DigitalOcean Referral Badge
cloud1
cloud2
cloud3
cloud4
cloud5
cloud6
← Back

ASN REPORT — AS16116 · Pelephone Communications Ltd.

First sighted: Oct. 23, 2023, 3 a.m. · Last sighted: Jan. 11, 2026, 1:59 a.m.

Risk
1 (low)
Total hits
1164
Total errors
38
Observed IPs
162
Top country
N/A
Top city
N/A

Risk

Model: v1 Computed: 2026-01-18 11:54:54
Risk score
1
Low
Risk gradient
Key drivers are enriched against the published annotator catalog when available; otherwise sensible defaults are used.
Key drivers
Automated client behavior
Traffic patterns strongly suggest automation rather than a human-operated browser.
bot
Hits 8
Points 3.80
Scan velocity
High request rate and broad endpoint coverage suggest scanning or automated enumeration.
scan_velocity
Hits 4
Points 2.52
HTTP method anomaly
Unusual or unexpected HTTP methods observed for the target endpoints.
method
Hits 6
Points 2.45
Request size anomaly
Requests are unusually large or shaped in a way that suggests abuse or automation.
request_size
Hits 16
Points 2.34
User-Agent anomaly
User-Agent signals look missing, inconsistent, or indicative of non-browser tooling.
ua
Hits 24
Points 1.92
Protocol anomaly
Request structure or protocol-level signals deviate from typical browser HTTP traffic.
proto
Hits 3
Points 1.85

Traffic

Rollup

Daily activity (hits per day) and basic HTTP rollup counters for this ASN.

Loading activity…
Daily activity (hits per day). Total in window: .
Traffic rollup
HTTP status classes, URL diversity, and totals.
2xx
1040
3xx
25
4xx
29
5xx
9
Unique URLs
306
Total hits
1164
First seen
Oct. 23, 2023, 3 a.m.
Last seen
Jan. 11, 2026, 1:59 a.m.

Annotators (All-time)

Heatmap of annotator × severity. Darker cells mean more volume in that band. Tip: switch to Weighted points to see what drives impact (not just noise).

Severity →
Low High
Traffic patterns strongly suggest automation rather than a human-operated browser.
hits 8 pts 3.80
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
10 8 1 3.80 Nov. 30, 2024, 1:34 p.m. May 30, 2025, 4:33 p.m.
bot 8
Scan velocity scan_velocity
High request rate and broad endpoint coverage suggest scanning or automated enumeration.
hits 4 pts 2.52
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
10 2 1 2.52 March 15, 2025, 5:04 p.m. March 23, 2025, 1:46 a.m.
scan_velocity 2
0 2 1 0.00 March 15, 2025, 5:04 p.m. March 23, 2025, 1:46 a.m.
scan_velocity 2
Unusual or unexpected HTTP methods observed for the target endpoints.
hits 6 pts 2.45
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
8 6 1 2.45 Oct. 7, 2024, 9:28 p.m. Oct. 7, 2024, 9:28 p.m.
method 6
Requests are unusually large or shaped in a way that suggests abuse or automation.
hits 16 pts 2.34
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
12 5 1 2.34 March 24, 2025, 8:50 p.m. March 24, 2025, 10:29 p.m.
request_size 5
0 11 1 0.00 March 24, 2025, 8:50 p.m. May 20, 2025, 2:15 p.m.
request_size 11
User-Agent signals look missing, inconsistent, or indicative of non-browser tooling.
hits 24 pts 1.92
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
6 18 1 1.30 Dec. 31, 2023, 1:20 p.m. Aug. 12, 2025, 12:03 p.m.
ua 18
8 6 1 0.62 Oct. 7, 2024, 9:28 p.m. Oct. 7, 2024, 9:28 p.m.
ua 6
Request structure or protocol-level signals deviate from typical browser HTTP traffic.
hits 3 pts 1.85
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
11 3 1 1.85 Oct. 7, 2024, 9:28 p.m. Oct. 7, 2024, 9:28 p.m.
proto 3

HTTP Status Breakdown

Response mix grouped by status class (2xx/3xx/4xx/5xx). Auto-loads a single aggregation and renders a donut.

Loading status mix…
Running one aggregation and rendering the chart.

Geolocation

Live geolocation and map tiles auto-load for this ASN snapshot (peer IPs with coordinates).

Loading map…

SUBNETS HELD BY THIS ISP

Derived from ISP snapshot peers (Option A). Grouped into IPv4 /24 and IPv6 /48 by default.
IPv4
IPv6
Limit
Loading subnets…

Interesting IPs

Top risky peers inside this ASN (latest snapshot). Sorted by risk score, then hits.

No peer rows available for this ASN snapshot.