This IP address has been reported a total of
39
times from
23 distinct
sources.
147.45.60.250 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Zimbra: Login failures from malicious IP: 147.45.60.250. Threat Score: 6/10 (MEDIUM). Reported by Ta ...
show moreZimbra: Login failures from malicious IP: 147.45.60.250. Threat Score: 6/10 (MEDIUM). Reported by TangerangKota-CSIRT
show less
Banned by Multi Agent · node …jrh1 · reason=SSH banner invalid / banner exchange invalid format · at ...
show moreBanned by Multi Agent · node …jrh1 · reason=SSH banner invalid / banner exchange invalid format · attempts=1 · SSH banner invalid / banner exchange invalid format
show less
Brute-Force
SSH
Anonymous
2026-07-27T07:10:29.346813+00:00 host-164-37-102-58 sshd[2847640]: pam_unix(sshd:auth): authenticati ...
show more2026-07-27T07:10:29.346813+00:00 host-164-37-102-58 sshd[2847640]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=147.45.60.250
2026-07-27T07:10:31.124831+00:00 host-164-37-102-58 sshd[2847640]: Failed password for invalid user ubuntu from 147.45.60.250 port 51354 ssh2
2026-07-27T07:12:16.564994+00:00 host-164-37-102-58 sshd[2859705]: Invalid user ubuntu from 147.45.60.250 port 52416
...
show less
Brute-Force
SSH
Anonymous
2026-07-27T05:54:39.653787+00:00 host-164-37-102-58 sshd[2339863]: pam_unix(sshd:auth): authenticati ...
show more2026-07-27T05:54:39.653787+00:00 host-164-37-102-58 sshd[2339863]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=147.45.60.250
2026-07-27T05:54:41.793973+00:00 host-164-37-102-58 sshd[2339863]: Failed password for invalid user ubuntu from 147.45.60.250 port 55046 ssh2
2026-07-27T05:56:13.296101+00:00 host-164-37-102-58 sshd[2350686]: Invalid user ubuntu from 147.45.60.250 port 39770
...
show less
Brute-Force
SSH
Anonymous
2026-07-27T04:34:04.973257+00:00 host-164-37-102-58 sshd[1801404]: pam_unix(sshd:auth): authenticati ...
show more2026-07-27T04:34:04.973257+00:00 host-164-37-102-58 sshd[1801404]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=147.45.60.250
2026-07-27T04:34:07.354575+00:00 host-164-37-102-58 sshd[1801404]: Failed password for invalid user ubuntu from 147.45.60.250 port 37120 ssh2
2026-07-27T04:39:00.120907+00:00 host-164-37-102-58 sshd[1833937]: Invalid user ubuntu from 147.45.60.250 port 60520
...
show less
(mod_security) mod_security (id:210492) triggered by 147.45.60.250 (23052.ip-ptr.tech): 1 in the las ...
show more(mod_security) mod_security (id:210492) triggered by 147.45.60.250 (23052.ip-ptr.tech): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Jul 26 23:40:37.179771 2026] [security2:error] [pid 3076462:tid 3076462] [client 147.45.60.250:51734] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "airdriedrivingschool.com"] [uri "/.env"] [unique_id "ambTNVBNksv8RvkFA27BPAAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-07-27T03:17:02.145873+00:00 host-164-37-102-58 sshd[1285924]: pam_unix(sshd:auth): authenticati ...
show more2026-07-27T03:17:02.145873+00:00 host-164-37-102-58 sshd[1285924]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=147.45.60.250
2026-07-27T03:17:04.672788+00:00 host-164-37-102-58 sshd[1285924]: Failed password for invalid user ubuntu from 147.45.60.250 port 37620 ssh2
2026-07-27T03:19:03.400037+00:00 host-164-37-102-58 sshd[1299681]: Invalid user ubuntu from 147.45.60.250 port 51858
...
show less