← Back to feed

Subnet 45.148.10.0/24

SUBNET Active high
Why this campaign was detected
7 IPs from the same /24 subnet (45.148.10.0/24) were observed attacking our sensors within the same time window. All belong to Techoff Srv Limited (AS48090). Concentrated activity from adjacent IPs is a strong indicator of a single operator or coordinated botnet.
Primary ASN
AS48090 · Techoff Srv Limited
Subnet
45.148.10.0/24
Country
🇳🇱 NL
Cloud Provider
Member Count
7 IPs
Below average
Total Events
25147
Below average by volume
Started / Ended
2026-02-22 16:58 — ongoing
Attack Types
http:scan ssh:bruteforce
MITRE ATT&CK Techniques
Reconnaissance
Initial Access
Credential Access
Discovery
Member Actors
IP Address Behavior Confidence Flags Events Agents Attack Types Hostname Last Seen
45.148.10.240 credential_harvester 72% DROP2x OSINT 13325 3 ssh:bruteforce 2026-09-12 10:42 evidence →
45.148.10.183 credential_harvester 69% DROP2x OSINT 11385 3 ssh:bruteforce 2026-09-11 05:45 evidence →
45.148.10.238 web_probe 59% DROP1x OSINT 307 3 http:scan 2026-09-13 13:31 evidence →
45.148.10.5 web_probe 53% DROP2x OSINT 15 3 http:scan 2026-09-11 00:55 evidence →
45.148.10.247 web_probe 33% DROP1x OSINT 100 1 http:scan 2026-09-13 08:53 evidence →
45.148.10.120 web_probe 30% DROP1x OSINT 1 1 http:scan 2026-09-15 04:17 evidence →
45.148.10.166 web_probe 29% DROP1x OSINT 14 1 http:scan 2026-09-13 04:12 evidence →
VPN Known VPN or proxy provider
DROP ASN on Spamhaus DROP list
Nx OSINT Corroborated by N external threat feeds
{# Cloudflare Web Analytics — cookieless, public pages only. The context processor withholds the token from authenticated requests. #}