This IP address has been reported a total of
92
times from
68 distinct
sources.
149.202.61.147 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
2026-09-01T12:41:25.161214+00:00 web4 sshd[860547]: Invalid user ts3server from 149.202.61.147 port ...
show more2026-09-01T12:41:25.161214+00:00 web4 sshd[860547]: Invalid user ts3server from 149.202.61.147 port 36162
2026-09-01T12:43:25.614527+00:00 web4 sshd[860623]: Invalid user grid from 149.202.61.147 port 34664
2026-09-01T12:47:34.850032+00:00 web4 sshd[862319]: Invalid user samuel from 149.202.61.147 port 55022
2026-09-01T12:49:40.157339+00:00 web4 sshd[862402]: Invalid user june from 149.202.61.147 port 36626
2026-09-01T12:50:40.755232+00:00 web4 sshd[863808]: Invalid user readonly from 149.202.61.147 port 49854
show less
Sep 1 14:31:50 plsk sshd[435110]: Invalid user root2 from 149.202.61.147 port 42888
Sep 1 14:31:50 ...
show moreSep 1 14:31:50 plsk sshd[435110]: Invalid user root2 from 149.202.61.147 port 42888
Sep 1 14:31:50 plsk sshd[435110]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=149.202.61.147
Sep 1 14:31:52 plsk sshd[435110]: Failed password for invalid user root2 from 149.202.61.147 port 42888 ssh2
Sep 1 14:33:56 plsk sshd[435248]: Invalid user ubuntu from 149.202.61.147 port 34768
...
show less
2026-09-01T12:26:30.314183+00:00 edge-con-sin01.int.pdx.net.uk sshd[2308928]: pam_unix(sshd:auth): a ...
show more2026-09-01T12:26:30.314183+00:00 edge-con-sin01.int.pdx.net.uk sshd[2308928]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=149.202.61.147
2026-09-01T12:26:31.518554+00:00 edge-con-sin01.int.pdx.net.uk sshd[2308928]: Failed password for invalid user root2 from 149.202.61.147 port 43788 ssh2
2026-09-01T12:33:19.597777+00:00 edge-con-sin01.int.pdx.net.uk sshd[2310035]: Invalid user ubuntu from 149.202.61.147 port 39890
...
show less
2026-09-01T07:27:12.618573-03:00 pve sshd-session[1957044]: Invalid user jesa from 149.202.61.147 po ...
show more2026-09-01T07:27:12.618573-03:00 pve sshd-session[1957044]: Invalid user jesa from 149.202.61.147 port 35742
show less
Automated report by DataDream Sentinel.
Repeated SSH authentication failures consistent with credent ...
show moreAutomated report by DataDream Sentinel.
Repeated SSH authentication failures consistent with credential brute-force activity were detected against infrastructure monitored by DataDream.
18 failed-authentication event references were correlated between 2026-09-01 10:23:28 and 10:30:31 UTC.
No successful SSH authentication was observed in the available telemetry.
Reference: DD-AIPDB-20260901-68CF83E3
show less
Brute-Force
SSH
Anonymous
2026-09-01T06:13:56.193162-04:00 iroh sshd[775805]: Invalid user update from 149.202.61.147 port 593 ...
show more2026-09-01T06:13:56.193162-04:00 iroh sshd[775805]: Invalid user update from 149.202.61.147 port 59320
2026-09-01T06:13:56.194464-04:00 iroh sshd[775805]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=149.202.61.147
2026-09-01T06:13:57.786077-04:00 iroh sshd[775805]: Failed password for invalid user update from 149.202.61.147 port 59320 ssh2
...
show less
2026-09-01T08:29:38.219194+00:00 ubuntu sshd[1334636]: pam_unix(sshd:auth): authentication failure; ...
show more2026-09-01T08:29:38.219194+00:00 ubuntu sshd[1334636]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=149.202.61.147
2026-09-01T08:29:40.031975+00:00 ubuntu sshd[1334636]: Failed password for invalid user admin from 149.202.61.147 port 38656 ssh2
2026-09-01T08:32:07.644618+00:00 ubuntu sshd[1334657]: Invalid user andrei from 149.202.61.147 port 51500
...
show less
2026-09-01T09:29:42.042499+02:00 frenzy sshd-session[17438]: Failed password for invalid user arkser ...
show more2026-09-01T09:29:42.042499+02:00 frenzy sshd-session[17438]: Failed password for invalid user arkserver from 149.202.61.147 port 37614 ssh2
2026-09-01T09:34:15.337522+02:00 frenzy sshd-session[17444]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=149.202.61.147 user=root
2026-09-01T09:34:16.985179+02:00 frenzy sshd-session[17444]: Failed password for root from 149.202.61.147 port 60240 ssh2
2026-09-01T09:35:17.615853+02:00 frenzy sshd-session[17447]: Invalid user testuser from 149.202.61.147 port 59072
...
show less
Brute-Force
SSH
Showing 1 to
15
of 92 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ