← Back to feed

AS212552 BitCommand LLC

ASN Ended medium
Why this campaign was detected
5 IPs from the same network (BitCommand LLC, AS212552) were active during overlapping time periods. Temporal correlation across a shared autonomous system suggests infrastructure controlled by the same entity.
Primary ASN
AS212552 · BitCommand LLC
Subnet
Country
🇩🇪 DE
Cloud Provider
Member Count
5 IPs
Below average
Total Events
8067
Below average by volume
Started / Ended
2026-05-22 05:30 — ongoing
Attack Types
ssh:bruteforce
MITRE ATT&CK Techniques
Reconnaissance
Initial Access
Credential Access
Discovery
Command and Control
Member Actors
IP Address Behavior Confidence Flags Events Agents Attack Types Hostname Last Seen
156.236.31.85 credential_harvester 66% 625 3 ssh:bruteforce 2026-08-23 02:55 evidence →
103.75.199.4 credential_harvester 42% 6520 2 ssh:bruteforce 2026-09-04 20:11 evidence →
46.249.99.46 credential_harvester 41% 353 1 ssh:bruteforce 2026-06-13 21:49 evidence →
103.75.196.199 credential_harvester 33% 2203 1 ssh:bruteforce 2026-06-12 17:59 evidence →
82.115.20.179 credential_harvester 33% 1148 1 ssh:bruteforce 2026-06-17 14:00 evidence →
VPN Known VPN or proxy provider
DROP ASN on Spamhaus DROP list
Nx OSINT Corroborated by N external threat feeds
{# Cloudflare Web Analytics — cookieless, public pages only. The context processor withholds the token from authenticated requests. #}