This IP address has been reported a total of
154
times from
103 distinct
sources.
49.207.243.125 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
Ip 49.207.243.125 performed 'crowdsecurity/ssh-slow-bf' (17 events over 6m40.509917205s) at 2026-01- ...
show moreIp 49.207.243.125 performed 'crowdsecurity/ssh-slow-bf' (17 events over 6m40.509917205s) at 2026-01-06 04:41:18.890450814 +0000 UTC
show less
Brute-Force
SSH
Anonymous
2026-01-06T04:32:41.704289+00:00 rs2 sshd[1873313]: Invalid user k8s from 49.207.243.125 port 15750
...
show more2026-01-06T04:32:41.704289+00:00 rs2 sshd[1873313]: Invalid user k8s from 49.207.243.125 port 15750
2026-01-06T04:37:58.209327+00:00 rs2 sshd[1873654]: Invalid user claude from 49.207.243.125 port 17187
2026-01-06T04:39:14.385964+00:00 rs2 sshd[1873664]: Invalid user infra from 49.207.243.125 port 16449
...
show less
Jan 6 03:34:30 mail sshd[3199557]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid ...
show moreJan 6 03:34:30 mail sshd[3199557]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=49.207.243.125 user=root
Jan 6 03:34:32 mail sshd[3199557]: Failed password for root from 49.207.243.125 port 15652 ssh2
Jan 6 03:35:09 mail sshd[3200036]: Invalid user testusr from 49.207.243.125 port 17344
...
show less
2026-01-06T03:32:14.959480+01:00 hz-dedi-sx134-fsn sshd[229007]: Invalid user wang from 49.207.243.1 ...
show more2026-01-06T03:32:14.959480+01:00 hz-dedi-sx134-fsn sshd[229007]: Invalid user wang from 49.207.243.125 port 17336
2026-01-06T03:36:06.966783+01:00 hz-dedi-sx134-fsn sshd[230359]: Invalid user cashier from 49.207.243.125 port 17382
2026-01-06T03:36:51.044162+01:00 hz-dedi-sx134-fsn sshd[230630]: Invalid user contas from 49.207.243.125 port 17102
...
show less
Jan 6 02:01:03 fail2ban sshd[2754014]: pam_unix(sshd:auth): authentication failure; logname= uid=0 ...
show moreJan 6 02:01:03 fail2ban sshd[2754014]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=49.207.243.125
Jan 6 02:01:05 fail2ban sshd[2754014]: Failed password for invalid user odoo from 49.207.243.125 port 15480 ssh2
...
show less
Jan 6 02:33:18 Akhenaton sshd[37564]: Failed password for root from 49.207.243.125 port 16840 ssh2
...
show moreJan 6 02:33:18 Akhenaton sshd[37564]: Failed password for root from 49.207.243.125 port 16840 ssh2
Jan 6 02:37:02 Akhenaton sshd[39840]: Invalid user user1 from 49.207.243.125 port 16228
...
show less
Jan 5 23:39:13 mx sshd[561534]: Failed password for invalid user claude from 49.207.243.125 port 16 ...
show moreJan 5 23:39:13 mx sshd[561534]: Failed password for invalid user claude from 49.207.243.125 port 16728 ssh2
Jan 5 23:41:46 mx sshd[561582]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=49.207.243.125 user=root
Jan 5 23:41:48 mx sshd[561582]: Failed password for root from 49.207.243.125 port 15894 ssh2
...
show less
Jan 6 00:37:11 mail sshd[1539126]: Failed password for invalid user claude from 49.207.243.125 port ...
show moreJan 6 00:37:11 mail sshd[1539126]: Failed password for invalid user claude from 49.207.243.125 port 15748 ssh2
Jan 6 00:41:33 mail sshd[1540180]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=49.207.243.125 user=root
Jan 6 00:41:35 mail sshd[1540180]: Failed password for root from 49.207.243.125 port 16452 ssh2
...
show less
2026-01-05T23:08:53.637962+00:00 MailServer-Slave sshd[226088]: pam_unix(sshd:auth): authentication ...
show more2026-01-05T23:08:53.637962+00:00 MailServer-Slave sshd[226088]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=49.207.243.125
2026-01-05T23:08:55.361084+00:00 MailServer-Slave sshd[226088]: Failed password for invalid user claude from 49.207.243.125 port 15418 ssh2
...
show less
Brute-Force
SSH
Showing 1 to
15
of 154 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ