This IP address has been reported a total of
39
times from
35 distinct
sources.
157.245.67.249 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
[satellite_7925] Honeypot attempt NL from 157.245.67.249 to port 1337, with banner b'GET / HTTP/1.1\ ...
show more[satellite_7925] Honeypot attempt NL from 157.245.67.249 to port 1337, with banner b'GET / HTTP/1.1\r\nHost: hidden\r\nUser-Agent: Moz'
show less
ThreatBook Intelligence: vpn_proxy,Dynamic IP more details on https://threatbook.io/ip/157.245.67.24 ...
show moreThreatBook Intelligence: vpn_proxy,Dynamic IP more details on https://threatbook.io/ip/157.245.67.249
show less
2025-11-27T06:15:22.520350+01:00 zrh02-ch-pop.as202427.net sshd[326870]: User root from 157.245.67.2 ...
show more2025-11-27T06:15:22.520350+01:00 zrh02-ch-pop.as202427.net sshd[326870]: User root from 157.245.67.249 not allowed because not listed in AllowUsers
2025-11-27T06:16:04.991866+01:00 zrh02-ch-pop.as202427.net sshd[326951]: User root from 157.245.67.249 not allowed because not listed in AllowUsers
2025-11-27T06:16:46.736636+01:00 zrh02-ch-pop.as202427.net sshd[327031]: User root from 157.245.67.249 not allowed because not listed in AllowUsers
...
show less
Nov 27 05:15:54 vps sshd[774536]: Failed password for root from 157.245.67.249 port 34566 ssh2
Nov 2 ...
show moreNov 27 05:15:54 vps sshd[774536]: Failed password for root from 157.245.67.249 port 34566 ssh2
Nov 27 05:16:33 vps sshd[774539]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=157.245.67.249 user=root
Nov 27 05:16:36 vps sshd[774539]: Failed password for root from 157.245.67.249 port 44706 ssh2
...
show less
Detected multiple authentication failures and invalid user attempts from IP address 157.245.67.249 o ...
show moreDetected multiple authentication failures and invalid user attempts from IP address 157.245.67.249 on [PT] MPT Node.
show less
Brute-Force
Anonymous
2025-11-27T05:15:40.664443+00:00 subaru sshd-session[1880397]: pam_unix(sshd:auth): authentication f ...
show more2025-11-27T05:15:40.664443+00:00 subaru sshd-session[1880397]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=157.245.67.249 user=root
2025-11-27T05:15:43.505585+00:00 subaru sshd-session[1880397]: Failed password for root from 157.245.67.249 port 58902 ssh2
2025-11-27T05:15:46.456693+00:00 subaru sshd-session[1880397]: Connection closed by authenticating user root 157.245.67.249 port 58902 [preauth]
2025-11-27T05:16:22.753661+00:00 subaru sshd-session[1880413]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=157.245.67.249 user=root
2025-11-27T05:16:24.481411+00:00 subaru sshd-session[1880413]: Failed password for root from 157.245.67.249 port 46120 ssh2
...
show less
Nov 27 05:15:39 mc sshd[3051376]: Failed password for root from 157.245.67.249 port 55270 ssh2
Nov 2 ...
show moreNov 27 05:15:39 mc sshd[3051376]: Failed password for root from 157.245.67.249 port 55270 ssh2
Nov 27 05:16:19 mc sshd[3051829]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=157.245.67.249 user=root
Nov 27 05:16:21 mc sshd[3051829]: Failed password for root from 157.245.67.249 port 37762 ssh2
...
show less
2025-11-27T06:15:25.604403+01:00 pigeon.williamblondel.fr sshd-session[3523087]: Connection closed b ...
show more2025-11-27T06:15:25.604403+01:00 pigeon.williamblondel.fr sshd-session[3523087]: Connection closed by authenticating user root 157.245.67.249 port 47036 [preauth]
2025-11-27T06:16:07.615363+01:00 pigeon.williamblondel.fr sshd-session[3523761]: Connection from 157.245.67.249 port 34234 on 193.168.147.152 port 22 rdomain ""
2025-11-27T06:16:08.017164+01:00 pigeon.williamblondel.fr sshd-session[3523761]: Connection closed by authenticating user root 157.245.67.249 port 34234 [preauth]
...
show less
Brute-Force
SSH
Anonymous
Nov 27 06:15:18 sshd-session[7466]: User root from 157.245.67.249 not allowed because not listed in ...
show moreNov 27 06:15:18 sshd-session[7466]: User root from 157.245.67.249 not allowed because not listed in AllowUsers
Nov 27 06:16:01 sshd-session[7485]: User root from 157.245.67.249 not allowed because not listed in AllowUsers
...
show less
Brute-Force
SSH
Showing 1 to
15
of 39 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ