This IP address has been reported a total of
469
times from
294 distinct
sources.
185.42.21.94 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
2026-06-02T00:17:18.836967+00:00 Linux13 sshd-session[250318]: Invalid user uftp from 185.42.21.94 p ...
show more2026-06-02T00:17:18.836967+00:00 Linux13 sshd-session[250318]: Invalid user uftp from 185.42.21.94 port 40384
2026-06-02T00:17:18.840001+00:00 Linux13 sshd-session[250318]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=185.42.21.94
2026-06-02T00:17:20.861365+00:00 Linux13 sshd-session[250318]: Failed password for invalid user uftp from 185.42.21.94 port 40384 ssh2
2026-06-02T00:19:10.309141+00:00 Linux13 sshd-session[256460]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=185.42.21.94 user=root
2026-06-02T00:19:12.323419+00:00 Linux13 sshd-session[256460]: Failed password for root from 185.42.21.94 port 50564 ssh2
2026-06-02T00:20:54.480367+00:00 Linux13 sshd-session[262897]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=185.42.21.94 user=root
2026-06-02T00:20:56.785406+00:00 Linux13 sshd-session[262897]: Failed password for root from 185.42.21.94 port 42360 ss
...
show less
185.42.21.94 (CO/Colombia/185422194-in-adr.libertynet.com), 5 distributed sshd attacks on account [r ...
show more185.42.21.94 (CO/Colombia/185422194-in-adr.libertynet.com), 5 distributed sshd attacks on account [root] in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_DISTATTACK; Logs: Jun 1 18:14:54 21941 sshd[29462]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=154.92.17.58 user=root
Jun 1 18:14:56 21941 sshd[29462]: Failed password for root from 154.92.17.58 port 60822 ssh2
Jun 1 18:16:28 21941 sshd[30350]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=185.42.21.94 user=root
Jun 1 18:06:51 21941 sshd[25347]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=75.127.15.105 user=root
Jun 1 18:06:53 21941 sshd[25347]: Failed password for root from 75.127.15.105 port 55188 ssh2
IP Addresses Blocked:
154.92.17.58 (HK/Hong Kong/-)
show less
Brute-Force
SSH
Anonymous
2026-06-02T01:05:57.636981+02:00 myserver sshd[1042106]: pam_unix(sshd:auth): authentication failure ...
show more2026-06-02T01:05:57.636981+02:00 myserver sshd[1042106]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=185.42.21.94
2026-06-02T01:05:59.499122+02:00 myserver sshd[1042106]: Failed password for invalid user axa from 185.42.21.94 port 48502 ssh2
...
show less
Jun 2 00:53:26 : Failed password for root from 185.42.21.94 port 55474 ssh2 Jun 2 00:55:03 : pam_uni ...
show moreJun 2 00:53:26 : Failed password for root from 185.42.21.94 port 55474 ssh2 Jun 2 00:55:03 : pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=185.42.21.94 user=root Jun 2 00:55:05 : Failed password for root from
show less
Jun 2 00:10:24 : Failed password for invalid user master from 185.42.21.94 port 43258 ssh2 Jun 2 00: ...
show moreJun 2 00:10:24 : Failed password for invalid user master from 185.42.21.94 port 43258 ssh2 Jun 2 00:18:10 : Invalid user test from 185.42.21.94 port 57034 Jun 2 00:18:10 : pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh rus
show less
SSH honeypot interaction detected. The source host initiated a connection to a monitored SSH endpoin ...
show moreSSH honeypot interaction detected. The source host initiated a connection to a monitored SSH endpoint, behavior consistent with automated SSH scanning or brute-force reconnaissance.
show less
2026-06-01T23:24:32.064990+02:00 c8ad96d3-a03b-4047-9371-ea18a81dda80 sshd[1210375]: Invalid user ma ...
show more2026-06-01T23:24:32.064990+02:00 c8ad96d3-a03b-4047-9371-ea18a81dda80 sshd[1210375]: Invalid user marc from 185.42.21.94 port 59304
2026-06-01T23:26:09.000009+02:00 c8ad96d3-a03b-4047-9371-ea18a81dda80 sshd[1210444]: Invalid user ftpuser from 185.42.21.94 port 50416
2026-06-01T23:29:12.797556+02:00 c8ad96d3-a03b-4047-9371-ea18a81dda80 sshd[1210538]: Invalid user wms from 185.42.21.94 port 50746
2026-06-01T23:30:50.147908+02:00 c8ad96d3-a03b-4047-9371-ea18a81dda80 sshd[1210582]: Invalid user guest123 from 185.42.21.94 port 46170
2026-06-01T23:32:25.369536+02:00 c8ad96d3-a03b-4047-9371-ea18a81dda80 sshd[1210613]: Invalid user erp from 185.42.21.94 port 36138
...
show less
Brute-Force
SSH
Anonymous
SSH Brute Force (3 attempts). Evidence: sshd[2033429]: Invalid user dummy from 185.42.21.94 port 334 ...
show moreSSH Brute Force (3 attempts). Evidence: sshd[2033429]: Invalid user dummy from 185.42.21.94 port 33452;sshd[2033429]: Disconnected from invalid user dummy 185.42.21.94 port 33452 [preauth]
show less
Jun 1 20:48:14 mail sshd[3617357]: Invalid user reolink from 185.42.21.94 port 46954
Jun 1 20:51:2 ...
show moreJun 1 20:48:14 mail sshd[3617357]: Invalid user reolink from 185.42.21.94 port 46954
Jun 1 20:51:25 mail sshd[3617617]: Invalid user cms from 185.42.21.94 port 40706
...
show less
Brute-Force
SSH
Anonymous
SSH brute force attempt. User: root, Pass: [REDACTED]
Brute-Force
SSH
Anonymous
SSH brute force attempt. User: tata, Pass: [REDACTED]
Brute-Force
SSH
Anonymous
SSH brute force attempt. User: certftp, Pass: [REDACTED]