This IP address has been reported a total of
280
times from
155 distinct
sources.
49.207.244.110 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
(sshd) Failed SSH login from 49.207.244.110 (IN/India/broadband.actcorp.in): 5 in the last 3600 secs ...
show more(sshd) Failed SSH login from 49.207.244.110 (IN/India/broadband.actcorp.in): 5 in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_SSHD; Logs: Dec 3 04:16:54 13042 sshd[12490]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=49.207.244.110 user=root
Dec 3 04:16:57 13042 sshd[12490]: Failed password for root from 49.207.244.110 port 59968 ssh2
Dec 3 04:18:46 13042 sshd[12642]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=49.207.244.110 user=root
Dec 3 04:18:48 13042 sshd[12642]: Failed password for root from 49.207.244.110 port 61338 ssh2
Dec 3 04:20:11 13042 sshd[12807]: Invalid user elastic from 49.207.244.110 port 60714
show less
2025-12-03T18:15:05.818778+08:00 localhost sshd[3725719]: Disconnected from authenticating user root ...
show more2025-12-03T18:15:05.818778+08:00 localhost sshd[3725719]: Disconnected from authenticating user root 49.207.244.110 port 59839 [preauth]
2025-12-03T18:18:08.258755+08:00 localhost sshd[3726533]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=49.207.244.110 user=root
2025-12-03T18:18:10.246201+08:00 localhost sshd[3726533]: Failed password for root from 49.207.244.110 port 60966 ssh2
...
show less
Interceptor Intrusion Detection:
pam_unix(sshd:auth): authentication failure;; logname= uid=0 euid=0 ...
show moreInterceptor Intrusion Detection:
pam_unix(sshd:auth): authentication failure;; logname= uid=0 euid=0 tty=ssh ruser= rhost=49.207.244.110 - Failed password for root from 49.207.244.110 port 61004 ssh2 - pam_unix(sshd:auth): authentication failure;; logname= uid=0 euid=0 tty=ssh ruser= rhost=49.207.244.110 user=root - Failed password for invalid user openbravo from 49.207.244.110 port 60700 ssh2 - Invalid user openbravo from 49.207.244.110 port 60700 - Invalid user cc from 49.207.244.110 port 59830 - Failed password for invalid user cc from 49.207.244.110 port 59830 ssh2 - pam_unix(sshd:auth): authentication failure;; logname= uid=0 euid=0 tty=ssh ruser= rhost=49.207.244.110
show less
2025-12-03T10:30:37.539936+01:00 rico-j.de sshd-session[2310598]: Connection from 49.207.244.110 por ...
show more2025-12-03T10:30:37.539936+01:00 rico-j.de sshd-session[2310598]: Connection from 49.207.244.110 port 59620 on 5.45.102.214 port 22 rdomain ""
2025-12-03T10:30:38.503148+01:00 rico-j.de sshd-session[2310598]: Invalid user myuser from 49.207.244.110 port 59620
2025-12-03T10:33:31.496530+01:00 rico-j.de sshd-session[2313297]: Connection from 49.207.244.110 port 59694 on 5.45.102.214 port 22 rdomain ""
2025-12-03T10:33:32.458452+01:00 rico-j.de sshd-session[2313297]: Invalid user localhost from 49.207.244.110 port 59694
...
show less
Dec 3 09:29:59 antti-vps2 sshd[1272522]: Invalid user myuser from 49.207.244.110 port 60568
Dec 3 ...
show moreDec 3 09:29:59 antti-vps2 sshd[1272522]: Invalid user myuser from 49.207.244.110 port 60568
Dec 3 09:31:21 antti-vps2 sshd[1286483]: Connection from 49.207.244.110 port 60841 on 10.0.0.124 port 22 rdomain ""
Dec 3 09:31:22 antti-vps2 sshd[1286483]: User root from 49.207.244.110 not allowed because none of user's groups are listed in AllowGroups
Dec 3 09:31:53 antti-vps2 sshd[1291794]: Connection from 49.207.244.110 port 60133 on 10.0.0.124 port 22 rdomain ""
Dec 3 09:31:54 antti-vps2 sshd[1291794]: Invalid user super from 49.207.244.110 port 60133
...
show less
(sshd) Failed SSH login from 49.207.244.110 (IN/India/broadband.actcorp.in): 5 in the last 3600 secs ...
show more(sshd) Failed SSH login from 49.207.244.110 (IN/India/broadband.actcorp.in): 5 in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_SSHD; Logs: Dec 3 09:28:02 24007 sshd[4026]: Invalid user cc from 49.207.244.110 port 59717
Dec 3 09:28:04 24007 sshd[4026]: Failed password for invalid user cc from 49.207.244.110 port 59717 ssh2
Dec 3 09:29:43 24007 sshd[4177]: Invalid user redmine from 49.207.244.110 port 61094
Dec 3 09:29:44 24007 sshd[4177]: Failed password for invalid user redmine from 49.207.244.110 port 61094 ssh2
Dec 3 09:31:07 24007 sshd[4370]: Invalid user myuser from 49.207.244.110 port 59923
show less
2025-12-03T10:27:36.640890+01:00 lufischer2 sshd[1719105]: Failed password for invalid user cc from ...
show more2025-12-03T10:27:36.640890+01:00 lufischer2 sshd[1719105]: Failed password for invalid user cc from 49.207.244.110 port 61129 ssh2
2025-12-03T10:29:34.389626+01:00 lufischer2 sshd[1719121]: Invalid user redmine from 49.207.244.110 port 61067
2025-12-03T10:29:34.393168+01:00 lufischer2 sshd[1719121]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=49.207.244.110
2025-12-03T10:29:36.005290+01:00 lufischer2 sshd[1719121]: Failed password for invalid user redmine from 49.207.244.110 port 61067 ssh2
2025-12-03T10:30:57.872055+01:00 lufischer2 sshd[1719128]: Invalid user myuser from 49.207.244.110 port 59710
...
show less
2025-12-03T09:07:42.635714+00:00 cirno sshd[3058229]: Invalid user webuser from 49.207.244.110 port ...
show more2025-12-03T09:07:42.635714+00:00 cirno sshd[3058229]: Invalid user webuser from 49.207.244.110 port 60564
2025-12-03T09:10:19.959246+00:00 cirno sshd[3058337]: Invalid user adam from 49.207.244.110 port 59726
2025-12-03T09:11:34.937078+00:00 cirno sshd[3058356]: Invalid user sales1 from 49.207.244.110 port 60790
2025-12-03T09:14:23.553421+00:00 cirno sshd[3058405]: Invalid user desliga from 49.207.244.110 port 59870
2025-12-03T09:15:47.185314+00:00 cirno sshd[3058428]: Invalid user jenkins from 49.207.244.110 port 59764
...
show less
Brute-Force
SSH
Showing 1 to
15
of 280 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ