This IP address has been reported a total of
31
times from
29 distinct
sources.
49.207.241.214 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
(sshd) Failed SSH login from 49.207.241.214 (IN/India/broadband.actcorp.in): 5 in the last 3600 secs ...
show more(sshd) Failed SSH login from 49.207.241.214 (IN/India/broadband.actcorp.in): 5 in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_SSHD; Logs: Jun 4 12:08:25 15448 sshd[27153]: Invalid user test from 49.207.241.214 port 25596
Jun 4 12:08:27 15448 sshd[27153]: Failed password for invalid user test from 49.207.241.214 port 25596 ssh2
Jun 4 12:19:34 15448 sshd[950]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=49.207.241.214 user=root
Jun 4 12:19:36 15448 sshd[950]: Failed password for root from 49.207.241.214 port 27182 ssh2
Jun 4 12:21:40 15448 sshd[2175]: Invalid user ceshi2 from 49.207.241.214 port 26100
show less
2026-06-04T17:21:46.935450+00:00 Leaderscartel sshd[2777944]: Invalid user ceshi2 from 49.207.241.21 ...
show more2026-06-04T17:21:46.935450+00:00 Leaderscartel sshd[2777944]: Invalid user ceshi2 from 49.207.241.214 port 26918
2026-06-04T17:21:46.942607+00:00 Leaderscartel sshd[2777944]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=49.207.241.214
2026-06-04T17:21:49.092241+00:00 Leaderscartel sshd[2777944]: Failed password for invalid user ceshi2 from 49.207.241.214 port 26918 ssh2
...
show less
(sshd) Failed SSH login from 49.207.241.214 (IN/India/broadband.actcorp.in)
Brute-Force
SSH
Anonymous
2026-06-04T18:58:38.760841+02:00 mail.nb6.de sshd-session[1533343]: pam_unix(sshd:auth): authenticat ...
show more2026-06-04T18:58:38.760841+02:00 mail.nb6.de sshd-session[1533343]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=49.207.241.214
2026-06-04T18:58:40.694167+02:00 mail.nb6.de sshd-session[1533343]: Failed password for invalid user ubuntu from 49.207.241.214 port 26614 ssh2
2026-06-04T18:58:41.004948+02:00 mail.nb6.de sshd-session[1533343]: Disconnected from invalid user ubuntu 49.207.241.214 port 26614 [preauth]
2026-06-04T19:00:43.190060+02:00 mail.nb6.de sshd-session[1533724]: Connection from 49.207.241.214 port 26322 on 46.4.163.18 port 22022 rdomain ""
2026-06-04T19:00:44.202780+02:00 mail.nb6.de sshd-session[1533724]: User root from 49.207.241.214 not allowed because not listed in AllowUsers
...
show less
Jun 4 16:33:07 hermes sshd[1619639]: pam_unix(sshd:auth): authentication failure; logname= uid=0 eu ...
show moreJun 4 16:33:07 hermes sshd[1619639]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=49.207.241.214 user=root
Jun 4 16:33:09 hermes sshd[1619639]: Failed password for root from 49.207.241.214 port 25770 ssh2
Jun 4 16:35:22 hermes sshd[1619689]: Invalid user mehdi from 49.207.241.214 port 26252
...
show less
Brute-Force
SSH
Anonymous
2026-06-04T18:28:56.451821+02:00 mail.nb6.de sshd-session[1528032]: Disconnected from invalid user r ...
show more2026-06-04T18:28:56.451821+02:00 mail.nb6.de sshd-session[1528032]: Disconnected from invalid user root 49.207.241.214 port 26194 [preauth]
2026-06-04T18:34:10.110573+02:00 mail.nb6.de sshd-session[1528868]: Connection from 49.207.241.214 port 26452 on 46.4.163.18 port 22022 rdomain ""
2026-06-04T18:34:11.161340+02:00 mail.nb6.de sshd-session[1528868]: User root from 49.207.241.214 not allowed because not listed in AllowUsers
2026-06-04T18:34:11.177057+02:00 mail.nb6.de sshd-session[1528868]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=49.207.241.214 user=root
2026-06-04T18:34:13.094778+02:00 mail.nb6.de sshd-session[1528868]: Failed password for invalid user root from 49.207.241.214 port 26452 ssh2
...
show less
SSH Brute force: 27 attempts were recorded from 49.207.241.214
2026-06-04T17:03:15+02:00 Disconnecte ...
show moreSSH Brute force: 27 attempts were recorded from 49.207.241.214
2026-06-04T17:03:15+02:00 Disconnected from authenticating user root 49.207.241.214 port 25883 [preauth]
2026-06-04T15:59:37+02:00 Invalid user abc from 49.207.241.214 port 25942
2026-06-04T16:03:56+02:00 Invalid user postgres from 49.207.241.214 port 26976
2026-06-04T16:06:10+02:00 Invalid user test from 49.207.241.214 port 26046
2026-06-04T16:12:48+02:00 Disconnected from authenticating user root 49.207.241.214 port 25838 [preauth]
2026-06-04T16:15:05+02:00 Invalid user mo from 49.207.241.214 port 25544
2026-06-04T16:17:16+02:00 Disconnected from authenticating user root 49.207.241.214 port 26798 [preauth]
2026-06-04T16:19:35+02:00 Disconnected from authenticating user root 49.207.241.214 port 26534 [preauth]
2026-06-04T16:21:53+02:00 Invalid user amit from 49.207.241.214 port 26840
2026-06-04T16:24:07+02:00 Disconnected fr
show less
Cowrie Honeypot: 5 unauthorised SSH/Telnet login attempts between 2026-06-04T14:00:01Z and 2026-06-0 ...
show moreCowrie Honeypot: 5 unauthorised SSH/Telnet login attempts between 2026-06-04T14:00:01Z and 2026-06-04T15:09:42Z
show less
2026-06-04T15:53:24.117443+02:00 vpn sshd[99039]: Invalid user abc from 49.207.241.214 port 26164
20 ...
show more2026-06-04T15:53:24.117443+02:00 vpn sshd[99039]: Invalid user abc from 49.207.241.214 port 26164
2026-06-04T16:02:55.134687+02:00 vpn sshd[99064]: Invalid user postgres from 49.207.241.214 port 26664
2026-06-04T16:05:06.369819+02:00 vpn sshd[99072]: Invalid user test from 49.207.241.214 port 27206
...
show less
2026-06-04T13:53:32.002222+00:00 vps1 sshd[418918]: Invalid user abc from 49.207.241.214 port 26128
...
show more2026-06-04T13:53:32.002222+00:00 vps1 sshd[418918]: Invalid user abc from 49.207.241.214 port 26128
2026-06-04T13:53:32.168366+00:00 vps1 sshd[418918]: Disconnected from invalid user abc 49.207.241.214 port 26128 [preauth]
2026-06-04T14:02:56.169281+00:00 vps1 sshd[419797]: Invalid user postgres from 49.207.241.214 port 26288
...
show less
Brute-Force
SSH
Showing 1 to
15
of 31 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ