← Back to feed

AS41745 Baykov Ilya Sergeevich

ASN Active medium
Why this campaign was detected
5 IPs from the same network (Baykov Ilya Sergeevich, AS41745) were active during overlapping time periods. Temporal correlation across a shared autonomous system suggests infrastructure controlled by the same entity.
Primary ASN
AS41745 · Baykov Ilya Sergeevich
Subnet
Country
🇩🇪 DE
Cloud Provider
Member Count
5 IPs
Below average
Total Events
2538
Below average by volume
Started / Ended
2026-02-22 22:14 — ongoing
Attack Types
ssh:bruteforce
MITRE ATT&CK Techniques
Reconnaissance
Initial Access
Credential Access
Discovery
Command and Control
Member Actors
IP Address Behavior Confidence Flags Events Agents Attack Types Hostname Last Seen
45.144.233.56 credential_harvester 70% 1x OSINT 618 3 ssh:bruteforce 2026-05-04 11:52 evidence →
83.219.249.173 credential_harvester 56% 1x OSINT 1257 2 ssh:bruteforce 2026-04-27 06:14 evidence →
138.124.30.225 opportunistic_bruter 50% 1x OSINT 45 2 ssh:bruteforce 2026-05-11 06:08 evidence →
194.190.153.103 credential_harvester 41% 333 1 ssh:bruteforce 2026-04-23 17:49 evidence →
45.89.63.39 credential_harvester 40% 313 1 ssh:bruteforce ib.systems 2026-04-23 15:49 evidence →
VPN Known VPN or proxy provider
DROP ASN on Spamhaus DROP list
Nx OSINT Corroborated by N external threat feeds