DigitalOcean Referral Badge
cloud1
cloud2
cloud3
cloud4
cloud5
cloud6
← Back

ASN REPORT — AS12874 · Fastweb SpA

First sighted: July 3, 2023, 3 a.m. · Last sighted: Jan. 2, 2026, 1:59 a.m.

Risk
4 (low)
Total hits
1854
Total errors
208
Observed IPs
141
Top country
N/A
Top city
N/A

Risk

Model: v1 Computed: 2026-01-18 11:55:16
Risk score
4
Low
Risk gradient
Key drivers are enriched against the published annotator catalog when available; otherwise sensible defaults are used.
Key drivers
Command injection attempts
Request content resembles attempts to execute OS commands via an application.
cmdi
Hits 4
Points 83.78
User-Agent anomaly
User-Agent signals look missing, inconsistent, or indicative of non-browser tooling.
ua
Hits 164
Points 13.03
Request size anomaly
Requests are unusually large or shaped in a way that suggests abuse or automation.
request_size
Hits 93
Points 5.74
Scan velocity
High request rate and broad endpoint coverage suggest scanning or automated enumeration.
scan_velocity
Hits 6
Points 3.78
Protocol anomaly
Request structure or protocol-level signals deviate from typical browser HTTP traffic.
proto
Hits 3
Points 1.51

Traffic

Rollup

Daily activity (hits per day) and basic HTTP rollup counters for this ASN.

Loading activity…
Daily activity (hits per day). Total in window: .
Traffic rollup
HTTP status classes, URL diversity, and totals.
2xx
937
3xx
87
4xx
52
5xx
156
Unique URLs
709
Total hits
1854
First seen
July 3, 2023, 3 a.m.
Last seen
Jan. 2, 2026, 1:59 a.m.

Annotators (All-time)

Heatmap of annotator × severity. Darker cells mean more volume in that band. Tip: switch to Weighted points to see what drives impact (not just noise).

Severity →
Low High
Request content resembles attempts to execute OS commands via an application.
hits 4 pts 83.78
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
28 4 1 83.78 July 3, 2023, 3:55 p.m. Feb. 15, 2024, 11:14 a.m.
cmdi 4
User-Agent signals look missing, inconsistent, or indicative of non-browser tooling.
hits 164 pts 13.03
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
6 137 1 9.86 July 3, 2023, 3:55 p.m. Oct. 11, 2025, 5:02 p.m.
ua 137
8 24 1 2.50 July 26, 2023, 1:07 p.m. Sept. 10, 2025, 1:42 p.m.
ua 24
14 3 1 0.67 Jan. 28, 2025, 2:47 a.m. Feb. 8, 2025, 12:41 a.m.
ua 3
Requests are unusually large or shaped in a way that suggests abuse or automation.
hits 93 pts 5.74
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
12 11 1 5.15 Dec. 30, 2024, 10:11 a.m. March 17, 2025, 12:55 a.m.
request_size 11
14 1 1 0.59 Oct. 2, 2025, 2:21 p.m. Oct. 2, 2025, 2:21 p.m.
request_size 1
0 81 1 0.00 Dec. 25, 2024, 9:25 p.m. Oct. 2, 2025, 10:48 p.m.
request_size 81
Scan velocity scan_velocity
High request rate and broad endpoint coverage suggest scanning or automated enumeration.
hits 6 pts 3.78
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
10 3 1 3.78 Nov. 17, 2024, 5:38 p.m. May 14, 2025, 3:23 p.m.
scan_velocity 3
0 3 1 0.00 Nov. 17, 2024, 5:38 p.m. May 14, 2025, 3:23 p.m.
scan_velocity 3
Request structure or protocol-level signals deviate from typical browser HTTP traffic.
hits 3 pts 1.51
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
12 2 1 1.38 Nov. 4, 2024, 1:42 p.m. Nov. 4, 2024, 1:42 p.m.
proto 2
3 1 1 0.13 Nov. 4, 2024, 1:42 p.m. Nov. 4, 2024, 1:42 p.m.
proto 1

HTTP Status Breakdown

Response mix grouped by status class (2xx/3xx/4xx/5xx). Auto-loads a single aggregation and renders a donut.

Loading status mix…
Running one aggregation and rendering the chart.

Geolocation

Live geolocation and map tiles auto-load for this ASN snapshot (peer IPs with coordinates).

Loading map…

SUBNETS HELD BY THIS ISP

Derived from ISP snapshot peers (Option A). Grouped into IPv4 /24 and IPv6 /48 by default.
IPv4
IPv6
Limit
Loading subnets…

Interesting IPs

Top risky peers inside this ASN (latest snapshot). Sorted by risk score, then hits.

No peer rows available for this ASN snapshot.