Go
117.239.48.242
is a
Hacker
100 %
India
Report Abuse
1030attacks reported
795Brute-ForceSSH
80Brute-Force
62SSH
19Port ScanBrute-ForceSSH
17HackingBrute-ForceSSH
15uncategorized
9Port ScanHackingBrute-ForceWeb App AttackSSH
9Hacking
5HackingBrute-Force
3DDoS Attack
...
from 163 distinct reporters
and 8 distinct sources : BadIPs.com, Blocklist.de, darklist.de, FireHOL, Charles Haley, NoThink.org, NormShield.com, AbuseIPDB
117.239.48.242 was first signaled at 2017-12-02 15:56 and last record was at 2019-08-01 17:21.
IP

117.239.48.242

Organization
National Internet Backbone
Localisation
India
Andhra Pradesh, Hyderabad
NetRange : First & Last IP
117.239.48.0 - 117.239.48.7
Network CIDR
117.239.48.0/29

Cybercrime IP Feeds

Date UTC Category Sub Categories Source List Source Logs
2019-04-08 08:42 attacks Brute-Force AbuseIPDB Apr 8 19:36:43 mysql sshd\[21697\]: Invalid user yarul from 117.239.48.242\ Apr 8 19:36:45 mysql sshd\[21697\]: Failed password for invalid user yarul
2019-04-08 08:21 attacks Brute-ForceSSH AbuseIPDB Apr 8 19:14:50 0ut3r sshd[13312]: Invalid user orange from 117.239.48.242 Apr 8 19:14:50 0ut3r sshd[13312]: pam_unix(sshd:auth): authentication failur
2019-04-08 07:23 attacks SSH AbuseIPDB Apr 8 16:23:33 thevastnessof sshd[11215]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=117.239.48.242
2019-04-08 06:42 attacks Brute-ForceSSH AbuseIPDB Apr 8 11:42:17 TORMINT sshd\[26462\]: Invalid user webdata from 117.239.48.242 Apr 8 11:42:17 TORMINT sshd\[26462\]: pam_unix\(sshd:auth\): authentica
2019-04-08 05:01 attacks Brute-Force AbuseIPDB Apr 8 16:00:52 herz-der-gamer sshd[8720]: Invalid user minecraft3 from 117.239.48.242 port 44150
2019-04-08 04:16 attacks Port ScanHackingBrute-ForceWeb App Attack AbuseIPDB 2019-04-08T15:08:46.787930lon01.zurich-datacenter.net sshd\[30204\]: Invalid user agarwal from 117.239.48.242 port 38042 2019-04-08T15:08:46.792148lon
2019-04-08 03:16 attacks Port ScanBrute-ForceSSH AbuseIPDB Apr 8 14:09:34 MainVPS sshd[9264]: Invalid user eb from 117.239.48.242 port 44656 Apr 8 14:09:34 MainVPS sshd[9264]: pam_unix(sshd:auth): authenticati
2019-04-08 03:08 attacks Brute-Force AbuseIPDB $f2bV_matches
2019-04-08 02:52 attacks Brute-ForceSSH AbuseIPDB Apr 8 14:47:24 lukav-desktop sshd\[20331\]: Invalid user abastillas from 117.239.48.242 Apr 8 14:47:24 lukav-desktop sshd\[20331\]: pam_unix\(sshd:aut
2019-04-08 01:52 attacks Brute-ForceSSH AbuseIPDB Apr 8 10:45:17 ip-172-31-62-245 sshd\[577\]: Invalid user craft from 117.239.48.242\ Apr 8 10:45:19 ip-172-31-62-245 sshd\[577\]: Failed password for
2019-04-07 23:00 attacks Brute-ForceSSH AbuseIPDB Apr 8 09:51:17 SilenceServices sshd[30316]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=117.239.48.242 Apr
2019-04-07 22:14 attacks Brute-ForceSSH AbuseIPDB Apr 8 07:24:51 itv-usvr-01 sshd[15548]: Invalid user gaurav from 117.239.48.242 port 52712 Apr 8 07:24:51 itv-usvr-01 sshd[15548]: pam_unix(sshd:auth)
2019-04-07 18:08 attacks Brute-ForceSSH AbuseIPDB 2019-04-08T05:08:33.505114scmdmz1 sshd\[15537\]: Invalid user jq from 117.239.48.242 port 45134 2019-04-08T05:08:33.508111scmdmz1 sshd\[15537\]: pam_u
2019-04-07 15:34 attacks Brute-ForceSSH AbuseIPDB Apr 7 20:24:47 debian sshd[14507]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=117.239.48.242 Apr 7 20:24:
2019-04-07 15:31 attacks Brute-ForceSSH AbuseIPDB SSH Brute-Force reported by Fail2Ban
2019-04-07 15:03 attacks Brute-Force AbuseIPDB Apr 8 02:03:41 herz-der-gamer sshd[23690]: Invalid user ts3server from 117.239.48.242 port 59994 Apr 8 02:03:41 herz-der-gamer sshd[23690]: pam_unix(s
2019-04-07 13:08 attacks Brute-ForceSSH AbuseIPDB Apr 7 23:08:50 mail sshd\[7302\]: Invalid user itump from 117.239.48.242 port 49568 Apr 7 23:08:50 mail sshd\[7302\]: pam_unix\(sshd:auth\): authentic
2019-04-07 11:08 attacks Brute-ForceSSH AbuseIPDB Apr 7 19:16:28 cvbmail sshd\[18689\]: Invalid user jira from 117.239.48.242 Apr 7 19:16:28 cvbmail sshd\[18689\]: pam_unix\(sshd:auth\): authenticatio
2019-04-07 09:08 attacks Brute-ForceSSH AbuseIPDB Apr 7 19:03:34 marquez sshd[30839]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=117.239.48.242 Apr 7 19:03
2019-04-07 09:07 attacks Brute-ForceSSH AbuseIPDB Apr 7 14:07:18 Tower sshd[23348]: Connection from 117.239.48.242 port 56446 on 192.168.10.220 port 22 Apr 7 14:07:19 Tower sshd[23348]: Invalid user m
2019-04-07 07:55 attacks Brute-ForceSSH AbuseIPDB Apr 7 18:48:27 ns41 sshd[27752]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=117.239.48.242 Apr 7 18:48:29
2019-04-07 07:14 attacks Brute-Force AbuseIPDB DATE:2019-04-07 18:14:33,IP:117.239.48.242,MATCHES:2,PORT:22 Brute force on a honeypot SSH server
2019-04-07 04:40 attacks Brute-ForceSSH AbuseIPDB 2019-04-07T15:40:26.9234641240 sshd\[14609\]: Invalid user scpuser from 117.239.48.242 port 58940 2019-04-07T15:40:26.9287901240 sshd\[14609\]: pam_un
2019-04-07 00:25 attacks Brute-ForceSSH AbuseIPDB SSH bruteforce
2019-04-06 23:45 attacks Hacking AbuseIPDB Apr 7 10:39:59 h2177944 sshd\[27727\]: Invalid user ki from 117.239.48.242 port 46594 Apr 7 10:39:59 h2177944 sshd\[27727\]: pam_unix\(sshd:auth\): au
2019-04-06 21:22 attacks Port Scan AbuseIPDB SSH/RDP/Plesk/Webmin sniffing
2019-04-06 20:35 attacks Brute-ForceSSH AbuseIPDB Tried sshing with brute force.
2019-04-06 14:14 attacks Brute-ForceSSH AbuseIPDB Apr 7 01:14:06 * sshd[6081]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=117.239.48.242 Apr 7 01:14:08 * s
2019-04-06 13:53 attacks Brute-ForceSSH AbuseIPDB Apr 7 00:48:29 lnxweb62 sshd[21705]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=117.239.48.242 Apr 7 00:4
2019-04-06 04:24 attacks Brute-ForceSSH AbuseIPDB Apr 6 20:24:51 itv-usvr-01 sshd[31681]: Invalid user dell from 117.239.48.242
2019-04-06 00:27 attacks Brute-Force AbuseIPDB Apr 6 09:27:36 unicornsoft sshd\[23069\]: Invalid user isadmin from 117.239.48.242 Apr 6 09:27:36 unicornsoft sshd\[23069\]: pam_unix\(sshd:auth\): au
2019-04-05 15:58 attacks Brute-ForceSSH AbuseIPDB SSH Brute-Force reported by Fail2Ban
2019-04-05 15:10 attacks Brute-ForceSSH AbuseIPDB Apr 6 02:10:06 vpn01 sshd\[11525\]: Invalid user rpcuser from 117.239.48.242 Apr 6 02:10:06 vpn01 sshd\[11525\]: pam_unix\(sshd:auth\): authentication
2019-04-05 13:57 attacks Brute-ForceSSH AbuseIPDB Apr 6 00:57:49 * sshd[17883]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=117.239.48.242 Apr 6 00:57:52 *
2019-04-05 11:21 attacks Brute-ForceSSH AbuseIPDB Apr 5 22:21:53 mail sshd\[31774\]: Invalid user securityagent from 117.239.48.242 port 51838 Apr 5 22:21:53 mail sshd\[31774\]: Disconnected from 117.
2019-04-05 11:17 attacks Brute-ForceSSH AbuseIPDB Apr 5 22:17:55 cvbmail sshd\[22133\]: Invalid user db2f94 from 117.239.48.242 Apr 5 22:17:55 cvbmail sshd\[22133\]: pam_unix\(sshd:auth\): authenticat
2019-04-05 06:47 attacks Brute-ForceSSH AbuseIPDB Apr 5 17:47:45 mail sshd[22186]: Invalid user bob from 117.239.48.242 Apr 5 17:47:45 mail sshd[22186]: pam_unix(sshd:auth): authentication failure; lo
2019-04-05 05:27 attacks Brute-ForceSSH AbuseIPDB  
2019-04-05 05:15 attacks Brute-ForceSSH AbuseIPDB Apr 5 16:15:53 srv206 sshd[1956]: Invalid user identd from 117.239.48.242 Apr 5 16:15:53 srv206 sshd[1956]: pam_unix(sshd:auth): authentication failur
2019-04-05 05:10 attacks Brute-ForceSSH AbuseIPDB Apr 5 16:10:15 * sshd[18266]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=117.239.48.242 Apr 5 16:10:17 *
2019-04-05 00:58 attacks Brute-ForceSSH AbuseIPDB Apr 5 10:58:58 mail sshd\[2829\]: Invalid user robert from 117.239.48.242 port 43820 Apr 5 10:58:58 mail sshd\[2829\]: pam_unix\(sshd:auth\): authenti
2019-04-04 22:03 attacks Brute-ForceSSH AbuseIPDB Apr 5 10:02:58 server01 sshd\[21207\]: Invalid user hbase from 117.239.48.242 Apr 5 10:02:58 server01 sshd\[21207\]: pam_unix\(sshd:auth\): authentica
2019-04-04 22:02 attacks SSH AbuseIPDB Apr 5 07:02:30 thevastnessof sshd[13471]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=117.239.48.242
2019-04-04 19:21 attacks Brute-ForceSSH AbuseIPDB Apr 5 09:51:27 tanzim-HP-Z238-Microtower-Workstation sshd\[1914\]: Invalid user dbuser from 117.239.48.242 Apr 5 09:51:27 tanzim-HP-Z238-Microtower-Wo
2019-04-04 16:21 attacks Brute-ForceSSH AbuseIPDB 2019-04-05T03:21:03.647269stark.klein-stark.info sshd\[5798\]: Invalid user css from 117.239.48.242 port 33422 2019-04-05T03:21:03.653094stark.klein-s
2019-04-04 11:31 attacks Brute-ForceSSH AbuseIPDB Apr 4 22:29:27 [host] sshd[28136]: Invalid user redhat from 117.239.48.242 Apr 4 22:29:27 [host] sshd[28136]: pam_unix(sshd:auth): authentication fail
2019-04-04 11:10 attacks Brute-ForceSSH AbuseIPDB Apr 4 22:10:27 tuxlinux sshd[60974]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=117.239.48.242 Apr 4 22:
2019-04-04 10:31 attacks Brute-ForceSSH AbuseIPDB Apr 4 21:31:38 nextcloud sshd\[12414\]: Invalid user pramod from 117.239.48.242 Apr 4 21:31:38 nextcloud sshd\[12414\]: pam_unix\(sshd:auth\): authent
2019-04-04 09:26 attacks Brute-ForceSSH AbuseIPDB SSH Brute-Force reported by Fail2Ban
2019-04-04 05:27 attacks Brute-ForceSSH AbuseIPDB Apr 4 16:27:33 vmd17057 sshd\[23291\]: Invalid user linux from 117.239.48.242 port 39482 Apr 4 16:27:33 vmd17057 sshd\[23291\]: pam_unix\(sshd:auth\):
2017-12-02 15:56 attacks Brute-ForceSSH AbuseIPDB At least 15 unauthorized ssh requests in quick succession in the past 30 days.
2017-12-02 18:19 attacks Brute-ForceSSH AbuseIPDB Bruteforce from 117.239.48.242
2017-12-02 22:40 attacks HackingBrute-Force AbuseIPDB >10 unauthorized SSH connections
2017-12-02 23:21 attacks Brute-ForceSSH AbuseIPDB Did not receive identification string
2017-12-03 02:08 attacks DDoS AttackPort ScanBrute-ForceExploited Host AbuseIPDB Brute forcing ssh login
2017-12-03 02:15 attacks DDoS AttackPort ScanBrute-ForceExploited Host AbuseIPDB Brute forcing ssh login
2017-12-03 02:28 attacks DDoS AttackPort ScanBrute-ForceExploited Host AbuseIPDB Brute forcing ssh login
2017-12-03 02:33 attacks DDoS AttackPort ScanBrute-ForceExploited Host AbuseIPDB Brute forcing ssh login
2017-12-03 02:43 attacks Brute-ForceSSH AbuseIPDB 2017-05-21 22:35:17 -> 2017-05-22 00:21:47 : 13 login attempts (117.239.48.242)
2017-12-03 02:52 attacks Brute-ForceSSH AbuseIPDB fail2ban SSH bruteforce ban
2019-03-29 18:18 attacks bi_any_0_1d BadIPs.com  
2019-03-29 18:19 attacks bi_any_1_7d BadIPs.com  
2019-03-29 18:19 attacks bi_any_2_1d BadIPs.com  
2019-03-29 18:19 attacks bi_any_2_30d BadIPs.com  
2019-03-29 18:19 attacks bi_any_2_7d BadIPs.com  
2019-03-29 18:19 attacks bi_default_0_1d BadIPs.com  
2019-03-29 18:19 attacks bi_default_1_7d BadIPs.com  
2019-03-29 18:19 attacks bi_default_2_30d BadIPs.com  
2019-03-29 18:20 attacks SSH bi_sshd_0_1d BadIPs.com  
2019-03-29 18:20 attacks SSH bi_sshd_1_7d BadIPs.com  
2019-03-29 18:20 attacks SSH bi_sshd_2_30d BadIPs.com  
2019-03-29 18:20 attacks SSH bi_ssh_0_1d BadIPs.com  
2019-03-29 18:20 attacks SSH bi_ssh_1_7d BadIPs.com  
2019-03-29 18:20 attacks SSH bi_ssh_2_30d BadIPs.com  
2019-03-29 18:20 attacks bi_unknown_0_1d BadIPs.com  
2019-03-29 18:20 attacks bi_unknown_1_7d BadIPs.com  
2019-03-29 18:20 attacks bi_unknown_2_30d BadIPs.com  
2019-03-29 18:21 attacks blocklist_de Blocklist.de  
2019-03-29 18:21 attacks SSH blocklist_de_ssh Blocklist.de  
2019-03-29 18:23 attacks darklist_de darklist.de  
2019-03-29 18:27 attacks firehol_level2 FireHOL  
2019-03-29 18:27 attacks firehol_level4 FireHOL  
2019-03-29 18:34 attacks SSH haley_ssh Charles Haley  
2019-05-28 23:19 attacks Bad Web Bot bi_badbots_1_7d BadIPs.com  
2019-05-28 23:19 attacks Brute-Force bi_bruteforce_1_7d BadIPs.com  
2019-06-03 22:59 attacks SSH nt_ssh_7d NoThink.org  
2019-06-12 12:54 attacks Bad Web Bot bi_badbots_0_1d BadIPs.com  
2019-06-12 12:54 attacks Brute-Force bi_bruteforce_0_1d BadIPs.com  
2019-08-01 17:20 attacks Brute-Force normshield_all_bruteforce NormShield.com  
2019-08-01 17:21 attacks Brute-Force normshield_high_bruteforce NormShield.com  
only last 50 and first 10 AbuseIPDB logs are shown

Threats Categories :

abuse
IPs used to spam forum, boards, blogs or smtp servers, automated web scripts or scrappers (bad bots)
anonymizer
Onion Router IP addresses. TOR network IPs, TOR exit points, socks or ssl proxy.
attacks
bruteforce ssh/ftp/system account, IPs that have been detected by fail2ban, ports scan, vulnerabilities scan, DDoS.
malware
Addresses that have been identified distributing malware, form-grabber and stealer, Viruses, Worms, Trojans, Ransomware, Adware, Spyware

Whois

inetnum: 117.239.48.0 - 117.239.48.7
netname: SRINIVASAVIDYA1
descr: SRI SRINIVASA VIDYA PARISHAD
descr: pothinamallayyapalem
descr: Visakhapatnam
descr:
admin-c: AS1188-AP
tech-c: AS1189-AP
country: IN
admin-c: NIV1-AP
admin-c: NC83-AP
tech-c: CDN1-AP
mnt-by: MAINT-IN-DOT
mnt-irt: IRT-BSNL-IN
status: ASSIGNED NON-PORTABLE
last-modified: 2010-11-25T06:04:01Z
source: APNIC

irt: IRT-BSNL-IN
address: Internet Cell
address: Bharat Sanchar Nigam Limited
address: 8th Floor,148-B Statesman House
address: Barakhamba Road, New Delhi - 110 001
e-mail: abuse@bsnl.in
abuse-mailbox: abuse@bsnl.in
admin-c: NC83-AP
tech-c: CGMD1-AP
auth: # Filtered
mnt-by: MAINT-IN-DOT
last-modified: 2017-10-20T05:42:50Z
source: APNIC

role: CGM Data Networks
address: CTS Compound
address: Netaji Nagar
address: New Delhi- 110 023
country: IN
phone: +91-11-24106782
phone: +91-11-24102119
fax-no: +91-11-26116783
fax-no: +91-11-26887888
e-mail: dnwplg@bsnl.in
e-mail: hostmaster@bsnl.in
admin-c: CGMD1-AP
tech-c: DT197-AP
tech-c: BH155-AP
nic-hdl: CDN1-AP
mnt-by: MAINT-IN-DOT
last-modified: 2016-10-01T09:10:26Z
source: APNIC

role: NS Cell
address: Internet Cell
address: Bharat Sanchar Nigam Limited
address: 8th Floor,148-B Statesman House
address: Barakhamba Road, New Delhi - 110 001
country: IN
phone: +91-11-23734057
phone: +91-11-23710183
fax-no: +91-11-23734052
e-mail: hostmaster@bsnl.in
e-mail: abuse@bsnl.in
admin-c: CGMD1-AP
tech-c: DT197-AP
nic-hdl: NC83-AP
mnt-by: MAINT-IN-DOT
last-modified: 2016-10-01T09:05:15Z
source: APNIC

person: A SIVAPRASAD
nic-hdl: AS1188-AP
address: pothinamallayyapalem
address: Visakhapatnam
address:
phone: +91-0891-2538797
fax-no: +91-0891-2781375
country: IN
e-mail: asivaprasad.akula@gmail.com
mnt-by: MAINT-IN-PER-DOT
last-modified: 2010-11-25T05:30:01Z
source: APNIC

person: A SIVAPRASAD
nic-hdl: AS1189-AP
address: pothinamallayyapalem
address: Visakhapatnam
address:
phone: +91-0891-2538797
fax-no: +91-0891-2781375
country: IN
e-mail: asivaprasad.akula@gmail.com
mnt-by: MAINT-IN-PER-DOT
last-modified: 2010-11-25T05:30:01Z
source: APNIC

person: Node Incharge VIZAG
nic-hdl: NIV1-AP
address: NIB VIZAG
address: TELEPHONE EXCHANGE, VELAMPETA,VISAKHAPATNAM-530 001
phone: +91-0891-568014
fax-no: +91-0891-524828
country: IN
e-mail: nib_vizag@sancharnet.in
mnt-by: MAINT-IN-PER-DOT
last-modified: 2008-09-04T07:31:40Z
source: APNIC

route: 117.239.48.0/20
descr: BSNL Internet
country: IN
origin: AS9829
mnt-lower: MAINT-IN-DOT
mnt-routes: MAINT-IN-DOT
mnt-by: MAINT-IN-AS9829
last-modified: 2008-09-04T07:55:07Z
source: APNIC
most specific ip range is highlighted
Updated : 2019-01-24