DigitalOcean Referral Badge
cloud1
cloud2
cloud3
cloud4
cloud5
cloud6
← Back

ORG REPORT — China Internet Network Information Center · china internet network information center

First sighted: Feb. 14, 2025, 2 a.m. · Last sighted: Feb. 24, 2026, 2 a.m.

Risk
5 (low)
Total hits
102
Total errors
4
Distinct IPs
12
Distinct ASNs
1
Top country
China
Top city
Haidian
Top region
Beijing

Risk

Model: v1 Computed: 2026-03-03 20:12:57
Risk score
5
Low
Risk gradient
Key drivers are enriched against the published annotator catalog when available; otherwise sensible defaults are used.
Key drivers
Path traversal attempts
Request paths/parameters resemble attempts to access files outside intended directories.
trav
Hits 13
Points 93.60
Sensitive file probing
Requests target commonly sensitive files, configs, backups, or administrative resources.
sfp
Hits 5
Points 37.40
Request size anomaly
Requests are unusually large or shaped in a way that suggests abuse or automation.
request_size
Hits 19
Points 5.04
User-Agent anomaly
User-Agent signals look missing, inconsistent, or indicative of non-browser tooling.
ua
Hits 20
Points 2.60
Protocol anomaly
Request structure or protocol-level signals deviate from typical browser HTTP traffic.
proto
Hits 3
Points 2.16

Traffic

Rollup

Daily activity (hits per day) and basic HTTP rollup counters for this organization.

Loading activity…
Daily activity (hits per day). Total in window: .
Traffic rollup
HTTP status classes, URL diversity, and totals.
2xx
79
3xx
4
4xx
4
5xx
0
Unique URLs
0
Total hits
102
First seen
Feb. 14, 2025, 2 a.m.
Last seen
Feb. 24, 2026, 2 a.m.

Annotators (All-time)

Heatmap of annotator × severity. Darker cells mean more volume in that band. Tip: switch to Weighted points to see what drives impact (not just noise).

Severity →
Low High
Request paths/parameters resemble attempts to access files outside intended directories.
hits 13 pts 93.60
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
28 5 1 36.40 Oct. 7, 2025, 8:51 p.m. Feb. 23, 2026, 8:29 p.m.
trav 5
26 5 1 33.80 Oct. 7, 2025, 8:51 p.m. Feb. 23, 2026, 8:29 p.m.
trav 5
30 3 1 23.40 Oct. 7, 2025, 8:51 p.m. Oct. 7, 2025, 8:51 p.m.
trav 3
Requests target commonly sensitive files, configs, backups, or administrative resources.
hits 5 pts 37.40
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
34 5 1 37.40 Oct. 7, 2025, 8:51 p.m. Feb. 23, 2026, 8:29 p.m.
sensitive_file 5
Requests are unusually large or shaped in a way that suggests abuse or automation.
hits 19 pts 5.04
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
12 7 1 5.04 Feb. 14, 2025, 8:20 p.m. May 27, 2025, 3:30 a.m.
request_size 7
0 12 1 0.00 Feb. 14, 2025, 8:20 p.m. June 20, 2025, 9:55 a.m.
request_size 12
User-Agent signals look missing, inconsistent, or indicative of non-browser tooling.
hits 20 pts 2.60
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
6 15 1 1.80 Feb. 14, 2025, 8:20 p.m. Oct. 7, 2025, 8:51 p.m.
ua 15
8 5 1 0.80 Oct. 7, 2025, 8:51 p.m. Feb. 23, 2026, 8:29 p.m.
ua 5
Request structure or protocol-level signals deviate from typical browser HTTP traffic.
hits 3 pts 2.16
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
12 2 1 1.92 Oct. 7, 2025, 8:51 p.m. Oct. 7, 2025, 8:51 p.m.
proto 2
3 1 1 0.24 Oct. 7, 2025, 8:51 p.m. Oct. 7, 2025, 8:51 p.m.
proto 1

HTTP Status Breakdown

Response mix grouped by status class (2xx/3xx/4xx/5xx). Uses totals aggregation and renders a donut.

Loading status mix…
Running one aggregation and rendering the chart.

Geolocation

Live geolocation and map tiles auto-load for this Org snapshot (peer IPs with coordinates).

Loading map…

ASNs held by this org

Derived from IP rollups (IPReportTotal). Grouped by (asn, as_org_name).
Loading…

Interesting IPs

Top risky peers inside this org (latest snapshot). Sorted by risk score, then hits.

101.126.139.40 low
4 /100
Last seen 2025-10-08 03:00
Hits
5
Errors
3
Country
China
ASN
AS137718
AS Org
Beijing Volcano Engine Technology Co., Ltd.
115.190.63.82 low
1 /100
Last seen 2026-02-24 02:00
Hits
1
Errors
1
Country
China
ASN
AS137718
AS Org
Beijing Volcano Engine Technology Co., Ltd.
101.126.60.8 low
0 /100
Last seen 2025-06-21 03:00
Hits
22
Errors
0
Country
China
ASN
AS137718
AS Org
Beijing Volcano Engine Technology Co., Ltd.
101.126.60.79 low
0 /100
Last seen 2025-05-28 03:00
Hits
18
Errors
0
Country
China
ASN
AS137718
AS Org
Beijing Volcano Engine Technology Co., Ltd.
101.126.59.179 low
0 /100
Last seen 2025-05-17 03:00
Hits
12
Errors
0
Country
China
ASN
AS137718
AS Org
Beijing Volcano Engine Technology Co., Ltd.
101.126.59.29 low
0 /100
Last seen 2025-02-15 02:00
Hits
11
Errors
0
Country
China
ASN
AS137718
AS Org
Beijing Volcano Engine Technology Co., Ltd.
101.126.60.28 low
0 /100
Last seen 2025-05-20 03:00
Hits
8
Errors
0
Country
China
ASN
AS137718
AS Org
Beijing Volcano Engine Technology Co., Ltd.
101.126.59.28 low
0 /100
Last seen 2025-05-20 03:00
Hits
7
Errors
0
Country
China
ASN
AS137718
AS Org
Beijing Volcano Engine Technology Co., Ltd.
101.126.59.27 low
0 /100
Last seen 2025-02-15 02:00
Hits
6
Errors
0
Country
China
ASN
AS137718
AS Org
Beijing Volcano Engine Technology Co., Ltd.
115.190.150.50 low
0 /100
Last seen 2026-01-21 02:00
Hits
4
Errors
0
Country
China
ASN
AS137718
AS Org
Beijing Volcano Engine Technology Co., Ltd.
101.126.59.25 low
0 /100
Last seen 2025-02-15 02:00
Hits
4
Errors
0
Country
China
ASN
AS137718
AS Org
Beijing Volcano Engine Technology Co., Ltd.
101.126.59.26 low
0 /100
Last seen 2025-02-15 02:00
Hits
4
Errors
0
Country
China
ASN
AS137718
AS Org
Beijing Volcano Engine Technology Co., Ltd.