This IP address has been reported a total of
132
times from
67 distinct
sources.
118.193.62.172 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Jun 29 23:41:42 mx sshd[713403]: Failed password for root from 118.193.62.172 port 12028 ssh2
Jun 29 ...
show moreJun 29 23:41:42 mx sshd[713403]: Failed password for root from 118.193.62.172 port 12028 ssh2
Jun 29 23:41:55 mx sshd[713403]: Disconnecting authenticating user root 118.193.62.172 port 12028: Change of username or service not allowed: (root,ssh-connection) -> (test,ssh-connection) [preauth]
Jun 29 23:41:57 mx sshd[713409]: Invalid user test from 118.193.62.172 port 36130
...
show less
2026-06-30T06:15:30.459795 mustar-kr-miso sshd[843720]: Failed password for root from 118.193.62.172 ...
show more2026-06-30T06:15:30.459795 mustar-kr-miso sshd[843720]: Failed password for root from 118.193.62.172 port 41212 ssh2
2026-06-30T06:15:32.753378 mustar-kr-miso sshd[843720]: Failed password for root from 118.193.62.172 port 41212 ssh2
2026-06-30T06:15:36.454052 mustar-kr-miso sshd[843720]: Failed password for root from 118.193.62.172 port 41212 ssh2
2026-06-30T06:15:40.022841 mustar-kr-miso sshd[843720]: Failed password for root from 118.193.62.172 port 41212 ssh2
2026-06-30T06:15:43.829916 mustar-kr-miso sshd[843720]: Failed password for root from 118.193.62.172 port 41212 ssh2
...
show less
byebyte.space auth: TCP packet to port 6379 (Redis) at 2026-06-29T02:50:06Z. Source port 43712. TCP ...
show morebyebyte.space auth: TCP packet to port 6379 (Redis) at 2026-06-29T02:50:06Z. Source port 43712. TCP flags: SYN. Packet: 60B, TTL 39, window 64952, IP id 38060. Single packet, dropped at firewall. p0f: OS Linux 2.2.x-3.x (generic match), 25 hops, link DSL.
show less
byebyte.space auth: TCP packet to port 6379 (Redis) at 2026-06-29T01:40:05Z. Source port 22142. TCP ...
show morebyebyte.space auth: TCP packet to port 6379 (Redis) at 2026-06-29T01:40:05Z. Source port 22142. TCP flags: SYN. Packet: 60B, TTL 39, window 64952, IP id 51956. Single packet, dropped at firewall. p0f: OS Linux 2.2.x-3.x (generic match), 25 hops, link DSL.
show less
Automatically generated from firewall_v2 logs on SID:VTMI3
Category: Port Scan
Occurrences: 20
Un ...
show moreAutomatically generated from firewall_v2 logs on SID:VTMI3
Category: Port Scan
Occurrences: 20
Unique Ports: 1
Destination Ports:
6379
First Seen:
2026-06-25 21:00 UTC
Last Seen:
2026-06-29 01:30 UTC
show less
[rede-164-29] 06/28/2026-21:50:58.483459, 118.193.62.172, Protocol: 6, ET CINS Active Threat Intelli ...
show more[rede-164-29] 06/28/2026-21:50:58.483459, 118.193.62.172, Protocol: 6, ET CINS Active Threat Intelligence Poor Reputation IP group 167
show less
Blocked by UFW on ampereone [6379/tcp]
Source port: 41090
TTL: 38
Packet length: 60
TOS: 0x00
This ...
show moreBlocked by UFW on ampereone [6379/tcp]
Source port: 41090
TTL: 38
Packet length: 60
TOS: 0x00
This report was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Automatically generated from firewall_v2 logs on SID:VTMI1
Category: Port Scan
Occurrences: 20
Un ...
show moreAutomatically generated from firewall_v2 logs on SID:VTMI1
Category: Port Scan
Occurrences: 20
Unique Ports: 1
Destination Ports:
6379
First Seen:
2026-06-25 21:00 UTC
Last Seen:
2026-06-28 20:35 UTC
show less