← Back to feed
AS16116 Pelephone Communications Ltd.
ASN Ended mediumWhy this campaign was detected
5 IPs from the same network (Pelephone Communications Ltd., AS16116) were active during overlapping time periods. Temporal correlation across a shared autonomous system suggests infrastructure controlled by the same entity.
Primary ASN
AS16116 · Pelephone Communications Ltd.
Subnet
—
Country
🇮🇱 IL
Cloud Provider
—
Member Count
5 IPs
Below average
Total Events
65
Below average by volume
Started / Ended
2026-02-26 03:35 — 2026-04-19 02:43
Attack Types
MITRE ATT&CK Techniques
Member Actors
| IP Address | Behavior | Confidence | Flags | Events | Agents | Attack Types | Hostname | Last Seen | |
|---|---|---|---|---|---|---|---|---|---|
| 37.25.36.197 | scanner | 37% | 1x OSINT | 17 | 1 | ssh:bruteforce | — | 2026-08-15 01:58 | evidence → |
| 130.185.96.113 | credential_probe | 18% | 1x OSINT | 20 | 1 | ssh:bruteforce | — | 2026-03-13 02:39 | evidence → |
| 85.159.164.28 | credential_probe | 18% | 1x OSINT | 17 | 1 | ssh:bruteforce | — | 2026-03-08 05:10 | evidence → |
| 85.159.165.216 | credential_probe | 13% | 17 | 1 | ssh:bruteforce | — | 2026-03-04 11:05 | evidence → | |
| 195.133.156.133 | credential_probe | 11% | 5 | 1 | ssh:bruteforce | — | 2026-03-08 01:09 | evidence → |
VPN Known VPN or proxy provider
DROP ASN on Spamhaus DROP list
Nx OSINT Corroborated by N external threat feeds