This IP address has been reported a total of
124
times from
60 distinct
sources.
42.249.228.42 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
SSH brute force attempt. User: ubuntu, Pass: [REDACTED]
May 30 20:40:12 hecnet-us-east-gw sshd[698105]: User root from 42.249.228.42 not allowed because not ...
show moreMay 30 20:40:12 hecnet-us-east-gw sshd[698105]: User root from 42.249.228.42 not allowed because not listed in AllowUsers
May 30 20:40:14 hecnet-us-east-gw sshd[698105]: Failed password for invalid user root from 42.249.228.42 port 59460 ssh2
May 30 20:40:14 hecnet-us-east-gw sshd[698105]: Disconnected from invalid user root 42.249.228.42 port 59460 [preauth]
...
show less
2026-05-31T05:39:03.833190+09:00 no2 sshd[2170294]: Disconnected from authenticating user root 42.24 ...
show more2026-05-31T05:39:03.833190+09:00 no2 sshd[2170294]: Disconnected from authenticating user root 42.249.228.42 port 45456 [preauth]
...
show less
2026-05-30T20:34:13.552863+00:00 thecount sshd[229477]: Disconnected from authenticating user root 4 ...
show more2026-05-30T20:34:13.552863+00:00 thecount sshd[229477]: Disconnected from authenticating user root 42.249.228.42 port 40060 [preauth]
...
show less
Brute-Force
SSH
Anonymous
SSH brute force attempt. User: root, Pass: [REDACTED]
2026-05-30T03:02:37.340790+08:00 pbs sshd[2333739]: Failed password for root from 42.249.228.42 port ...
show more2026-05-30T03:02:37.340790+08:00 pbs sshd[2333739]: Failed password for root from 42.249.228.42 port 46628 ssh2
2026-05-30T03:08:13.289873+08:00 pbs sshd[2333921]: Invalid user ubuntu from 42.249.228.42 port 51578
...
show less
2026-05-29T18:13:36.509882+00:00 ru-node sshd-session[38271]: Invalid user ubuntu from 42.249.228.42 ...
show more2026-05-29T18:13:36.509882+00:00 ru-node sshd-session[38271]: Invalid user ubuntu from 42.249.228.42 port 40674
2026-05-29T18:13:36.513687+00:00 ru-node sshd-session[38271]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=42.249.228.42
2026-05-29T18:13:38.712907+00:00 ru-node sshd-session[38271]: Failed password for invalid user ubuntu from 42.249.228.42 port 40674 ssh2
...
show less
2026-05-30T01:25:52.008662 vps1.chirorist.org sshd[2134169]: pam_unix(sshd:auth): authentication fai ...
show more2026-05-30T01:25:52.008662 vps1.chirorist.org sshd[2134169]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=42.249.228.42
2026-05-30T01:25:54.421211 vps1.chirorist.org sshd[2134169]: Failed password for invalid user ubuntu from 42.249.228.42 port 33656 ssh2
2026-05-30T01:47:24.616509 vps1.chirorist.org sshd[2134235]: Invalid user ubuntu from 42.249.228.42 port 41882
2026-05-30T01:47:24.619179 vps1.chirorist.org sshd[2134235]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=42.249.228.42
2026-05-30T01:47:26.400901 vps1.chirorist.org sshd[2134235]: Failed password for invalid user ubuntu from 42.249.228.42 port 41882 ssh2
...
show less
2026-05-29T18:13:46.624992+02:00 angel.gnome.moe sshd-session[4035716]: Failed password for invalid ...
show more2026-05-29T18:13:46.624992+02:00 angel.gnome.moe sshd-session[4035716]: Failed password for invalid user ubuntu from 42.249.228.42 port 53198 ssh2
2026-05-29T18:35:33.742342+02:00 angel.gnome.moe sshd-session[4039858]: Connection from 42.249.228.42 port 47176 on 49.12.123.124 port 22 rdomain ""
2026-05-29T18:35:35.229681+02:00 angel.gnome.moe sshd-session[4039858]: Invalid user ubuntu from 42.249.228.42 port 47176
2026-05-29T18:35:35.232026+02:00 angel.gnome.moe sshd-session[4039858]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=42.249.228.42
2026-05-29T18:35:36.707640+02:00 angel.gnome.moe sshd-session[4039858]: Failed password for invalid user ubuntu from 42.249.228.42 port 47176 ssh2
...
show less
2026-05-29T18:23:25.923231+02:00 sun sshd[1156336]: pam_unix(sshd:auth): authentication failure; log ...
show more2026-05-29T18:23:25.923231+02:00 sun sshd[1156336]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=42.249.228.42
2026-05-29T18:23:27.825230+02:00 sun sshd[1156336]: Failed password for invalid user ubuntu from 42.249.228.42 port 48144 ssh2
2026-05-29T18:23:31.820086+02:00 sun sshd[1156336]: error: PAM: Authentication failure for illegal user ubuntu from 42.249.228.42
...
show less
2026-05-29T18:21:50.790156+02:00 srv01 sshd[2950600]: pam_unix(sshd:auth): authentication failure; l ...
show more2026-05-29T18:21:50.790156+02:00 srv01 sshd[2950600]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=42.249.228.42
2026-05-29T18:21:52.315750+02:00 srv01 sshd[2950600]: Failed password for invalid user ubuntu from 42.249.228.42 port 40594 ssh2
...
show less
Brute-Force
SSH
Showing 46 to
60
of 124 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ