This IP address has been reported a total of
203
times from
143 distinct
sources.
94.158.49.223 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
(sshd) Failed SSH login from 94.158.49.223 (UZ/Uzbekistan/-): 5 in the last 3600 secs; Ports: *; Dir ...
show more(sshd) Failed SSH login from 94.158.49.223 (UZ/Uzbekistan/-): 5 in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_SSHD; Logs: Jun 14 05:47:55 14260 sshd[31125]: Invalid user luigi from 94.158.49.223 port 54514
Jun 14 05:47:57 14260 sshd[31125]: Failed password for invalid user luigi from 94.158.49.223 port 54514 ssh2
Jun 14 05:48:39 14260 sshd[31534]: Invalid user ubuntu from 94.158.49.223 port 59054
Jun 14 05:48:40 14260 sshd[31534]: Failed password for invalid user ubuntu from 94.158.49.223 port 59054 ssh2
Jun 14 05:48:52 14260 sshd[31586]: Invalid user anon from 94.158.49.223 port 58696
show less
Brute-Force
SSH
Anonymous
Jun 14 06:47:42 v sshd\[14063\]: Invalid user luigi from 94.158.49.223 port 52292
Jun 14 06:47:42 v ...
show moreJun 14 06:47:42 v sshd\[14063\]: Invalid user luigi from 94.158.49.223 port 52292
Jun 14 06:47:42 v sshd\[14063\]: pam_unix\(sshd:auth\): authentication failure\; logname= uid=0 euid=0 tty=ssh ruser= rhost=94.158.49.223
Jun 14 06:47:44 v sshd\[14063\]: Failed password for invalid user luigi from 94.158.49.223 port 52292 ssh2
...
show less
Cowrie Honeypot: 5 unauthorised SSH/Telnet login attempts between 2026-06-14T08:22:52Z and 2026-06-1 ...
show moreCowrie Honeypot: 5 unauthorised SSH/Telnet login attempts between 2026-06-14T08:22:52Z and 2026-06-14T09:31:00Z
show less
2026-06-14T08:39:08.146940+02:00 mail sshd-session[861504]: Failed password for root from 94.158.49. ...
show more2026-06-14T08:39:08.146940+02:00 mail sshd-session[861504]: Failed password for root from 94.158.49.223 port 41076 ssh2
2026-06-14T08:40:08.745614+02:00 mail sshd-session[861518]: Failed password for root from 94.158.49.223 port 46150 ssh2
2026-06-14T08:40:17.528640+02:00 mail sshd-session[861520]: Invalid user testuser from 94.158.49.223 port 51170
2026-06-14T08:40:19.967600+02:00 mail sshd-session[861520]: Failed password for invalid user testuser from 94.158.49.223 port 51170 ssh2
2026-06-14T08:40:27.539054+02:00 mail sshd-session[861524]: Invalid user postgres from 94.158.49.223 port 45112
...
show less
2026-06-14T04:16:57.393190+00:00 de-fra2-ddos1 sshd[1024713]: Invalid user julio from 94.158.49.223 ...
show more2026-06-14T04:16:57.393190+00:00 de-fra2-ddos1 sshd[1024713]: Invalid user julio from 94.158.49.223 port 52390
2026-06-14T04:18:08.691416+00:00 de-fra2-ddos1 sshd[1024740]: Invalid user nextcloud from 94.158.49.223 port 60708
2026-06-14T04:18:19.296552+00:00 de-fra2-ddos1 sshd[1024742]: Invalid user muhammad from 94.158.49.223 port 33758
...
show less
2026-06-14T03:54:59.755053+00:00 edge-zap-akl01.int.pdx.net.uk sshd-session[274167]: Invalid user sb ...
show more2026-06-14T03:54:59.755053+00:00 edge-zap-akl01.int.pdx.net.uk sshd-session[274167]: Invalid user sbserver from 94.158.49.223 port 55160
2026-06-14T03:55:09.397855+00:00 edge-zap-akl01.int.pdx.net.uk sshd-session[274228]: Invalid user omar from 94.158.49.223 port 60304
2026-06-14T03:55:17.885573+00:00 edge-zap-akl01.int.pdx.net.uk sshd-session[274230]: Invalid user gh from 94.158.49.223 port 57474
...
show less
2026-06-14T04:47:12.569509+01:00 ns3124905 sshd-session[2363196]: Invalid user gemini from 94.158.49 ...
show more2026-06-14T04:47:12.569509+01:00 ns3124905 sshd-session[2363196]: Invalid user gemini from 94.158.49.223 port 48374
2026-06-14T04:47:12.574180+01:00 ns3124905 sshd-session[2363196]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=94.158.49.223
2026-06-14T04:47:13.989128+01:00 ns3124905 sshd-session[2363196]: Failed password for invalid user gemini from 94.158.49.223 port 48374 ssh2
...
show less
2026-06-13 22:11:35.413312-0500 localhost sshd-session[53459]: Failed password for invalid user luc ...
show more2026-06-13 22:11:35.413312-0500 localhost sshd-session[53459]: Failed password for invalid user luca from 94.158.49.223 port 50946 ssh2
show less
Brute-Force
Anonymous
SSH brute force attempt. User: ubuntu, Pass: [REDACTED]
(sshd) Failed SSH login from 94.158.49.223 (UZ/Uzbekistan/-): 5 in the last 3600 secs; Ports: *; Dir ...
show more(sshd) Failed SSH login from 94.158.49.223 (UZ/Uzbekistan/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_SSHD; Logs: Jun 14 02:42:56 zone sshd[2577415]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=94.158.49.223 user=admin
Jun 14 02:42:57 zone sshd[2577415]: Failed password for admin from 94.158.49.223 port 45042 ssh2
Jun 14 02:43:56 zone sshd[2577601]: Invalid user tunnel from 94.158.49.223 port 41220
Jun 14 02:43:58 zone sshd[2577601]: Failed password for invalid user tunnel from 94.158.49.223 port 41220 ssh2
Jun 14 02:44:06 zone sshd[2577662]: Invalid user root123 from 94.158.49.223 port 37468
show less
94.158.49.223 (UZ/Uzbekistan/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; ...
show more94.158.49.223 (UZ/Uzbekistan/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_DISTATTACK; Logs: Jun 13 17:32:03 13860 sshd[30850]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=94.158.49.223 user=root
Jun 13 17:32:05 13860 sshd[30850]: Failed password for root from 94.158.49.223 port 39228 ssh2
Jun 13 17:20:19 13860 sshd[24435]: Failed password for root from 194.163.179.198 port 33992 ssh2
Jun 13 17:33:12 13860 sshd[31442]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=194.163.179.198 user=root
Jun 13 17:20:17 13860 sshd[24435]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=194.163.179.198 user=root
IP Addresses Blocked:
show less
Brute-Force
SSH
Showing 1 to
15
of 203 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ