This IP address has been reported a total of
35
times from
32 distinct
sources.
125.21.133.130 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
[Honeypot] Malicious activity detected by honeypot on port 3389. IP attempted unauthorized access to ...
show more[Honeypot] Malicious activity detected by honeypot on port 3389. IP attempted unauthorized access to decoy service. Original message: RDP brute force attack from honeypot - User: connection_attempt. Attempted credentials captured.
show less
Brute-Force
Web App Attack
Anonymous
Apr 30 05:58:11 madrants sshd[1524902]: pam_unix(sshd:auth): authentication failure; logname= uid=0 ...
show moreApr 30 05:58:11 madrants sshd[1524902]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=125.21.133.130
Apr 30 05:58:12 madrants sshd[1524902]: Failed password for invalid user user from 125.21.133.130 port 62894 ssh2
Apr 30 05:58:27 madrants sshd[1524914]: Invalid user user2 from 125.21.133.130 port 63382
...
show less
NL05-RN-AMS.vps.992969.xyz: SSH Brute Force from 125.21.133.130 at 2026-04-23 09:05:27 IST
Brute-Force
SSH
Anonymous
Automated report: IP 125.21.133.130 detected in ssh-bruteforce activity on convergentdefense.com. Se ...
show moreAutomated report: IP 125.21.133.130 detected in ssh-bruteforce activity on convergentdefense.com. Seen 1x, first: 2026-03-12 20:00. [ISAC-India]
show less
Fail2Ban Jail: ssh-proxmox-honeypot | Evidence: Mar 24 10:33:06 fisher sshd[135258]: Invalid user ad ...
show moreFail2Ban Jail: ssh-proxmox-honeypot | Evidence: Mar 24 10:33:06 fisher sshd[135258]: Invalid user admin from 125.21.133.130 port 52397
show less
2026-03-21T04:47:53.149860-05:00 clair-mc sshd-session[1116982]: Invalid user admin from 125.21.133. ...
show more2026-03-21T04:47:53.149860-05:00 clair-mc sshd-session[1116982]: Invalid user admin from 125.21.133.130 port 51938
2026-03-21T04:47:58.312490-05:00 clair-mc sshd-session[1116988]: Invalid user admin from 125.21.133.130 port 51996
2026-03-21T04:48:00.776208-05:00 clair-mc sshd-session[1116990]: Invalid user user from 125.21.133.130 port 52026
...
show less
ThreatBook Intelligence: Scanner more details on http://threatbook.io/ip/125.21.133.130
Brute-Force
Anonymous
Automated report: IP 125.21.133.130 triggered 5 sshd rule violations within the monitoring window. A ...
show moreAutomated report: IP 125.21.133.130 triggered 5 sshd rule violations within the monitoring window. Action: banned for 3600s. [ISAC-India]
show less
2026-02-14T14:09:55.972524+01:00 hosting.defencegeeks.net sshd-session[403468]: pam_unix(sshd:auth): ...
show more2026-02-14T14:09:55.972524+01:00 hosting.defencegeeks.net sshd-session[403468]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=125.21.133.130
2026-02-14T14:09:58.206013+01:00 hosting.defencegeeks.net sshd-session[403468]: Failed password for invalid user user from 125.21.133.130 port 62436 ssh2
2026-02-14T14:10:09.975691+01:00 hosting.defencegeeks.net sshd-session[403674]: Invalid user admin from 125.21.133.130 port 62852
2026-02-14T14:10:09.980398+01:00 hosting.defencegeeks.net sshd-session[403674]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=125.21.133.130
2026-02-14T14:10:12.053625+01:00 hosting.defencegeeks.net sshd-session[403674]: Failed password for invalid user admin from 125.21.133.130 port 62852 ssh2
2026-02-14T14:10:12.387390+01:00 hosting.defencegeeks.net sshd-session[403677]: Invalid user user from 125.21.133.130 port 62929
...
show less
Jan 29 20:27:17 zurich-2 sshd[1679921]: Invalid user user from 125.21.133.130 port 50349
Jan 29 20:2 ...
show moreJan 29 20:27:17 zurich-2 sshd[1679921]: Invalid user user from 125.21.133.130 port 50349
Jan 29 20:27:17 zurich-2 sshd[1679921]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=125.21.133.130
Jan 29 20:27:19 zurich-2 sshd[1679921]: Failed password for invalid user user from 125.21.133.130 port 50349 ssh2
...
show less
Brute-Force
SSH
Anonymous
Jan 29 19:21:52 vm2-md sshd[1021429]: Invalid user admin from 125.21.133.130 port 54662
Jan 29 19:22 ...
show moreJan 29 19:21:52 vm2-md sshd[1021429]: Invalid user admin from 125.21.133.130 port 54662
Jan 29 19:22:10 vm2-md sshd[1021436]: Invalid user admin from 125.21.133.130 port 56189
Jan 29 19:22:12 vm2-md sshd[1021441]: Invalid user user from 125.21.133.130 port 56371
...
show less
2026-01-29T09:11:09.904365+01:00 isik-one sshd[4102301]: Invalid user user from 125.21.133.130 port ...
show more2026-01-29T09:11:09.904365+01:00 isik-one sshd[4102301]: Invalid user user from 125.21.133.130 port 52360
2026-01-29T09:11:16.362643+01:00 isik-one sshd[4102316]: Invalid user user from 125.21.133.130 port 52955
2026-01-29T09:11:21.615927+01:00 isik-one sshd[4102343]: Invalid user admin from 125.21.133.130 port 53433
2026-01-29T09:11:32.420562+01:00 isik-one sshd[4102371]: Invalid user user2 from 125.21.133.130 port 54437
2026-01-29T09:11:52.032863+01:00 isik-one sshd[4102401]: Invalid user user from 125.21.133.130 port 56155
...
show less
Brute-Force
SSH
Showing 1 to
15
of 35 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ