DigitalOcean Referral Badge
cloud1
cloud2
cloud3
cloud4
cloud5
cloud6
← Back

ORG REPORT — TELENOR-INTERNET · telenor-internet

First sighted: May 1, 2024, 3 a.m. · Last sighted: Oct. 11, 2025, 3 a.m.

Risk
70 (high)
Total hits
5423
Total errors
133
Distinct IPs
14
Distinct ASNs
1
Top country
Norway
Top city
Brattholmen
Top region
Vestland

Risk

Model: v1 Computed: 2026-01-15 08:32:00
Risk score
70
High
Risk gradient
Key drivers are enriched against the published annotator catalog when available; otherwise sensible defaults are used.
Key drivers
Automated client behavior
Traffic patterns strongly suggest automation rather than a human-operated browser.
bot
Hits 5355
Points 2677.50
Scan velocity
High request rate and broad endpoint coverage suggest scanning or automated enumeration.
scan_velocity
Hits 307
Points 307.80
Credential brute forcing
Repeated authentication attempts consistent with password guessing or credential stuffing.
cred
Hits 6
Points 19.80
Request size anomaly
Requests are unusually large or shaped in a way that suggests abuse or automation.
request_size
Hits 8
Points 0.84
User-Agent anomaly
User-Agent signals look missing, inconsistent, or indicative of non-browser tooling.
ua
Hits 3
Points 0.36

Traffic

Rollup

Daily activity (hits per day) and basic HTTP rollup counters for this organization.

Loading activity…
Daily activity (hits per day). Total in window: .
Traffic rollup
HTTP status classes, URL diversity, and totals.
2xx
3563
3xx
1718
4xx
110
5xx
23
Unique URLs
3258
Total hits
5423
First seen
May 1, 2024, 3 a.m.
Last seen
Oct. 11, 2025, 3 a.m.

Annotators (All-time)

Heatmap of annotator × severity. Darker cells mean more volume in that band. Tip: switch to Weighted points to see what drives impact (not just noise).

Severity →
Low High
Traffic patterns strongly suggest automation rather than a human-operated browser.
hits 5355 pts 2677.50
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
10 5355 1 2677.50 May 17, 2024, 5:20 p.m. Oct. 10, 2025, 4:13 p.m.
bot 5355
Scan velocity scan_velocity
High request rate and broad endpoint coverage suggest scanning or automated enumeration.
hits 307 pts 307.80
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
10 171 1 307.80 Jan. 23, 2025, 6:36 p.m. April 10, 2025, 4:47 a.m.
scan_velocity 171
0 136 1 0.00 Jan. 23, 2025, 6:36 p.m. April 10, 2025, 4:47 a.m.
scan_velocity 136
Repeated authentication attempts consistent with password guessing or credential stuffing.
hits 6 pts 19.80
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
10 2 1 11.00 May 17, 2024, 5:20 p.m. March 28, 2025, 6:41 a.m.
cred 2
8 2 1 8.80 May 17, 2024, 5:20 p.m. March 28, 2025, 6:41 a.m.
cred 2
0 2 1 0.00 May 17, 2024, 5:20 p.m. March 28, 2025, 6:41 a.m.
cred 2
Requests are unusually large or shaped in a way that suggests abuse or automation.
hits 8 pts 0.84
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
14 1 1 0.84 Aug. 17, 2025, 10:17 p.m. Aug. 17, 2025, 10:17 p.m.
request_size 1
0 7 1 0.00 April 23, 2025, 11:54 p.m. Aug. 17, 2025, 10:17 p.m.
request_size 7
User-Agent signals look missing, inconsistent, or indicative of non-browser tooling.
hits 3 pts 0.36
Breakdown by severity band (all-time). “Weighted” reflects your weight configuration.
Severity Total Labels Weighted First seen Last seen Top labels
6 3 1 0.36 Dec. 25, 2024, 10:04 p.m. Aug. 17, 2025, 10:17 p.m.
ua 3

HTTP Status Breakdown

Response mix grouped by status class (2xx/3xx/4xx/5xx). Uses totals aggregation and renders a donut.

Loading status mix…
Running one aggregation and rendering the chart.

Geolocation

Live geolocation and map tiles auto-load for this Org snapshot (peer IPs with coordinates).

Loading map…

ASNs held by this org

Derived from IP rollups (IPReportTotal). Grouped by (asn, as_org_name).
Loading…

Interesting IPs

Top risky peers inside this org (latest snapshot). Sorted by risk score, then hits.

88.90.243.142 med
63 /100
Last seen 2025-06-20 03:00
Hits
4312
Errors
46
Country
Norway
ASN
AS2119
AS Org
Telenor Norge AS
88.88.137.90 low
18 /100
Last seen 2025-01-24 02:00
Hits
987
Errors
81
Country
Norway
ASN
AS2119
AS Org
Telenor Norge AS
85.165.99.40 low
0 /100
Last seen 2025-08-18 03:00
Hits
27
Errors
1
Country
Norway
ASN
AS2119
AS Org
Telenor Norge AS
88.89.124.201 low
0 /100
Last seen 2025-01-28 02:00
Hits
20
Errors
0
Country
Norway
ASN
AS2119
AS Org
Telenor Norge AS
88.88.246.251 low
0 /100
Last seen 2025-03-09 02:00
Hits
18
Errors
0
Country
Norway
ASN
AS2119
AS Org
Telenor Norge AS
88.88.81.108 low
0 /100
Last seen 2025-04-24 03:00
Hits
16
Errors
0
Country
Norway
ASN
AS2119
AS Org
Telenor Norge AS
85.164.75.248 low
0 /100
Last seen 2024-05-02 03:00
Hits
12
Errors
1
Country
Norway
ASN
AS2119
AS Org
Telenor Norge AS
88.91.194.59 low
0 /100
Last seen 2024-05-28 03:00
Hits
10
Errors
1
Country
Norway
ASN
AS2119
AS Org
Telenor Norge AS
88.88.156.50 low
0 /100
Last seen 2024-12-08 02:00
Hits
6
Errors
1
Country
Norway
ASN
AS2119
AS Org
Telenor Norge AS
88.90.244.102 low
0 /100
Last seen 2024-05-18 03:00
Hits
5
Errors
0
Country
Norway
ASN
AS2119
AS Org
Telenor Norge AS
88.90.248.233 low
0 /100
Last seen 2024-10-10 03:00
Hits
4
Errors
1
Country
Norway
ASN
AS2119
AS Org
Telenor Norge AS
88.88.184.199 low
0 /100
Last seen 2025-01-01 02:00
Hits
3
Errors
0
Country
Norway
ASN
AS2119
AS Org
Telenor Norge AS
88.90.74.189 low
0 /100
Last seen 2024-12-26 02:00
Hits
2
Errors
1
Country
Norway
ASN
AS2119
AS Org
Telenor Norge AS
88.90.248.189 low
0 /100
Last seen 2025-10-11 03:00
Hits
1
Errors
0
Country
Norway
ASN
AS2119
AS Org
Telenor Norge AS