← Back to ASN List

AS12389 — Rostelecom Threat Intelligence

Rostelecom

Autonomous System Threat Intelligence

Network Threat Summary

AS12389 (Rostelecom) has 69,834 malicious IP addresses with 749,440 abuse reports across 1 countries. First activity recorded 2022-08-21, most recent activity 2026-09-22.

Threat Profile: The primary attack categories observed from this network are reconnaissance, reputation low, aggregated threat. This autonomous system is among the most prolific threat sources globally, with an exceptionally high concentration of malicious IP addresses. Affected countries include RU.

Risk Assessment: CRITICAL - This autonomous system is a major source of malicious activity, ranking in the top 1% of threat networks globally. Consider blocking the entire ASN or implementing strict rate limiting.

Unique Malicious IPs
69,834
Total Abuse Reports
749,440
Countries Affected
1
First Seen
2022-08-21

Top Attack Categories

  • Reconnaissance 115,909 reports
  • Reputation Low 32,896 reports
  • Aggregated Threat 30,323 reports
  • Malware Infrastructure 13,969 reports
  • Spam 4,249 reports

Top Affected Countries

  • RU 672,720 reports

Most Reported IPs

Lookup an IP or Network

Check any IP address for threat intelligence or browse other ASNs.

Access ASN Intelligence via API

Integrate AS12389 threat data into your security stack with our REST API.

curl https://ip.wayscloud.services/api/asn/12389 View API Documentation →

See how we classify and verify threats →

Loading ASN intelligence data...

Full ASN Threat Ranking → Top Malicious IPs → Country Threat Ranking → Latest Cyber Attacks → Most Abused Cloud Providers Why Cloud IPs Are Abused