf
72.00
details
UA indicates a low-level HTTP client library or automation runtime.
More (full fields + snapshot) expand
url
/etc/ssl/private/server.key
referer
-
UA
Go-http-client/1.1
summary
HTTP library/automation runtime user-agent
details
UA indicates a low-level HTTP client library or automation runtime.
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#32 2024-06-08 02:43:45 event 1811182 GET 499
ann ua 10 label ua
Request HTTP library/automation runtime user-agent
referer
-
UA
Go-http-client/1.1
Annotation facts
label
ua
rule
ua:library_client
conf
72.00
details
UA indicates a low-level HTTP client library or automation runtime.
More (full fields + snapshot) expand
url
/etc/shadow
referer
-
UA
Go-http-client/1.1
summary
HTTP library/automation runtime user-agent
details
UA indicates a low-level HTTP client library or automation runtime.
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#33 2024-06-08 02:43:45 event 1811181 GET 499
ann ua 10 label ua
Request HTTP library/automation runtime user-agent
referer
-
UA
Go-http-client/1.1
Annotation facts
label
ua
rule
ua:library_client
conf
72.00
details
UA indicates a low-level HTTP client library or automation runtime.
More (full fields + snapshot) expand
url
/.ssh/id_rsa
referer
-
UA
Go-http-client/1.1
summary
HTTP library/automation runtime user-agent
details
UA indicates a low-level HTTP client library or automation runtime.
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#34 2024-06-08 02:43:45 event 1811180 GET 499
ann ua 10 label ua
Request HTTP library/automation runtime user-agent
referer
-
UA
Go-http-client/1.1
Annotation facts
label
ua
rule
ua:library_client
conf
72.00
details
UA indicates a low-level HTTP client library or automation runtime.
More (full fields + snapshot) expand
url
/phpinfo.php
referer
-
UA
Go-http-client/1.1
summary
HTTP library/automation runtime user-agent
details
UA indicates a low-level HTTP client library or automation runtime.
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#35 2024-06-08 02:43:45 event 1811179 GET 499
ann ua 10 label ua
Request HTTP library/automation runtime user-agent
referer
-
UA
Go-http-client/1.1
Annotation facts
label
ua
rule
ua:library_client
conf
72.00
details
UA indicates a low-level HTTP client library or automation runtime.
More (full fields + snapshot) expand
url
/web.config
referer
-
UA
Go-http-client/1.1
summary
HTTP library/automation runtime user-agent
details
UA indicates a low-level HTTP client library or automation runtime.
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#36 2024-06-08 02:43:45 event 1811178 GET 499
ann ua 10 label ua
Request HTTP library/automation runtime user-agent
referer
-
UA
Go-http-client/1.1
Annotation facts
label
ua
rule
ua:library_client
conf
72.00
details
UA indicates a low-level HTTP client library or automation runtime.
More (full fields + snapshot) expand
url
/dump.sql
referer
-
UA
Go-http-client/1.1
summary
HTTP library/automation runtime user-agent
details
UA indicates a low-level HTTP client library or automation runtime.
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#37 2024-06-08 02:43:45 event 1811177 GET 499
ann ua 10 label ua
Request HTTP library/automation runtime user-agent
referer
-
UA
Go-http-client/1.1
Annotation facts
label
ua
rule
ua:library_client
conf
72.00
details
UA indicates a low-level HTTP client library or automation runtime.
More (full fields + snapshot) expand
url
/database.sql
referer
-
UA
Go-http-client/1.1
summary
HTTP library/automation runtime user-agent
details
UA indicates a low-level HTTP client library or automation runtime.
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#38 2024-06-08 02:43:45 event 1811176 GET 404 bytes 5557
ann ua 10 label ua
Request HTTP library/automation runtime user-agent
referer
-
UA
Go-http-client/1.1
Annotation facts
label
ua
rule
ua:library_client
conf
72.00
details
UA indicates a low-level HTTP client library or automation runtime.
More (full fields + snapshot) expand
url
/.ssh/id_ed25519
referer
-
UA
Go-http-client/1.1
summary
HTTP library/automation runtime user-agent
details
UA indicates a low-level HTTP client library or automation runtime.
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#39 2024-06-08 02:43:45 event 1811190 GET http —
ann trav 34 label trav
Request Path traversal / LFI indicator detected
referer
UA
Annotation facts
label
trav
rule
trav:sensitive_target
conf
95.00
details
Detected explicit traversal/LFI mechanics (dotdot segments, encoded traversal, local file / stream wrappers, or sensitive file targets). This annotator intentionally does not fire on mere URL depth or on traversal-ish parameter names without mechanics.
More (full fields + snapshot) expand
url
/.ssh/id_rsa
referer
UA
summary
Path traversal / LFI indicator detected
details
Detected explicit traversal/LFI mechanics (dotdot segments, encoded traversal, local file / stream wrappers, or sensitive file targets). This annotator intentionally does not fire on mere URL depth or on traversal-ish parameter names without mechanics.
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#40 2024-06-08 02:43:45 event 1811188 GET http —
ann trav 34 label trav
Request Path traversal / LFI indicator detected
referer
UA
Annotation facts
label
trav
rule
trav:sensitive_target
conf
95.00
details
Detected explicit traversal/LFI mechanics (dotdot segments, encoded traversal, local file / stream wrappers, or sensitive file targets). This annotator intentionally does not fire on mere URL depth or on traversal-ish parameter names without mechanics.
More (full fields + snapshot) expand
url
/web.config
referer
UA
summary
Path traversal / LFI indicator detected
details
Detected explicit traversal/LFI mechanics (dotdot segments, encoded traversal, local file / stream wrappers, or sensitive file targets). This annotator intentionally does not fire on mere URL depth or on traversal-ish parameter names without mechanics.
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#41 2024-06-08 02:43:45 event 1811181 GET 499
ann trav 34 label trav
Request Path traversal / LFI indicator detected
referer
-
UA
Go-http-client/1.1
Annotation facts
label
trav
rule
trav:sensitive_target
conf
95.00
details
Detected explicit traversal/LFI mechanics (dotdot segments, encoded traversal, local file / stream wrappers, or sensitive file targets). This annotator intentionally does not fire on mere URL depth or on traversal-ish parameter names without mechanics.
More (full fields + snapshot) expand
url
/.ssh/id_rsa
referer
-
UA
Go-http-client/1.1
summary
Path traversal / LFI indicator detected
details
Detected explicit traversal/LFI mechanics (dotdot segments, encoded traversal, local file / stream wrappers, or sensitive file targets). This annotator intentionally does not fire on mere URL depth or on traversal-ish parameter names without mechanics.
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#42 2024-06-08 02:43:45 event 1811179 GET 499
ann trav 34 label trav
Request Path traversal / LFI indicator detected
referer
-
UA
Go-http-client/1.1
Annotation facts
label
trav
rule
trav:sensitive_target
conf
95.00
details
Detected explicit traversal/LFI mechanics (dotdot segments, encoded traversal, local file / stream wrappers, or sensitive file targets). This annotator intentionally does not fire on mere URL depth or on traversal-ish parameter names without mechanics.
More (full fields + snapshot) expand
url
/web.config
referer
-
UA
Go-http-client/1.1
summary
Path traversal / LFI indicator detected
details
Detected explicit traversal/LFI mechanics (dotdot segments, encoded traversal, local file / stream wrappers, or sensitive file targets). This annotator intentionally does not fire on mere URL depth or on traversal-ish parameter names without mechanics.
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#43 2024-06-08 02:43:45 event 1811191 GET http —
ann sfp 44 label sensitive_file
Request Probe for OS credential/secret file
referer
UA
Annotation facts
label
sensitive_file
rule
sfp:file:os_secrets
conf
94.00
details
Request targeted OS credential/secret artifacts (e.g., /etc/passwd, shadow). Snippet='/etc/shadow'
More (full fields + snapshot) expand
url
/etc/shadow
referer
UA
summary
Probe for OS credential/secret file
details
Request targeted OS credential/secret artifacts (e.g., /etc/passwd, shadow). Snippet='/etc/shadow'
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#44 2024-06-08 02:43:45 event 1811190 GET http —
ann sfp 42 label sensitive_file
Request Probe for SSH private key file
referer
UA
Annotation facts
label
sensitive_file
rule
sfp:file:ssh_key
conf
92.00
details
Request targeted an SSH private key filename (high risk). Snippet='/.ssh/id_rsa'
More (full fields + snapshot) expand
url
/.ssh/id_rsa
referer
UA
summary
Probe for SSH private key file
details
Request targeted an SSH private key filename (high risk). Snippet='/.ssh/id_rsa'
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#45 2024-06-08 02:43:45 event 1811182 GET 499
ann sfp 44 label sensitive_file
Request Probe for OS credential/secret file
referer
-
UA
Go-http-client/1.1
Annotation facts
label
sensitive_file
rule
sfp:file:os_secrets
conf
94.00
details
Request targeted OS credential/secret artifacts (e.g., /etc/passwd, shadow). Snippet='/etc/shadow'
More (full fields + snapshot) expand
url
/etc/shadow
referer
-
UA
Go-http-client/1.1
summary
Probe for OS credential/secret file
details
Request targeted OS credential/secret artifacts (e.g., /etc/passwd, shadow). Snippet='/etc/shadow'
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#46 2024-06-08 02:43:45 event 1811181 GET 499
ann sfp 42 label sensitive_file
Request Probe for SSH private key file
referer
-
UA
Go-http-client/1.1
Annotation facts
label
sensitive_file
rule
sfp:file:ssh_key
conf
92.00
details
Request targeted an SSH private key filename (high risk). Snippet='/.ssh/id_rsa'
More (full fields + snapshot) expand
url
/.ssh/id_rsa
referer
-
UA
Go-http-client/1.1
summary
Probe for SSH private key file
details
Request targeted an SSH private key filename (high risk). Snippet='/.ssh/id_rsa'
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#47 2024-06-08 02:43:45 event 1811176 GET 404 bytes 5557
ann sfp 42 label sensitive_file
Request Probe for SSH private key file
referer
-
UA
Go-http-client/1.1
Annotation facts
label
sensitive_file
rule
sfp:file:ssh_key
conf
92.00
details
Request targeted an SSH private key filename (high risk). Snippet='/.ssh/id_ed25519'
More (full fields + snapshot) expand
url
/.ssh/id_ed25519
referer
-
UA
Go-http-client/1.1
summary
Probe for SSH private key file
details
Request targeted an SSH private key filename (high risk). Snippet='/.ssh/id_ed25519'
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#48 2024-06-08 02:43:45 event 1811176 GET 404 bytes 5557
ann scan_velocity 32 label scan_velocity
Request Scan-velocity indicator: scanv:ext_enum
referer
-
UA
Go-http-client/1.1
Annotation facts
label
scan_velocity
rule
scanv:ext_enum
conf
90.00
details
ext_hits=8; score=16; window=90s; total=24; rpm_equiv=16.0; upm_nonstatic_equiv=14.7; 404=20/24(0.83); ext_hits=8; ua_sig=1; methods=['GET']
More (full fields + snapshot) expand
url
/.ssh/id_ed25519
referer
-
UA
Go-http-client/1.1
summary
Scan-velocity indicator: scanv:ext_enum
details
ext_hits=8; score=16; window=90s; total=24; rpm_equiv=16.0; upm_nonstatic_equiv=14.7; 404=20/24(0.83); ext_hits=8; ua_sig=1; methods=['GET']
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#49 2024-06-08 02:43:45 event 1811176 GET 404 bytes 5557
ann scan_velocity 32 label scan_velocity
Request Scan-velocity indicator: scanv:404_ratio
referer
-
UA
Go-http-client/1.1
Annotation facts
label
scan_velocity
rule
scanv:404_ratio
conf
90.00
details
404=20/24(0.83); score=16; window=90s; total=24; rpm_equiv=16.0; upm_nonstatic_equiv=14.7; 404=20/24(0.83); ext_hits=8; ua_sig=1; methods=['GET']
More (full fields + snapshot) expand
url
/.ssh/id_ed25519
referer
-
UA
Go-http-client/1.1
summary
Scan-velocity indicator: scanv:404_ratio
details
404=20/24(0.83); score=16; window=90s; total=24; rpm_equiv=16.0; upm_nonstatic_equiv=14.7; 404=20/24(0.83); ext_hits=8; ua_sig=1; methods=['GET']
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.
#50 2024-06-08 02:43:45 event 1811176 GET 404 bytes 5557
ann scan_velocity 32 label scan_velocity
Request Scan-velocity indicator: scanv:ua_signature
referer
-
UA
Go-http-client/1.1
Annotation facts
label
scan_velocity
rule
scanv:ua_signature
conf
90.00
details
ua=scanner_signature; score=16; window=90s; total=24; rpm_equiv=16.0; upm_nonstatic_equiv=14.7; 404=20/24(0.83); ext_hits=8; ua_sig=1; methods=['GET']
More (full fields + snapshot) expand
url
/.ssh/id_ed25519
referer
-
UA
Go-http-client/1.1
summary
Scan-velocity indicator: scanv:ua_signature
details
ua=scanner_signature; score=16; window=90s; total=24; rpm_equiv=16.0; upm_nonstatic_equiv=14.7; 404=20/24(0.83); ext_hits=8; ua_sig=1; methods=['GET']
subnet
213.152.176.0/24
asn
49453 — Global Layer B.V.
geo
The Netherlands, North Holland, Duivendrecht
org
Global Layer B.V.