DigitalOcean Referral Badge
cloud1
cloud2
cloud3
cloud4
cloud5
cloud6
← Back

ORG REPORT — Comcast Cable Communications, Inc. · comcast cable communications, inc.

First sighted: July 12, 2023, 3 a.m. · Last sighted: Jan. 11, 2026, 2 a.m.

Risk
25 (low)
Total hits
12330
Total errors
1859
Distinct IPs
1498
Distinct ASNs
1
Top country
United States
Top city
Bear
Top region
Pennsylvania

Risk

Model: v1 Computed: 2026-01-15 08:32:00
Risk score
25
Low
Risk gradient
Key drivers are enriched against the published annotator catalog when available; otherwise sensible defaults are used.
Key drivers
Credential brute forcing
Repeated authentication attempts consistent with password guessing or credential stuffing.
cred
Hits 40
Points 167.20
User-Agent anomaly
User-Agent signals look missing, inconsistent, or indicative of non-browser tooling.
ua
Hits 1337
Points 164.32
Request size anomaly
Requests are unusually large or shaped in a way that suggests abuse or automation.
request_size
Hits 925
Points 142.32
Scan velocity
High request rate and broad endpoint coverage suggest scanning or automated enumeration.
scan_velocity
Hits 136
Points 122.40
Command injection attempts
Request content resembles attempts to execute OS commands via an application.
cmdi
Hits 3
Points 71.40
SQL injection attempts
Input patterns resemble attempts to manipulate SQL queries via application parameters.
sqli
Hits 2
Points 40.00
Automated client behavior
Traffic patterns strongly suggest automation rather than a human-operated browser.
bot
Hits 38
Points 19.00
Protocol anomaly
Request structure or protocol-level signals deviate from typical browser HTTP traffic.
proto
Hits 2
Points 1.76
HTTP method anomaly
Unusual or unexpected HTTP methods observed for the target endpoints.
method
Hits 1
Points 0.60

Traffic

Rollup

Daily activity (hits per day) and basic HTTP rollup counters for this organization.

Loading activity…
Daily activity (hits per day). Total in window: .
Traffic rollup
HTTP status classes, URL diversity, and totals.
2xx
7246
3xx
177
4xx
553
5xx
1306
Unique URLs
6239
Total hits
12330
First seen
July 12, 2023, 3 a.m.
Last seen
Jan. 11, 2026, 2 a.m.

Annotators (All-time)

Heatmap of annotator × severity. Darker cells mean more volume in that band. Tip: switch to Weighted points to see what drives impact (not just noise).

Severity →
Low High
Repeated authentication attempts consistent with password guessing or credential stuffing.
hits 40 pts 167.20
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
10 16 1 88.00 Sept. 16, 2024, 5:17 a.m. Dec. 12, 2024, 8:57 p.m.
cred 16
12 12 1 79.20 Sept. 16, 2024, 5:17 a.m. Dec. 12, 2024, 8:57 p.m.
cred 12
0 12 1 0.00 Sept. 16, 2024, 5:17 a.m. Dec. 12, 2024, 8:57 p.m.
cred 12
User-Agent signals look missing, inconsistent, or indicative of non-browser tooling.
hits 1337 pts 164.32
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
6 1307 1 156.84 July 12, 2023, 11:41 a.m. Oct. 7, 2025, 2:20 a.m.
ua 1307
14 18 1 5.04 Jan. 7, 2025, 7:12 p.m. May 12, 2025, 7:56 p.m.
ua 18
12 6 1 1.44 Nov. 20, 2024, 11:07 a.m. Jan. 28, 2025, 3:09 p.m.
ua 6
8 5 1 0.80 Jan. 21, 2025, 11:02 p.m. May 6, 2025, 11 a.m.
ua 5
10 1 1 0.20 Sept. 20, 2025, 9:08 p.m. Sept. 20, 2025, 9:08 p.m.
ua 1
Requests are unusually large or shaped in a way that suggests abuse or automation.
hits 925 pts 142.32
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
12 186 1 133.92 Dec. 23, 2024, 7:46 a.m. Sept. 12, 2025, 8:10 a.m.
request_size 186
14 10 1 8.40 July 13, 2025, 2:37 p.m. Dec. 17, 2025, 4:30 p.m.
request_size 10
0 729 1 0.00 Dec. 25, 2024, 11:10 p.m. Dec. 17, 2025, 4:30 p.m.
request_size 729
Scan velocity scan_velocity
High request rate and broad endpoint coverage suggest scanning or automated enumeration.
hits 136 pts 122.40
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
10 68 1 122.40 Sept. 25, 2024, midnight Sept. 12, 2025, 8:10 a.m.
scan_velocity 68
0 68 1 0.00 Sept. 25, 2024, midnight Sept. 12, 2025, 8:10 a.m.
scan_velocity 68
Request content resembles attempts to execute OS commands via an application.
hits 3 pts 71.40
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
28 3 1 71.40 July 12, 2023, 11:41 a.m. Dec. 6, 2023, 9:54 p.m.
cmdi 3
Input patterns resemble attempts to manipulate SQL queries via application parameters.
hits 2 pts 40.00
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
20 2 1 40.00 Aug. 26, 2025, 12:11 p.m. Aug. 26, 2025, 12:11 p.m.
sqli 2
Traffic patterns strongly suggest automation rather than a human-operated browser.
hits 38 pts 19.00
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
10 38 1 19.00 Dec. 17, 2023, 11:51 a.m. Sept. 12, 2025, 8:09 a.m.
bot 38
Request structure or protocol-level signals deviate from typical browser HTTP traffic.
hits 2 pts 1.76
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
11 2 1 1.76 Jan. 21, 2025, 12:25 a.m. Dec. 14, 2025, 8:34 p.m.
proto 2
Unusual or unexpected HTTP methods observed for the target endpoints.
hits 1 pts 0.60
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
10 1 1 0.60 May 6, 2025, 11 a.m. May 6, 2025, 11 a.m.
method 1

HTTP Status Breakdown

Response mix grouped by status class (2xx/3xx/4xx/5xx). Uses totals aggregation and renders a donut.

Loading status mix…
Running one aggregation and rendering the chart.

Geolocation

Live geolocation and map tiles auto-load for this Org snapshot (peer IPs with coordinates).

Loading map…

ASNs held by this org

Derived from IP rollups (IPReportTotal). Grouped by (asn, as_org_name).
Loading…

Interesting IPs

Top risky peers inside this org (latest snapshot). Sorted by risk score, then hits.

No matching IP rows available for this org.