This IP address has been reported a total of
380
times from
197 distinct
sources.
49.207.241.70 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
2025-12-09T04:58:40.806510+00:00 edge-eqx-syd03.int.pdx.net.uk sshd[3261034]: Invalid user seal from ...
show more2025-12-09T04:58:40.806510+00:00 edge-eqx-syd03.int.pdx.net.uk sshd[3261034]: Invalid user seal from 49.207.241.70 port 31156
2025-12-09T05:00:53.746800+00:00 edge-eqx-syd03.int.pdx.net.uk sshd[3261542]: Invalid user httpd from 49.207.241.70 port 31270
2025-12-09T05:01:34.522700+00:00 edge-eqx-syd03.int.pdx.net.uk sshd[3261731]: Invalid user gabriel from 49.207.241.70 port 30077
...
show less
2025-12-09T05:28:33.771418+01:00 gXdNODE2 sshd-session[123334]: Invalid user support from 49.207.241 ...
show more2025-12-09T05:28:33.771418+01:00 gXdNODE2 sshd-session[123334]: Invalid user support from 49.207.241.70 port 30470
...
show less
Dec 9 04:26:10 phonebook-lb01.phonebook.srvfarm.net sshd[101399]: Disconnected from authenticating ...
show moreDec 9 04:26:10 phonebook-lb01.phonebook.srvfarm.net sshd[101399]: Disconnected from authenticating user root 49.207.241.70 port 29950 [preauth]
Dec 9 04:31:39 phonebook-lb01.phonebook.srvfarm.net sshd[102737]: Invalid user ubuntu from 49.207.241.70 port 30434
Dec 9 04:31:39 phonebook-lb01.phonebook.srvfarm.net sshd[102737]: Disconnected from invalid user ubuntu 49.207.241.70 port 30434 [preauth]
Dec 9 04:32:30 phonebook-lb01.phonebook.srvfarm.net sshd[103024]: Disconnected from authenticating user root 49.207.241.70 port 31190 [preauth]
Dec 9 04:33:13 phonebook-lb01.phonebook.srvfarm.net sshd[103353]: Invalid user diquest from 49.207.241.70 port 29834
show less
2025-12-09T03:57:40.934291+01:00 ovh-dedi-ie-ksleb25-sbg sshd-session[560407]: Invalid user user2 fr ...
show more2025-12-09T03:57:40.934291+01:00 ovh-dedi-ie-ksleb25-sbg sshd-session[560407]: Invalid user user2 from 49.207.241.70 port 30786
2025-12-09T04:03:14.123426+01:00 ovh-dedi-ie-ksleb25-sbg sshd-session[560987]: Invalid user deluge from 49.207.241.70 port 30546
2025-12-09T04:03:55.964324+01:00 ovh-dedi-ie-ksleb25-sbg sshd-session[561097]: Invalid user zhy from 49.207.241.70 port 30263
...
show less
Brute-Force
SSH
Anonymous
2025-12-09T01:30:47.486169+00:00 gaming1 sshd-session[299763]: Invalid user gpadmin from 49.207.241. ...
show more2025-12-09T01:30:47.486169+00:00 gaming1 sshd-session[299763]: Invalid user gpadmin from 49.207.241.70 port 29438
2025-12-09T01:38:59.940989+00:00 gaming1 sshd-session[301349]: Invalid user sftpuser from 49.207.241.70 port 31406
2025-12-09T01:39:40.548011+00:00 gaming1 sshd-session[301478]: Invalid user httpd from 49.207.241.70 port 30722
2025-12-09T01:40:21.142406+00:00 gaming1 sshd-session[301670]: Invalid user user2 from 49.207.241.70 port 29862
2025-12-09T01:43:04.825958+00:00 gaming1 sshd-session[302198]: Invalid user mhd from 49.207.241.70 port 30562
...
show less
Brute-Force
SSH
Anonymous
2025-12-09T01:37:18.045236+00:00 TP sshd[198811]: Failed password for root from 49.207.241.70 port 2 ...
show more2025-12-09T01:37:18.045236+00:00 TP sshd[198811]: Failed password for root from 49.207.241.70 port 29620 ssh2
2025-12-09T01:38:01.909901+00:00 TP sshd[199215]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=49.207.241.70 user=root
2025-12-09T01:38:04.008239+00:00 TP sshd[199215]: Failed password for root from 49.207.241.70 port 31236 ssh2
2025-12-09T01:38:48.186192+00:00 TP sshd[199584]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=49.207.241.70 user=root
2025-12-09T01:38:49.737784+00:00 TP sshd[199584]: Failed password for root from 49.207.241.70 port 29958 ssh2
2025-12-09T01:39:28.849623+00:00 TP sshd[199893]: Invalid user sftpuser from 49.207.241.70 port 29709
2025-12-09T01:39:28.851502+00:00 TP sshd[199893]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=49.207.241.70
2025-12-09T01:39:31.562125+00:00 TP sshd[1
...
show less
49.207.241.70 (IN/India/broadband.actcorp.in), 5 distributed sshd attacks on account [root] in the l ...
show more49.207.241.70 (IN/India/broadband.actcorp.in), 5 distributed sshd attacks on account [root] in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_DISTATTACK; Logs: Dec 8 19:35:40 10210 sshd[15145]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=196.189.155.89 user=root
Dec 8 19:36:08 10210 sshd[15209]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=49.207.241.70 user=root
Dec 8 19:36:11 10210 sshd[15209]: Failed password for root from 49.207.241.70 port 29960 ssh2
Dec 8 19:36:45 10210 sshd[15228]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=107.175.6.91 user=root
Dec 8 19:35:43 10210 sshd[15145]: Failed password for root from 196.189.155.89 port 50556 ssh2
IP Addresses Blocked:
196.189.155.89 (ET/Ethiopia/-)
show less
Dec 9 04:10:19 Xenoserver sshd[591012]: Invalid user user from 49.207.241.70 port 29596
Dec 9 04:1 ...
show moreDec 9 04:10:19 Xenoserver sshd[591012]: Invalid user user from 49.207.241.70 port 29596
Dec 9 04:11:03 Xenoserver sshd[591676]: Invalid user temp from 49.207.241.70 port 29830
Dec 9 04:11:45 Xenoserver sshd[592309]: Invalid user ossuser from 49.207.241.70 port 30534
...
show less
Brute-Force
SSH
Showing 1 to
15
of 380 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ