← Back to feed

AS9299 Philippine Long Distance Telephone Company

ASN Ended medium
Why this campaign was detected
5 IPs from the same network (Philippine Long Distance Telephone Company, AS9299) were active during overlapping time periods. Temporal correlation across a shared autonomous system suggests infrastructure controlled by the same entity.
Primary ASN
AS9299 · Philippine Long Distance Telephone Company
Subnet
Country
🇵🇭 PH
Cloud Provider
Member Count
5 IPs
Below average
Total Events
388
Below average by volume
Started / Ended
2026-03-07 22:11 — ongoing
Attack Types
mysql:bruteforce ssh:bruteforce
MITRE ATT&CK Techniques
Reconnaissance
Initial Access
Credential Access
Discovery
Command and Control
Member Actors
IP Address Behavior Confidence Flags Events Agents Attack Types Hostname Last Seen
119.92.70.82 credential_harvester 58% 2x OSINT 273 2 ssh:bruteforce 2026-09-03 13:48 evidence →
112.210.230.196 scanner 22% 8 2 ssh:bruteforce 2026-08-29 10:34 evidence →
122.3.88.147 mysql_bruter 19% 99 1 mysql:bruteforce 2026-09-01 05:46 evidence →
124.106.88.166 scanner 12% 4 1 ssh:bruteforce 2026-08-30 08:31 evidence →
49.149.78.145 scanner 12% 4 1 ssh:bruteforce 2026-08-30 13:44 evidence →
VPN Known VPN or proxy provider
DROP ASN on Spamhaus DROP list
Nx OSINT Corroborated by N external threat feeds
{# Cloudflare Web Analytics — cookieless, public pages only. The context processor withholds the token from authenticated requests. #}