← Back to feed
Subnet 103.183.62.0/24
SUBNET Ended highWhy this campaign was detected
4 IPs from the same /24 subnet (103.183.62.0/24) were observed attacking our sensors within the same time window. All belong to Hasan Broadband Net (AS149636). Concentrated activity from adjacent IPs is a strong indicator of a single operator or coordinated botnet.
Primary ASN
AS149636 · Hasan Broadband Net
Subnet
103.183.62.0/24
Country
🇧🇩 BD
Cloud Provider
—
Member Count
4 IPs
Below average
Total Events
4369
Below average by volume
Started / Ended
2026-02-27 20:59 — ongoing
Attack Types
MITRE ATT&CK Techniques
Initial Access
Discovery
Command and Control
Member Actors
| IP Address | Behavior | Confidence | Flags | Events | Agents | Attack Types | Hostname | Last Seen | |
|---|---|---|---|---|---|---|---|---|---|
| 103.183.62.3 | credential_harvester | 67% | 2481 | 3 | ssh:bruteforce | — | 2026-08-25 15:49 | evidence → | |
| 103.183.62.2 | credential_harvester | 66% | 882 | 3 | ssh:bruteforce | — | 2026-08-25 15:32 | evidence → | |
| 103.183.62.1 | credential_harvester | 65% | 507 | 3 | ssh:bruteforce | — | 2026-08-25 15:51 | evidence → | |
| 103.183.62.0 | credential_harvester | 65% | 499 | 3 | ssh:bruteforce | — | 2026-08-25 15:40 | evidence → |
VPN Known VPN or proxy provider
DROP ASN on Spamhaus DROP list
Nx OSINT Corroborated by N external threat feeds