This IP address has been reported a total of
145
times from
122 distinct
sources.
121.242.232.147 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
2026-09-23T14:59:21.658833+02:00 serengeti sshd-session[1033289]: Failed password for root from 121. ...
show more2026-09-23T14:59:21.658833+02:00 serengeti sshd-session[1033289]: Failed password for root from 121.242.232.147 port 39106 ssh2
2026-09-23T15:01:01.425776+02:00 serengeti sshd-session[1033662]: Invalid user ubuntu from 121.242.232.147 port 42780
2026-09-23T15:01:01.427469+02:00 serengeti sshd-session[1033662]: Failed password for invalid user ubuntu from 121.242.232.147 port 42780 ssh2
2026-09-23T15:02:42.327024+02:00 serengeti sshd-session[1033838]: Failed password for root from 121.242.232.147 port 46336 ssh2
2026-09-23T15:04:22.953254+02:00 serengeti sshd-session[1033991]: Invalid user payara from 121.242.232.147 port 50034
...
show less
2026-09-23T14:37:50.232939+02:00 serengeti sshd-session[1030584]: Failed password for root from 121. ...
show more2026-09-23T14:37:50.232939+02:00 serengeti sshd-session[1030584]: Failed password for root from 121.242.232.147 port 34924 ssh2
2026-09-23T14:40:00.067507+02:00 serengeti sshd-session[1030930]: Invalid user wl from 121.242.232.147 port 59762
2026-09-23T14:40:00.069082+02:00 serengeti sshd-session[1030930]: Failed password for invalid user wl from 121.242.232.147 port 59762 ssh2
2026-09-23T14:48:49.556932+02:00 serengeti sshd-session[1032055]: Invalid user rdp from 121.242.232.147 port 44700
2026-09-23T14:48:49.558545+02:00 serengeti sshd-session[1032055]: Failed password for invalid user rdp from 121.242.232.147 port 44700 ssh2
...
show less
2026-09-23T14:00:56.854617+02:00 serengeti sshd-session[1025852]: Failed password for postgres from ...
show more2026-09-23T14:00:56.854617+02:00 serengeti sshd-session[1025852]: Failed password for postgres from 121.242.232.147 port 53330 ssh2
2026-09-23T14:07:59.550647+02:00 serengeti sshd-session[1026609]: Invalid user dns from 121.242.232.147 port 56854
2026-09-23T14:07:59.552214+02:00 serengeti sshd-session[1026609]: Failed password for invalid user dns from 121.242.232.147 port 56854 ssh2
2026-09-23T14:09:47.990897+02:00 serengeti sshd-session[1026915]: Failed password for root from 121.242.232.147 port 60348 ssh2
2026-09-23T14:11:32.291723+02:00 serengeti sshd-session[1027308]: Failed password for root from 121.242.232.147 port 35608 ssh2
...
show less
Sep 23 13:21:33 excalibur sshd[3256789]: pam_unix(sshd:auth): authentication failure; logname= uid=0 ...
show moreSep 23 13:21:33 excalibur sshd[3256789]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=121.242.232.147
Sep 23 13:21:35 excalibur sshd[3256789]: Failed password for invalid user sa from 121.242.232.147 port 37240 ssh2
Sep 23 13:21:35 excalibur sshd[3256789]: Disconnected from invalid user sa 121.242.232.147 port 37240 [preauth]
...
show less
Sep 23 08:18:05 proxy-03 sshd[3858175]: Invalid user sa from 121.242.232.147 port 38700
Sep 23 08:18 ...
show moreSep 23 08:18:05 proxy-03 sshd[3858175]: Invalid user sa from 121.242.232.147 port 38700
Sep 23 08:18:05 proxy-03 sshd[3858175]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=121.242.232.147
Sep 23 08:18:07 proxy-03 sshd[3858175]: Failed password for invalid user sa from 121.242.232.147 port 38700 ssh2
Sep 23 08:18:05 proxy-03 sshd[3858175]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=121.242.232.147
Sep 23 08:18:07 proxy-03 sshd[3858175]: Failed password for invalid user sa from 121.242.232.147 port 38700 ssh2
...
show less
Brute-Force
SSH
Anonymous
2026-09-23T10:47:02.342508+00:00 mail sshd[1019171]: pam_unix(sshd:auth): authentication failure; lo ...
show more2026-09-23T10:47:02.342508+00:00 mail sshd[1019171]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=121.242.232.147 user=root
2026-09-23T10:47:04.314074+00:00 mail sshd[1019171]: Failed password for root from 121.242.232.147 port 34242 ssh2
2026-09-23T10:48:44.972502+00:00 mail sshd[1019241]: Invalid user sammy from 121.242.232.147 port 37772
2026-09-23T10:48:44.978433+00:00 mail sshd[1019241]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=121.242.232.147
2026-09-23T10:48:46.953828+00:00 mail sshd[1019241]: Failed password for invalid user sammy from 121.242.232.147 port 37772 ssh2
...
show less
Brute-Force
SSH
Anonymous
2026-09-23T06:38:26.991034-04:00 vps3407359 sshd-session[571346]: Invalid user rstudio from 121.242. ...
show more2026-09-23T06:38:26.991034-04:00 vps3407359 sshd-session[571346]: Invalid user rstudio from 121.242.232.147 port 50132
2026-09-23T06:47:39.060382-04:00 vps3407359 sshd-session[571453]: Invalid user sammy from 121.242.232.147 port 59740
...
show less
This address is trying to log into our servers over SSH with passwords for accounts it does not hold ...
show moreThis address is trying to log into our servers over SSH with passwords for accounts it does not hold โ a brute-force attack, usually run by a bot on a compromised host. Each attempt is refused and the address is blocked; the same bot is very likely hammering many other servers. Please check the machine for malware or an unauthorised user. | 2026-09-23 10:46 UTC
show less