This IP address has been reported a total of
390
times from
143 distinct
sources.
111.68.104.76 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
Germany
with 18
reports;
France
with 5
reports;
Netherlands
with 4
reports.
The most common categories in these recent reports were:
Port Scan
29
times;
Brute-Force
18
times;
Hacking
11
times;
SSH
8
times;
Web App Attack
3
times;
Other
4
times.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Attempt on port 445 (SMB) - potential unauthorized file-share access attempt. Blocked by firewall (u ...
show moreAttempt on port 445 (SMB) - potential unauthorized file-share access attempt. Blocked by firewall (unsolicited inbound, no prior outbound connection). 2 attempts observed within the last 24h. Ports targeted: 445, 1433.
show less
PortSentry honeypot: unsolicited TCP connection to closed decoy port 445 (SMB) on a host running no ...
show morePortSentry honeypot: unsolicited TCP connection to closed decoy port 445 (SMB) on a host running no such service. Automated port-scan detection at 2026-09-30T07:55:12Z.
show less
2026-09-29T02:47:12.824928-07:00 leela sshd[1843604]: Invalid user admin from 111.68.104.76 port 588 ...
show more2026-09-29T02:47:12.824928-07:00 leela sshd[1843604]: Invalid user admin from 111.68.104.76 port 58885
2026-09-29T02:47:16.748121-07:00 leela sshd[1843608]: Invalid user admin from 111.68.104.76 port 63491
2026-09-29T02:47:18.679163-07:00 leela sshd[1843610]: Invalid user user from 111.68.104.76 port 63996
2026-09-29T02:47:20.627480-07:00 leela sshd[1843612]: Invalid user user2 from 111.68.104.76 port 5410
2026-09-29T02:47:24.589364-07:00 leela sshd[1843617]: Invalid user admin from 111.68.104.76 port 57194
...
show less
Brute-Force
SSH
Anonymous
2026-09-29T09:59:38.360584+02:00 vps kernel: [7039567.275505] [PORTSCAN DETECTED] IN=ens3 OUT= MAC=f ...
show more2026-09-29T09:59:38.360584+02:00 vps kernel: [7039567.275505] [PORTSCAN DETECTED] IN=ens3 OUT= MAC=fa:16:3e:66:f6:24:02:37:19:0d:c2:f3:08:00 SRC=111.68.104.76 DST=54.37.14.118 LEN=52 TOS=0x00 PREC=0x00 TTL=108 ID=1120 DF PROTO=TCP SPT=50167 DPT=445 WINDOW=8192 RES=0x00 SYN URGP=0
...
show less
Port Scan
Brute-Force
Anonymous
Blocked by firewall on hugin [1433/tcp] | Rule: UFW | SPT: 59637 | TTL: 114 | LEN: 52 | TOS: 0x00 โข ...
show moreBlocked by firewall on hugin [1433/tcp] | Rule: UFW | SPT: 59637 | TTL: 114 | LEN: 52 | TOS: 0x00 โข Reported by: github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Sep 22 03:38:50 proxy-03 sshd[719748]: Failed password for invalid user admin from 111.68.104.76 por ...
show moreSep 22 03:38:50 proxy-03 sshd[719748]: Failed password for invalid user admin from 111.68.104.76 port 20240 ssh2
Sep 22 03:38:50 proxy-03 sshd[719788]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=111.68.104.76 user=root
Sep 22 03:38:52 proxy-03 sshd[719788]: Failed password for root from 111.68.104.76 port 62549 ssh2
Sep 22 03:39:04 proxy-03 sshd[720069]: Invalid user admin from 111.68.104.76 port 62667
Sep 22 03:39:07 proxy-03 sshd[720157]: Invalid user user from 111.68.104.76 port 62691
...
show less
PortSentry honeypot: unsolicited TCP connection to closed decoy port 445 (SMB) on a host running no ...
show morePortSentry honeypot: unsolicited TCP connection to closed decoy port 445 (SMB) on a host running no such service. Automated port-scan detection at 2026-09-16T06:47:13Z.
show less