This IP address has been reported a total of
28
times from
26 distinct
sources.
103.139.212.89 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
Report 1170607 with IP 2218156 for SSH brute-force attack by source 2212832 via ssh-honeypot/0.2.0+h ...
show moreReport 1170607 with IP 2218156 for SSH brute-force attack by source 2212832 via ssh-honeypot/0.2.0+http
show less
Jun 3 03:34:15 alpha sshd[666204]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid ...
show moreJun 3 03:34:15 alpha sshd[666204]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=103.139.212.89 user=root
Jun 3 03:34:17 alpha sshd[666204]: Failed password for root from 103.139.212.89 port 4583 ssh2
Jun 3 03:34:20 alpha sshd[666285]: Invalid user hduser from 103.139.212.89 port 2584
Jun 3 03:34:20 alpha sshd[666285]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=103.139.212.89
Jun 3 03:34:21 alpha sshd[666285]: Failed password for invalid user hduser from 103.139.212.89 port 2584 ssh2
...
show less
2024-06-03T02:50:15.319286+00:00 edge-thn-lhr01.int.pdx.net.uk sshd[1043368]: Invalid user elastic f ...
show more2024-06-03T02:50:15.319286+00:00 edge-thn-lhr01.int.pdx.net.uk sshd[1043368]: Invalid user elastic from 103.139.212.89 port 19378
2024-06-03T02:50:19.361136+00:00 edge-thn-lhr01.int.pdx.net.uk sshd[1043370]: Invalid user ec2 from 103.139.212.89 port 41078
2024-06-03T02:50:21.950714+00:00 edge-thn-lhr01.int.pdx.net.uk sshd[1043373]: Invalid user photo from 103.139.212.89 port 5989
...
show less
2024-06-03T01:25:12.907665+00:00 edge-fog-fra01.int.pdx.net.uk sshd[389305]: Invalid user photo from ...
show more2024-06-03T01:25:12.907665+00:00 edge-fog-fra01.int.pdx.net.uk sshd[389305]: Invalid user photo from 103.139.212.89 port 31254
2024-06-03T01:27:07.696507+00:00 edge-fog-fra01.int.pdx.net.uk sshd[389410]: Invalid user test from 103.139.212.89 port 5135
2024-06-03T01:27:16.024405+00:00 edge-fog-fra01.int.pdx.net.uk sshd[389415]: Invalid user hduser from 103.139.212.89 port 7122
...
show less
SSH Brute force: 13 attempts were recorded from 103.139.212.89
2024-06-03T01:47:04+02:00 Invalid use ...
show moreSSH Brute force: 13 attempts were recorded from 103.139.212.89
2024-06-03T01:47:04+02:00 Invalid user orangepi from 103.139.212.89 port 49299
2024-06-03T01:47:09+02:00 Invalid user dev from 103.139.212.89 port 11006
2024-06-03T01:47:11+02:00 Invalid user postgres from 103.139.212.89 port 54556
2024-06-03T01:47:13+02:00 Connection closed by authenticating user root 103.139.212.89 port 13305 [preauth]
2024-06-03T01:15:56+02:00 Invalid user orangepi from 103.139.212.89 port 37569
2024-06-03T01:17:05+02:00 Invalid user hduser from 103.139.212.89 port 19420
2024-06-03T01:17:47+02:00 Invalid user mcsrv from 103.139.212.89 port 48220
2024-06-03T01:18:20+02:00 Invalid user linuxadmin from 103.139.212.89 port 43547
2024-06-03T01:18:59+02:00 Invalid user asus from 103.139.212.89 port 42480
2024-06-03T01:19:06+02:00 Invalid user minecraft from 103.139.212.89 port 62990
2024-06-03T01:19:18+02:00 Con
show less
2024-06-02T23:58:31.948981+00:00 jomu sshd[3996688]: Invalid user orangepi from 103.139.212.89 port ...
show more2024-06-02T23:58:31.948981+00:00 jomu sshd[3996688]: Invalid user orangepi from 103.139.212.89 port 26774
2024-06-02T23:58:38.387307+00:00 jomu sshd[3996691]: Invalid user dev from 103.139.212.89 port 48714
2024-06-02T23:58:49.708309+00:00 jomu sshd[3996701]: Invalid user elastic from 103.139.212.89 port 35014
...
show less
2024-06-03T01:56:54.838532+02:00 shasta sshd[61868]: Invalid user ec2 from 103.139.212.89 port 11584 ...
show more2024-06-03T01:56:54.838532+02:00 shasta sshd[61868]: Invalid user ec2 from 103.139.212.89 port 11584
...
show less
Brute-Force
SSH
Anonymous
Jun 2 23:41:09 de-fra2-dns2 sshd[386882]: Invalid user dev from 103.139.212.89 port 33934
Jun 2 23 ...
show moreJun 2 23:41:09 de-fra2-dns2 sshd[386882]: Invalid user dev from 103.139.212.89 port 33934
Jun 2 23:41:14 de-fra2-dns2 sshd[386886]: Invalid user elastic from 103.139.212.89 port 16753
Jun 2 23:41:29 de-fra2-dns2 sshd[386889]: Invalid user weblogic from 103.139.212.89 port 2283
...
show less
2024-06-03T02:40:31.008309+03:00 zlydnev sshd[1035305]: Invalid user dev from 103.139.212.89 port 47 ...
show more2024-06-03T02:40:31.008309+03:00 zlydnev sshd[1035305]: Invalid user dev from 103.139.212.89 port 4785
2024-06-03T02:40:31.255812+03:00 zlydnev sshd[1035305]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=103.139.212.89
2024-06-03T02:40:33.294262+03:00 zlydnev sshd[1035305]: Failed password for invalid user dev from 103.139.212.89 port 4785 ssh2
2024-06-03T02:40:34.946177+03:00 zlydnev sshd[1035307]: Connection from 103.139.212.89 port 2594 on 5.252.118.130 port 22 rdomain ""
2024-06-03T02:40:35.934918+03:00 zlydnev sshd[1035307]: Invalid user postgres from 103.139.212.89 port 2594
...
show less
Jun 3 01:36:57 henshouse sshd[532559]: pam_unix(sshd:auth): authentication failure; logname= uid=0 ...
show moreJun 3 01:36:57 henshouse sshd[532559]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=103.139.212.89
Jun 3 01:36:59 henshouse sshd[532559]: Failed password for invalid user orangepi from 103.139.212.89 port 3766 ssh2
Jun 3 01:37:01 henshouse sshd[532695]: Invalid user dev from 103.139.212.89 port 49222
...
show less
Jun 2 20:35:16 vmori-manager-1 sshd[196928]: Invalid user orangepi from 103.139.212.89 port 40869
J ...
show moreJun 2 20:35:16 vmori-manager-1 sshd[196928]: Invalid user orangepi from 103.139.212.89 port 40869
Jun 2 20:35:17 vmori-manager-1 sshd[196928]: Connection closed by invalid user orangepi 103.139.212.89 port 40869 [preauth]
Jun 2 20:35:21 vmori-manager-1 sshd[196930]: Invalid user dev from 103.139.212.89 port 53765
...
show less
Jun 2 23:09:24 localhost sshd[761716]: Invalid user orangepi from 103.139.212.89 port 40911
Jun 2 ...
show moreJun 2 23:09:24 localhost sshd[761716]: Invalid user orangepi from 103.139.212.89 port 40911
Jun 2 23:09:26 localhost sshd[761716]: Failed password for invalid user orangepi from 103.139.212.89 port 40911 ssh2
Jun 2 23:09:26 localhost sshd[761716]: Connection closed by invalid user orangepi 103.139.212.89 port 40911 [preauth]
...
show less
Brute-Force
SSH
Showing 1 to
15
of 28 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ