This IP address has been reported a total of
134
times from
83 distinct
sources.
161.248.201.12 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
Jun 6 16:38:55 vm50 sshd[32641]: Invalid user arkserver from 161.248.201.12 port 46320
Jun 6 16:38 ...
show moreJun 6 16:38:55 vm50 sshd[32641]: Invalid user arkserver from 161.248.201.12 port 46320
Jun 6 16:38:55 vm50 sshd[32641]: Disconnected from invalid user arkserver 161.248.201.12 port 46320 [preauth]
Jun 6 16:41:07 vm50 sshd[32662]: Disconnected from authenticating user root 161.248.201.12 port 47270 [preauth]
Jun 6 16:43:19 vm50 sshd[32699]: Connection from 161.248.201.12 port 50166 on 103.3.61.195 port 22 rdomain ""
Jun 6 16:43:19 vm50 sshd[32699]: Invalid user postgres from 161.248.201.12 port 50166
...
show less
Brute-Force
SSH
Anonymous
2026-06-06T08:18:58.936288+00:00 de-fra2-unifi1 sshd[1340518]: Invalid user cuckoo from 161.248.201. ...
show more2026-06-06T08:18:58.936288+00:00 de-fra2-unifi1 sshd[1340518]: Invalid user cuckoo from 161.248.201.12 port 33886
2026-06-06T08:26:30.790753+00:00 de-fra2-unifi1 sshd[1340841]: Invalid user umair from 161.248.201.12 port 54690
2026-06-06T08:32:57.438279+00:00 de-fra2-unifi1 sshd[1340885]: Invalid user alice from 161.248.201.12 port 49224
...
show less
Brute-Force
SSH
Anonymous
Jun 6 16:16:24 vm50 sshd[32418]: Disconnected from invalid user cuckoo 161.248.201.12 port 36500 [p ...
show moreJun 6 16:16:24 vm50 sshd[32418]: Disconnected from invalid user cuckoo 161.248.201.12 port 36500 [preauth]
Jun 6 16:23:48 vm50 sshd[32456]: Disconnected from authenticating user root 161.248.201.12 port 33420 [preauth]
Jun 6 16:26:03 vm50 sshd[32493]: Connection from 161.248.201.12 port 51868 on 103.3.61.195 port 22 rdomain ""
Jun 6 16:26:04 vm50 sshd[32493]: Invalid user umair from 161.248.201.12 port 51868
Jun 6 16:26:04 vm50 sshd[32493]: Disconnected from invalid user umair 161.248.201.12 port 51868 [preauth]
...
show less
(sshd) Failed SSH login from 161.248.201.12 (BD/Bangladesh/-): 5 in the last 3600 secs; Ports: *; Di ...
show more(sshd) Failed SSH login from 161.248.201.12 (BD/Bangladesh/-): 5 in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_SSHD; Logs: Jun 6 03:14:05 14405 sshd[2621]: Invalid user cuckoo from 161.248.201.12 port 35822
Jun 6 03:14:08 14405 sshd[2621]: Failed password for invalid user cuckoo from 161.248.201.12 port 35822 ssh2
Jun 6 03:23:27 14405 sshd[7429]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=161.248.201.12 user=root
Jun 6 03:23:29 14405 sshd[7429]: Failed password for root from 161.248.201.12 port 49466 ssh2
Jun 6 03:25:42 14405 sshd[8445]: Invalid user umair from 161.248.201.12 port 33442
show less
2026-06-06T07:06:26.139772+00:00 edge-noc-mci01.int.pdx.net.uk sshd[3321862]: Invalid user matic fro ...
show more2026-06-06T07:06:26.139772+00:00 edge-noc-mci01.int.pdx.net.uk sshd[3321862]: Invalid user matic from 161.248.201.12 port 39618
2026-06-06T07:08:42.299036+00:00 edge-noc-mci01.int.pdx.net.uk sshd[3322049]: Invalid user billing from 161.248.201.12 port 44954
2026-06-06T07:15:10.758474+00:00 edge-noc-mci01.int.pdx.net.uk sshd[3322685]: Invalid user developer from 161.248.201.12 port 38214
...
show less
(sshd) Failed SSH login from 161.248.201.12 (BD/Bangladesh/-): 5 in the last 3600 secs; Ports: *; Di ...
show more(sshd) Failed SSH login from 161.248.201.12 (BD/Bangladesh/-): 5 in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_SSHD; Logs: Jun 6 01:58:23 14020 sshd[24481]: Invalid user strapi from 161.248.201.12 port 52710
Jun 6 01:58:26 14020 sshd[24481]: Failed password for invalid user strapi from 161.248.201.12 port 52710 ssh2
Jun 6 02:07:02 14020 sshd[28890]: Invalid user matic from 161.248.201.12 port 58322
Jun 6 02:07:04 14020 sshd[28890]: Failed password for invalid user matic from 161.248.201.12 port 58322 ssh2
Jun 6 02:09:20 14020 sshd[30203]: Invalid user billing from 161.248.201.12 port 37024
show less
Jun 6 07:56:26 nervous-edison8 sshd[2365725]: Failed password for invalid user strapi from 161.248. ...
show moreJun 6 07:56:26 nervous-edison8 sshd[2365725]: Failed password for invalid user strapi from 161.248.201.12 port 37688 ssh2
Jun 6 08:06:42 nervous-edison8 sshd[2366498]: Invalid user matic from 161.248.201.12 port 47844
Jun 6 08:06:42 nervous-edison8 sshd[2366498]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=161.248.201.12
Jun 6 08:06:44 nervous-edison8 sshd[2366498]: Failed password for invalid user matic from 161.248.201.12 port 47844 ssh2
Jun 6 08:08:59 nervous-edison8 sshd[2366673]: Invalid user billing from 161.248.201.12 port 57004
...
show less
2026-06-06T09:04:23.890125+02:00 r2d2 sshd-session[289967]: Invalid user strapi from 161.248.201.12 ...
show more2026-06-06T09:04:23.890125+02:00 r2d2 sshd-session[289967]: Invalid user strapi from 161.248.201.12 port 44712
...
show less
2026-06-06T05:37:26.793053+00:00 edge-drt-dal01.int.pdx.net.uk sshd[2669974]: Invalid user edu from ...
show more2026-06-06T05:37:26.793053+00:00 edge-drt-dal01.int.pdx.net.uk sshd[2669974]: Invalid user edu from 161.248.201.12 port 34386
2026-06-06T05:43:31.550512+00:00 edge-drt-dal01.int.pdx.net.uk sshd[2670460]: Invalid user informix from 161.248.201.12 port 49076
2026-06-06T05:46:03.063598+00:00 edge-drt-dal01.int.pdx.net.uk sshd[2670683]: Invalid user sol from 161.248.201.12 port 46804
...
show less
2026-06-06T04:22:18.174695+00:00 edge-fog-fra01.int.pdx.net.uk sshd[996689]: Invalid user minecraft ...
show more2026-06-06T04:22:18.174695+00:00 edge-fog-fra01.int.pdx.net.uk sshd[996689]: Invalid user minecraft from 161.248.201.12 port 50336
2026-06-06T04:27:16.137577+00:00 edge-fog-fra01.int.pdx.net.uk sshd[997731]: Invalid user steam from 161.248.201.12 port 51548
2026-06-06T04:29:26.661803+00:00 edge-fog-fra01.int.pdx.net.uk sshd[998155]: Invalid user evan from 161.248.201.12 port 59534
...
show less
Report 2435988 with IP 3483555 for SSH brute-force attack by source 3478213 via ssh-honeypot/0.2.1+h ...
show moreReport 2435988 with IP 3483555 for SSH brute-force attack by source 3478213 via ssh-honeypot/0.2.1+http
show less
Jun 5 22:23:51 iveco sshd[22399]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid= ...
show moreJun 5 22:23:51 iveco sshd[22399]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=161.248.201.12
Jun 5 22:23:53 iveco sshd[22399]: Failed password for invalid user minecraft from 161.248.201.12 port 53054 ssh2
Jun 5 22:27:31 iveco sshd[22465]: Invalid user steam from 161.248.201.12 port 40502
...
show less
Brute-Force
SSH
Showing 1 to
15
of 134 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ