REQUEST DETAILS - COMPREHENSIVE ANALYSIS
REQUEST ID: e18dbeac-6e5b-4842-b7ab-a8b463da0836
2025-12-28T01:37:23.328Z
205.210.31.96
HUMAN
BOT DETECTION RESULT
STATUS: HUMAN
CONFIDENCE: 65%
MINOR ISSUES:
- No Accept-Language
- No cookies
But overall appears to be a regular browser
REQUEST INFO
ID: e18dbeac-6e5b-4842-b7ab-a8b463da0836
TIME: 2025-12-28T01:37:23.328Z
METHOD: undefined
URL: undefined
PATH: undefined
HEADERS (10)
accept-encoding: gzip, br
cf-connecting-ip: 205.210.31.96
cf-ipcountry: US
cf-ray: 9b4d55085dfe2222
cf-visitor: {"scheme":"https"}
connection: Keep-Alive
host: header-analyzer.franzai.com
user-agent: Hello from Palo Alto Networks, find out more about our scans in https://docs-cortex.paloaltonetworks.com/r/1/Cortex-Xpanse/Scanning-activity
x-forwarded-proto: https
x-real-ip: 205.210.31.96
NETWORK
IP: 205.210.31.96
TLS: unknown
PROTOCOL: unknown
LOCATION
COUNTRY: US
CITY: Council Bluffs
ASN: 396982
JAVASCRIPT DETECTION
Status: NO JS SUPPORTED
JavaScript was not executed for this request
- Likely a bot, crawler, or API client
- JavaScript disabled in browser
- Server-side request (curl, wget, etc)
DETECTIVE ANALYSIS
Referrer Analysis
Source: Direct Visit
Full Referrer: Direct
Bot Detection Summary
Bot Probability: 35%
Confidence: 65%
Suspicious Indicators
- No Accept-Language
- No cookies
User Agent
Hello from Palo Alto Networks, find out more about our scans in https://docs-cortex.paloaltonetworks.com/r/1/Cortex-Xpanse/Scanning-activity
Raw JSON Data
{
"id": "e18dbeac-6e5b-4842-b7ab-a8b463da0836",
"timestamp": "2025-12-28T01:37:23.328Z",
"timestampMs": 1766885843328,
"request": {
"method": "GET",
"url": "https://header-analyzer.franzai.com/.well-known/security.txt",
"path": "/.well-known/security.txt",
"host": "header-analyzer.franzai.com"
},
"headers": {
"accept-encoding": "gzip, br",
"cf-connecting-ip": "205.210.31.96",
"cf-ipcountry": "US",
"cf-ray": "9b4d55085dfe2222",
"cf-visitor": "{\"scheme\":\"https\"}",
"connection": "Keep-Alive",
"host": "header-analyzer.franzai.com",
"user-agent": "Hello from Palo Alto Networks, find out more about our scans in https://docs-cortex.paloaltonetworks.com/r/1/Cortex-Xpanse/Scanning-activity",
"x-forwarded-proto": "https",
"x-real-ip": "205.210.31.96"
},
"cookies": {},
"query": {},
"network": {
"ip": "205.210.31.96",
"country": "US",
"city": "Council Bluffs",
"asn": 396982
},
"geo": {
"country": "US",
"city": "Council Bluffs",
"asn": 396982,
"colo": "ORD"
},
"bot": {
"isBot": false,
"botName": null,
"operator": null,
"type": null,
"confidence": 65,
"suspiciousScore": 35,
"probableBot": false,
"reasons": [
"No Accept-Language",
"No cookies"
]
},
"cf": {
"httpProtocol": "HTTP/1.1",
"requestPriority": "",
"edgeRequestKeepAliveStatus": 1,
"requestHeaderNames": {},
"clientTcpRtt": 10,
"colo": "ORD",
"asn": 396982,
"asOrganization": "Palo Alto Networks, Inc",
"country": "US",
"isEUCountry": false,
"city": "Council Bluffs",
"continent": "NA",
"region": "Iowa",
"regionCode": "IA",
"timezone": "America/Chicago",
"longitude": "-95.86083",
"latitude": "41.26194",
"postalCode": "51502",
"metroCode": "652",
"tlsVersion": "TLSv1.3",
"tlsCipher": "AEAD-AES128-GCM-SHA256",
"tlsClientRandom": "xEpTyeV294PgE9zvitHeSVfDepNqOyP3vGJ60CXYmJA=",
"tlsClientCiphersSha1": "cS2l8j12GPBEw+RsoEjwsaNKpx8=",
"tlsClientExtensionsSha1": "aWVCohOefx9sYmnLzIkGYW/Cb9M=",
"tlsClientExtensionsSha1Le": "G5t+uwtBmY9hJOvSdB/+WgzrvyI=",
"tlsExportedAuthenticator": {
"clientHandshake": "4442ee63bf3b3523259c008797d2696cce618df9b6bd2c0ccb3b9bff934dc46e",
"serverHandshake": "b2064e89982352f169b9a9a642f9f8b9a97bd8e0e9cf82817694893f67d46a5a",
"clientFinished": "973a704fcbb7707d9087e92c0102f80e210d6d62798be887e663ec49f115926d",
"serverFinished": "c85817577909fb8de7b5b3bebf99b35efd147fe7629d4cf6361a4375519d7838"
},
"tlsClientHelloLength": "264",
"tlsClientAuth": {
"certPresented": "0",
"certVerified": "NONE",
"certRevoked": "0",
"certIssuerDN": "",
"certSubjectDN": "",
"certIssuerDNRFC2253": "",
"certSubjectDNRFC2253": "",
"certIssuerDNLegacy": "",
"certSubjectDNLegacy": "",
"certSerial": "",
"certIssuerSerial": "",
"certSKI": "",
"certIssuerSKI": "",
"certFingerprintSHA1": "",
"certFingerprintSHA256": "",
"certNotBefore": "",
"certNotAfter": ""
},
"verifiedBotCategory": ""
},
"jsData": null
}