← Back to feed
AS19318 Interserver, Inc
ASN Ended mediumWhy this campaign was detected
6 IPs from the same network (Interserver, Inc, AS19318) were active during overlapping time periods. Temporal correlation across a shared autonomous system suggests infrastructure controlled by the same entity.
Primary ASN
AS19318 · Interserver, Inc
Subnet
—
Country
πΊπΈ US
Cloud Provider
—
Member Count
6 IPs
Below average
Total Events
2488
Below average by volume
Started / Ended
2026-05-22 00:20 — 2026-07-06 17:58
Attack Types
MITRE ATT&CK Techniques
Command and Control
Member Actors
| IP Address | Behavior | Confidence | Flags | Events | Agents | Attack Types | Hostname | Last Seen | |
|---|---|---|---|---|---|---|---|---|---|
| 85.239.151.41 | credential_harvester | 49% | 240 | 2 | ssh:bruteforce | β | 2026-05-30 17:52 | evidence → | |
| 74.50.87.47 | credential_harvester | 33% | 2203 | 1 | ssh:bruteforce | β | 2026-05-25 16:50 | evidence → | |
| 153.75.249.15 | web_probe | 23% | 3 | 2 | http:scan | β | 2026-05-24 23:13 | evidence → | |
| 216.158.229.220 | credential_probe | 13% | 22 | 1 | ssh:bruteforce | β | 2026-05-25 17:19 | evidence → | |
| 209.159.154.66 | credential_probe | 12% | 10 | 1 | ssh:bruteforce | β | 2026-05-25 15:38 | evidence → | |
| 74.50.95.100 | credential_probe | 12% | 10 | 1 | ssh:bruteforce | β | 2026-05-25 14:58 | evidence → |
VPN Known VPN or proxy provider
DROP ASN on Spamhaus DROP list
Nx OSINT Corroborated by N external threat feeds