This IP address has been reported a total of
47
times from
36 distinct
sources.
197.249.48.238 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
This IP address carried out 8 port scanning attempts on 13-05-2024. For more information or to repor ...
show moreThis IP address carried out 8 port scanning attempts on 13-05-2024. For more information or to report interesting / incorrect findings, give me a shoutout @parthmaniar on Twitter.
show less
This IP address carried out 2 SSH credential attack (attempts) on 13-05-2024. For more information o ...
show moreThis IP address carried out 2 SSH credential attack (attempts) on 13-05-2024. For more information or to report interesting / incorrect findings, give me a shoutout @parthmaniar on Twitter.
show less
LF_IMAPD: (imapd) Failed IMAP login from 197.249.48.238 (MZ/Mozambique/cust238-48-249-197.netcabo.co ...
show moreLF_IMAPD: (imapd) Failed IMAP login from 197.249.48.238 (MZ/Mozambique/cust238-48-249-197.netcabo.co.mz): 3 in the last 3600 secs
show less
May 12 23:01:38 fisher sshd[127712]: pam_unix(sshd:auth): authentication failure; logname= uid=0 eui ...
show moreMay 12 23:01:38 fisher sshd[127712]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=197.249.48.238
May 12 23:01:41 fisher sshd[127712]: Failed password for invalid user test from 197.249.48.238 port 60201 ssh2
...
show less
05/13/2024-01:18:49.379024 197.249.48.238 Protocol: 6 ET POLICY SSH session in progress on Expected ...
show more05/13/2024-01:18:49.379024 197.249.48.238 Protocol: 6 ET POLICY SSH session in progress on Expected Port
show less
(sshd) Failed SSH login from 197.249.48.238 (MZ/Mozambique/Cidade de Maputo/Maputo/cust238-48-249-19 ...
show more(sshd) Failed SSH login from 197.249.48.238 (MZ/Mozambique/Cidade de Maputo/Maputo/cust238-48-249-197.netcabo.co.mz/[AS25139 Comunicacoes Multimedia, Lda]): 2 in the last 3600 secs
show less
May 10 07:45:16 dagasistemas sshd[8735]: Invalid user debian from 197.249.48.238 port 40942
May 10 0 ...
show moreMay 10 07:45:16 dagasistemas sshd[8735]: Invalid user debian from 197.249.48.238 port 40942
May 10 07:45:16 dagasistemas sshd[8735]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=197.249.48.238
May 10 07:45:17 dagasistemas sshd[8735]: Failed password for invalid user debian from 197.249.48.238 port 40942 ssh2
...
show less
(imapd) Failed IMAP login from 197.249.48.238 (MZ/Mozambique/cust238-48-249-197.netcabo.co.mz): 3 in ...
show more(imapd) Failed IMAP login from 197.249.48.238 (MZ/Mozambique/cust238-48-249-197.netcabo.co.mz): 3 in the last 3600 secs
show less
Brute-Force
Anonymous
2024-05-10T03:13:33.030572+02:00 metalsrv dovecot: auth-worker(392625): conn unix:auth-worker (pid=2 ...
show more2024-05-10T03:13:33.030572+02:00 metalsrv dovecot: auth-worker(392625): conn unix:auth-worker (pid=250714,uid=102): auth-worker<89>: shadow(petra,197.249.48.238,<aLN+Pg8YxYHF+TDu>): Password mismatch (given password: Petra2020)
...
show less
2024-05-07T12:50:46.182827 AdbuseHP sshd[648940]: Invalid user debian from 197.249.48.238 port 37787 ...
show more2024-05-07T12:50:46.182827 AdbuseHP sshd[648940]: Invalid user debian from 197.249.48.238 port 37787
...
show less
Brute-Force
SSH
Showing 1 to
15
of 47 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ