This IP address has been reported a total of
36
times from
27 distinct
sources.
167.172.164.242 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
2026-03-01T18:48:01.980585+00:00 fleur.lavnet.net sshd[4088549]: Invalid user admin from 167.172.164 ...
show more2026-03-01T18:48:01.980585+00:00 fleur.lavnet.net sshd[4088549]: Invalid user admin from 167.172.164.242 port 44524
2026-03-01T18:48:27.012045+00:00 fleur.lavnet.net sshd[4088603]: Invalid user admin from 167.172.164.242 port 54050
2026-03-01T18:48:52.549445+00:00 fleur.lavnet.net sshd[4088609]: Invalid user admin from 167.172.164.242 port 34932
...
show less
SSH
Anonymous
2026-03-01T18:39:18.984869+00:00 TP sshd[3282316]: pam_unix(sshd:auth): authentication failure; logn ...
show more2026-03-01T18:39:18.984869+00:00 TP sshd[3282316]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=167.172.164.242 user=root
2026-03-01T18:39:21.331344+00:00 TP sshd[3282316]: Failed password for root from 167.172.164.242 port 39106 ssh2
2026-03-01T18:39:59.638504+00:00 TP sshd[3282657]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=167.172.164.242 user=root
2026-03-01T18:40:01.945122+00:00 TP sshd[3282657]: Failed password for root from 167.172.164.242 port 54002 ssh2
2026-03-01T18:40:38.387232+00:00 TP sshd[3282963]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=167.172.164.242 user=root
2026-03-01T18:40:40.382527+00:00 TP sshd[3282963]: Failed password for root from 167.172.164.242 port 43678 ssh2
2026-03-01T18:41:17.000593+00:00 TP sshd[3283233]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty
...
show less
2026-03-01T18:35:52.513543 host sshd[250348]: Connection closed by 167.172.164.242 port 52250 2026-0 ...
show more2026-03-01T18:35:52.513543 host sshd[250348]: Connection closed by 167.172.164.242 port 52250 2026-03-01T18:36:59.647649 host sshd[250349]: user XXXX from 167.172.164.242 not allowed because not listed in AllowUsers 2026-03-01T18:37:44.417807 host sshd[250352]: Connection closed by invalid user root 167.172.164.242 port 51746 [preauth]
show less
Brute-Force
SSH
Showing 1 to
15
of 36 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ