This IP address has been reported a total of
35
times from
29 distinct
sources.
52.242.243.99 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
ThreatBook Intelligence: Spam,Info more details on https://threatbook.io/ip/52.242.243.99
2026-04-11 ...
show moreThreatBook Intelligence: Spam,Info more details on https://threatbook.io/ip/52.242.243.99
2026-04-11 05:40:10 ["hostname"]
2026-04-11 05:19:52 ["ps aux | head -10"]
2026-04-11 05:30:31 ["hostname"]
show less
2026-04-10T16:12:20.645896-05:00 ip-172-31-76-241 sshd[382830]: Connection closed by authenticating ...
show more2026-04-10T16:12:20.645896-05:00 ip-172-31-76-241 sshd[382830]: Connection closed by authenticating user root 52.242.243.99 port 36800 [preauth]
2026-04-10T16:32:27.648972-05:00 ip-172-31-76-241 sshd[519548]: Connection closed by authenticating user root 52.242.243.99 port 36800 [preauth]
2026-04-10T16:52:52.766403-05:00 ip-172-31-76-241 sshd[696359]: Connection closed by authenticating user root 52.242.243.99 port 36800 [preauth]
...
show less
2026-04-10T21:42:07.627982+00:00 ip-172-31-32-95 sshd[700071]: Failed password for root from 52.242. ...
show more2026-04-10T21:42:07.627982+00:00 ip-172-31-32-95 sshd[700071]: Failed password for root from 52.242.243.99 port 36800 ssh2
2026-04-10T21:48:52.734269+00:00 ip-172-31-32-95 sshd[700075]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=52.242.243.99 user=root
2026-04-10T21:48:54.804636+00:00 ip-172-31-32-95 sshd[700075]: Failed password for root from 52.242.243.99 port 36800 ssh2
...
show less
2026-04-10T21:02:12.094108+00:00 ip-172-31-5-127 sshd[3161030]: Connection closed by authenticating ...
show more2026-04-10T21:02:12.094108+00:00 ip-172-31-5-127 sshd[3161030]: Connection closed by authenticating user root 52.242.243.99 port 36800 [preauth]
2026-04-10T21:21:33.748434+00:00 ip-172-31-5-127 sshd[3166567]: Connection closed by authenticating user root 52.242.243.99 port 36800 [preauth]
2026-04-10T21:28:19.763405+00:00 ip-172-31-5-127 sshd[3167733]: Connection closed by authenticating user root 52.242.243.99 port 36800 [preauth]
...
show less
2026-04-10T14:02:12.740541-07:00 server.vexstria.pro sshd[1078963]: Failed password for root from 52 ...
show more2026-04-10T14:02:12.740541-07:00 server.vexstria.pro sshd[1078963]: Failed password for root from 52.242.243.99 port 36800 ssh2
2026-04-10T14:03:52.296509-07:00 server.vexstria.pro sshd[1126122]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=52.242.243.99 user=root
2026-04-10T14:03:54.373556-07:00 server.vexstria.pro sshd[1126122]: Failed password for root from 52.242.243.99 port 36800 ssh2
...
show less
Suspicious user agent detected Python/3.9 aiohttp/3.10.6. Threat Score: 0/10 (INFORMATIONAL). Report ...
show moreSuspicious user agent detected Python/3.9 aiohttp/3.10.6. Threat Score: 0/10 (INFORMATIONAL). Reported by TangerangKota-CSIRT
show less