This IP address has been reported a total of
59
times from
14 distinct
sources.
49.232.193.149 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
2026-06-06T18:14:31.194483+02:00 router02.w-p-k.de sshd[1668713]: Connection closed by authenticatin ...
show more2026-06-06T18:14:31.194483+02:00 router02.w-p-k.de sshd[1668713]: Connection closed by authenticating user root 49.232.193.149 port 49040 [preauth]
2026-06-06T18:21:09.990717+02:00 router02.w-p-k.de sshd[1669655]: Connection closed by authenticating user root 49.232.193.149 port 44196 [preauth]
2026-06-06T18:21:12.075969+02:00 router02.w-p-k.de sshd[1669657]: Connection closed by authenticating user root 49.232.193.149 port 42532 [preauth]
2026-06-06T18:23:36.958448+02:00 router02.w-p-k.de sshd[1669889]: Connection closed by authenticating user root 49.232.193.149 port 58104 [preauth]
2026-06-06T18:25:45.718673+02:00 router02.w-p-k.de sshd[1670207]: Connection closed by authenticating user root 49.232.193.149 port 37440 [preauth]
show less
2026-06-06T17:24:14.936298+02:00 router02.w-p-k.de sshd[1662181]: Invalid user albert from 49.232.19 ...
show more2026-06-06T17:24:14.936298+02:00 router02.w-p-k.de sshd[1662181]: Invalid user albert from 49.232.193.149 port 38282
2026-06-06T17:24:15.113805+02:00 router02.w-p-k.de sshd[1662181]: Connection closed by invalid user albert 49.232.193.149 port 38282 [preauth]
2026-06-06T17:24:15.993769+02:00 router02.w-p-k.de sshd[1662372]: Invalid user taobao from 49.232.193.149 port 34226
2026-06-06T17:24:17.063314+02:00 router02.w-p-k.de sshd[1662372]: Connection closed by invalid user taobao 49.232.193.149 port 34226 [preauth]
2026-06-06T17:24:20.335050+02:00 router02.w-p-k.de sshd[1662377]: Invalid user sysadmin from 49.232.193.149 port 34240
show less
2026-06-05T11:30:53.620800+02:00 router02.w-p-k.de sshd[1251643]: Connection closed by authenticatin ...
show more2026-06-05T11:30:53.620800+02:00 router02.w-p-k.de sshd[1251643]: Connection closed by authenticating user root 49.232.193.149 port 56092 [preauth]
2026-06-05T11:33:01.709702+02:00 router02.w-p-k.de sshd[1251887]: Invalid user ksyun from 49.232.193.149 port 36930
2026-06-05T11:33:01.886895+02:00 router02.w-p-k.de sshd[1251887]: Connection closed by invalid user ksyun 49.232.193.149 port 36930 [preauth]
2026-06-05T11:33:13.886976+02:00 router02.w-p-k.de sshd[1251954]: Connection closed by authenticating user root 49.232.193.149 port 36940 [preauth]
2026-06-05T11:37:20.666290+02:00 router02.w-p-k.de sshd[1252502]: Invalid user albert from 49.232.193.149 port 35730
show less
2026-05-20T17:08:05.726988+02:00 router01.kfz-heimchen.de sshd-session[2774922]: Connection closed b ...
show more2026-05-20T17:08:05.726988+02:00 router01.kfz-heimchen.de sshd-session[2774922]: Connection closed by authenticating user root 49.232.193.149 port 56480 [preauth]
2026-05-20T17:10:17.745933+02:00 router01.kfz-heimchen.de sshd-session[2775616]: Connection closed by authenticating user root 49.232.193.149 port 55606 [preauth]
2026-05-20T17:12:49.931588+02:00 router01.kfz-heimchen.de sshd-session[2776161]: Connection closed by authenticating user root 49.232.193.149 port 38648 [preauth]
2026-05-20T17:12:53.281179+02:00 router01.kfz-heimchen.de sshd-session[2776198]: Connection closed by authenticating user root 49.232.193.149 port 59798 [preauth]
2026-05-20T17:19:17.051022+02:00 router01.kfz-heimchen.de sshd-session[2777893]: Connection closed by authenticating user root 49.232.193.149 port 43824 [preauth]
show less
ThreatBook Intelligence: Scanner,Dynamic IP more details on https://threatbook.io/ip/49.232.193.149
...
show moreThreatBook Intelligence: Scanner,Dynamic IP more details on https://threatbook.io/ip/49.232.193.149
2026-05-18 17:06:46 ["uname -a"]
show less
ThreatBook Intelligence: Scanner,Dynamic IP more details on https://threatbook.io/ip/49.232.193.149
...
show moreThreatBook Intelligence: Scanner,Dynamic IP more details on https://threatbook.io/ip/49.232.193.149
2026-05-10 05:00:37 ["uname -a"]
show less