This IP address has been reported a total of
94
times from
54 distinct
sources.
125.164.20.252 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
(sshd) Failed SSH login from 125.164.20.252 (ID/Indonesia/-): 5 in the last 3600 secs; Ports: *; Dir ...
show more(sshd) Failed SSH login from 125.164.20.252 (ID/Indonesia/-): 5 in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_SSHD; Logs: Jul 22 11:55:36 localhost sshd[4053775]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=125.164.20.252 user=root
Jul 22 11:55:38 localhost sshd[4053775]: Failed password for root from 125.164.20.252 port 3712 ssh2
Jul 22 12:00:37 localhost sshd[4056106]: Invalid user ali from 125.164.20.252 port 1460
Jul 22 12:00:37 localhost sshd[4056106]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=125.164.20.252
Jul 22 12:00:39 localhost sshd[4056106]: Failed password for invalid user ali from 125.164.20.252 port 1460 ssh2
show less
Brute-Force
SSH
Anonymous
125.164.20.252 (ID/Indonesia/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; ...
show more125.164.20.252 (ID/Indonesia/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_DISTATTACK; Logs: Jul 21 23:55:50 server2 sshd[29619]: Failed password for root from 125.164.19.185 port 29269 ssh2
Jul 21 23:56:01 server2 sshd[29639]: Failed password for root from 114.7.28.4 port 54054 ssh2
Jul 21 23:57:02 server2 sshd[32707]: Failed password for root from 125.164.20.252 port 10536 ssh2
Jul 21 23:52:15 server2 sshd[28891]: Failed password for root from 124.238.113.126 port 59283 ssh2
Jul 21 23:53:30 server2 sshd[29161]: Failed password for root from 125.164.21.121 port 27826 ssh2
IP Addresses Blocked:
125.164.19.185 (ID/Indonesia/-)
114.7.28.4 (ID/Indonesia/-)
show less
2024-07-22T05:14:54.147498news0.dwmp.it sshd[7164]: pam_unix(sshd:auth): authentication failure; log ...
show more2024-07-22T05:14:54.147498news0.dwmp.it sshd[7164]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=125.164.20.252
2024-07-22T05:14:56.263364news0.dwmp.it sshd[7164]: Failed password for invalid user dockeruser from 125.164.20.252 port 10208 ssh2
2024-07-22T05:16:04.627882news0.dwmp.it sshd[7196]: User root from 125.164.20.252 not allowed because not listed in AllowUsers
...
show less
2024-07-21T18:46:25.256856+00:00 edge-jnb-con01.int.pdx.net.uk sshd[638634]: Failed password for inv ...
show more2024-07-21T18:46:25.256856+00:00 edge-jnb-con01.int.pdx.net.uk sshd[638634]: Failed password for invalid user tester from 125.164.20.252 port 13306 ssh2
2024-07-21T18:54:41.339040+00:00 edge-jnb-con01.int.pdx.net.uk sshd[639041]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=125.164.20.252 user=root
2024-07-21T18:54:43.861355+00:00 edge-jnb-con01.int.pdx.net.uk sshd[639041]: Failed password for root from 125.164.20.252 port 3099 ssh2
...
show less
2024-07-21T17:39:32.091521+00:00 rh-backup sshd[366511]: pam_unix(sshd:auth): authentication failure ...
show more2024-07-21T17:39:32.091521+00:00 rh-backup sshd[366511]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=125.164.20.252
2024-07-21T17:39:34.607652+00:00 rh-backup sshd[366511]: Failed password for invalid user lighthouse from 125.164.20.252 port 21594 ssh2
2024-07-21T17:39:35.357100+00:00 rh-backup sshd[366511]: Disconnected from invalid user lighthouse 125.164.20.252 port 21594 [preauth]
...
show less
2024-07-21T17:28:58.960183+02:00 docker sshd[346690]: pam_unix(sshd:auth): authentication failure; l ...
show more2024-07-21T17:28:58.960183+02:00 docker sshd[346690]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=125.164.20.252
2024-07-21T17:29:00.670092+02:00 docker sshd[346690]: Failed password for invalid user sysadmin from 125.164.20.252 port 27025 ssh2
2024-07-21T17:33:47.271678+02:00 docker sshd[347543]: Invalid user amiri from 125.164.20.252 port 20480
2024-07-21T17:33:47.276296+02:00 docker sshd[347543]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=125.164.20.252
2024-07-21T17:33:49.659218+02:00 docker sshd[347543]: Failed password for invalid user amiri from 125.164.20.252 port 20480 ssh2
...
show less
Brute-Force
SSH
Showing 1 to
15
of 94 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ