REQUEST DETAILS - COMPREHENSIVE ANALYSIS

REQUEST ID: 22371c4d-748d-4a63-be4d-ece07066b8b8

2025-11-16T12:43:48.464Z 147.185.132.73 HUMAN

BOT DETECTION RESULT

STATUS: HUMAN
CONFIDENCE: 65%
MINOR ISSUES:
  • No Accept-Language
  • No cookies
But overall appears to be a regular browser

REQUEST INFO

ID: 22371c4d-748d-4a63-be4d-ece07066b8b8
TIME: 2025-11-16T12:43:48.464Z
METHOD: undefined
URL: undefined
PATH: undefined

HEADERS (10)

accept-encoding: gzip, br
cf-connecting-ip: 147.185.132.73
cf-ipcountry: US
cf-ray: 99f71379e9167bde
cf-visitor: {"scheme":"https"}
connection: Keep-Alive
host: header-analyzer.franzai.com
user-agent: Hello from Palo Alto Networks, find out more about our scans in https://docs-cortex.paloaltonetworks.com/r/1/Cortex-Xpanse/Scanning-activity
x-forwarded-proto: https
x-real-ip: 147.185.132.73

NETWORK

IP: 147.185.132.73
TLS: unknown
PROTOCOL: unknown

LOCATION

COUNTRY: US
CITY: Moncks Corner
ASN: 396982

JAVASCRIPT DETECTION

Status: NO JS SUPPORTED
JavaScript was not executed for this request

DETECTIVE ANALYSIS

Referrer Analysis

Source: Direct Visit
Full Referrer: Direct

Bot Detection Summary

Bot Probability: 35%
Confidence: 65%

Suspicious Indicators

- No Accept-Language
- No cookies

User Agent

Hello from Palo Alto Networks, find out more about our scans in https://docs-cortex.paloaltonetworks.com/r/1/Cortex-Xpanse/Scanning-activity

Raw JSON Data

{
  "id": "22371c4d-748d-4a63-be4d-ece07066b8b8",
  "timestamp": "2025-11-16T12:43:48.464Z",
  "timestampMs": 1763297028464,
  "request": {
    "method": "GET",
    "url": "https://header-analyzer.franzai.com/.well-known/security.txt",
    "path": "/.well-known/security.txt",
    "host": "header-analyzer.franzai.com"
  },
  "headers": {
    "accept-encoding": "gzip, br",
    "cf-connecting-ip": "147.185.132.73",
    "cf-ipcountry": "US",
    "cf-ray": "99f71379e9167bde",
    "cf-visitor": "{\"scheme\":\"https\"}",
    "connection": "Keep-Alive",
    "host": "header-analyzer.franzai.com",
    "user-agent": "Hello from Palo Alto Networks, find out more about our scans in https://docs-cortex.paloaltonetworks.com/r/1/Cortex-Xpanse/Scanning-activity",
    "x-forwarded-proto": "https",
    "x-real-ip": "147.185.132.73"
  },
  "cookies": {},
  "query": {},
  "network": {
    "ip": "147.185.132.73",
    "country": "US",
    "city": "Moncks Corner",
    "asn": 396982
  },
  "geo": {
    "country": "US",
    "city": "Moncks Corner",
    "asn": 396982,
    "colo": "ATL"
  },
  "bot": {
    "isBot": false,
    "botName": null,
    "operator": null,
    "type": null,
    "confidence": 65,
    "suspiciousScore": 35,
    "probableBot": false,
    "reasons": [
      "No Accept-Language",
      "No cookies"
    ]
  },
  "cf": {
    "httpProtocol": "HTTP/1.1",
    "requestPriority": "",
    "edgeRequestKeepAliveStatus": 1,
    "requestHeaderNames": {},
    "clientTcpRtt": 10,
    "colo": "ATL",
    "asn": 396982,
    "asOrganization": "Palo Alto Networks, Inc",
    "country": "US",
    "isEUCountry": false,
    "city": "Moncks Corner",
    "continent": "NA",
    "region": "South Carolina",
    "regionCode": "SC",
    "timezone": "America/New_York",
    "longitude": "-80.01429",
    "latitude": "33.19632",
    "postalCode": "29461",
    "tlsVersion": "TLSv1.3",
    "tlsCipher": "AEAD-AES128-GCM-SHA256",
    "tlsClientRandom": "JYIMdqd0SogUIs7niRf4Ew9SqzzB4f7gL8/5Jbh2nII=",
    "tlsClientCiphersSha1": "TR/nWVyRwvW06zCmsHLGssxPcfk=",
    "tlsClientExtensionsSha1": "7gh9M0xU7JRTNsBTBvc0SaKHeKU=",
    "tlsClientExtensionsSha1Le": "2qCxaUqAy9srmxr3uziJQbkXykw=",
    "tlsExportedAuthenticator": {
      "clientHandshake": "601e1e9fdba7d2e4d4aea5c8929d06f716db2eef55834f0d2c5d5d39ff189845",
      "serverHandshake": "ef780d296d11291aecd563e298c40d1ec0a289a1a54179913739feae58a5aa97",
      "clientFinished": "424910639bbb667475a22500b41d48983b76f0e78b524a577abd183e42c6434d",
      "serverFinished": "ec224a135f01e8f0654af45dd082ce734d9812eb9fe18ffc8587d238f1198265"
    },
    "tlsClientHelloLength": "270",
    "tlsClientAuth": {
      "certPresented": "0",
      "certVerified": "NONE",
      "certRevoked": "0",
      "certIssuerDN": "",
      "certSubjectDN": "",
      "certIssuerDNRFC2253": "",
      "certSubjectDNRFC2253": "",
      "certIssuerDNLegacy": "",
      "certSubjectDNLegacy": "",
      "certSerial": "",
      "certIssuerSerial": "",
      "certSKI": "",
      "certIssuerSKI": "",
      "certFingerprintSHA1": "",
      "certFingerprintSHA256": "",
      "certNotBefore": "",
      "certNotAfter": ""
    },
    "verifiedBotCategory": ""
  },
  "jsData": null
}