DigitalOcean Referral Badge
cloud1
cloud2
cloud3
cloud4
cloud5
cloud6
← Back

ASN REPORT — AS147049 · PacketHub S.A.

First sighted: Aug. 7, 2023, 3 a.m. · Last sighted: Jan. 10, 2026, 1:59 a.m.

Risk
10 (low)
Total hits
4376
Total errors
1287
Observed IPs
253
Top country
N/A
Top city
N/A

Risk

Model: v1 Computed: 2026-01-18 11:55:09
Risk score
10
Low
Risk gradient
Key drivers are enriched against the published annotator catalog when available; otherwise sensible defaults are used.
Key drivers
Sensitive file probing
Requests target commonly sensitive files, configs, backups, or administrative resources.
sfp
Hits 19
Points 120.74
User-Agent anomaly
User-Agent signals look missing, inconsistent, or indicative of non-browser tooling.
ua
Hits 1004
Points 74.88
Credential brute forcing
Repeated authentication attempts consistent with password guessing or credential stuffing.
cred
Hits 7
Points 21.56
Path traversal attempts
Request paths/parameters resemble attempts to access files outside intended directories.
trav
Hits 2
Points 16.80
Scan velocity
High request rate and broad endpoint coverage suggest scanning or automated enumeration.
scan_velocity
Hits 18
Points 11.34
Request size anomaly
Requests are unusually large or shaped in a way that suggests abuse or automation.
request_size
Hits 56
Points 8.89
Automated client behavior
Traffic patterns strongly suggest automation rather than a human-operated browser.
bot
Hits 3
Points 1.42

Traffic

Rollup

Daily activity (hits per day) and basic HTTP rollup counters for this ASN.

Loading activity…
Daily activity (hits per day). Total in window: .
Traffic rollup
HTTP status classes, URL diversity, and totals.
2xx
479
3xx
21
4xx
112
5xx
1175
Unique URLs
276
Total hits
4376
First seen
Aug. 7, 2023, 3 a.m.
Last seen
Jan. 10, 2026, 1:59 a.m.

Annotators (All-time)

Heatmap of annotator × severity. Darker cells mean more volume in that band. Tip: switch to Weighted points to see what drives impact (not just noise).

Severity →
Low High
Requests target commonly sensitive files, configs, backups, or administrative resources.
hits 19 pts 120.74
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
40 8 1 64.77 Aug. 7, 2023, 7:52 a.m. Jan. 25, 2025, 8:34 p.m.
sensitive_file 8
24 9 1 38.97 Aug. 7, 2023, 7:52 a.m. Aug. 12, 2025, 10 p.m.
sensitive_file 9
42 2 1 17.00 Jan. 25, 2025, 8:34 p.m. Jan. 25, 2025, 8:34 p.m.
sensitive_file 2
User-Agent signals look missing, inconsistent, or indicative of non-browser tooling.
hits 1004 pts 74.88
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
6 968 1 69.70 May 10, 2024, 12:22 a.m. July 31, 2025, 7:53 p.m.
ua 968
10 36 1 5.18 Aug. 7, 2023, 7:52 a.m. Jan. 25, 2025, 8:34 p.m.
ua 36
Repeated authentication attempts consistent with password guessing or credential stuffing.
hits 7 pts 21.56
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
10 3 1 11.66 Dec. 20, 2023, 3:12 p.m. Dec. 20, 2023, 3:12 p.m.
cred 3
12 2 1 9.90 Dec. 20, 2023, 3:12 p.m. Dec. 20, 2023, 3:12 p.m.
cred 2
0 2 1 0.00 Dec. 20, 2023, 3:12 p.m. Dec. 20, 2023, 3:12 p.m.
cred 2
Request paths/parameters resemble attempts to access files outside intended directories.
hits 2 pts 16.80
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
34 2 1 16.80 Jan. 25, 2025, 8:34 p.m. Jan. 25, 2025, 8:34 p.m.
trav 2
Scan velocity scan_velocity
High request rate and broad endpoint coverage suggest scanning or automated enumeration.
hits 18 pts 11.34
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
10 9 1 11.34 Sept. 25, 2024, 12:01 a.m. July 31, 2025, 5:27 p.m.
scan_velocity 9
0 9 1 0.00 Sept. 25, 2024, 12:01 a.m. July 31, 2025, 5:27 p.m.
scan_velocity 9
Requests are unusually large or shaped in a way that suggests abuse or automation.
hits 56 pts 8.89
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
12 19 1 8.89 Jan. 24, 2025, 8:57 a.m. Aug. 10, 2025, 8:43 a.m.
request_size 19
0 37 1 0.00 Jan. 16, 2025, 4:27 a.m. Aug. 10, 2025, 8:39 a.m.
request_size 37
Traffic patterns strongly suggest automation rather than a human-operated browser.
hits 3 pts 1.42
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
10 3 1 1.42 April 2, 2025, 4:06 p.m. April 2, 2025, 4:06 p.m.
bot 3

HTTP Status Breakdown

Response mix grouped by status class (2xx/3xx/4xx/5xx). Auto-loads a single aggregation and renders a donut.

Loading status mix…
Running one aggregation and rendering the chart.

Geolocation

Live geolocation and map tiles auto-load for this ASN snapshot (peer IPs with coordinates).

Loading map…

SUBNETS HELD BY THIS ISP

Derived from ISP snapshot peers (Option A). Grouped into IPv4 /24 and IPv6 /48 by default.
IPv4
IPv6
Limit
Loading subnets…

Interesting IPs

Top risky peers inside this ASN (latest snapshot). Sorted by risk score, then hits.

No peer rows available for this ASN snapshot.