This IP address has been reported a total of
3
times from
3 distinct
sources.
13.246.138.100 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
Australia
with 1
report;
Canada
with 1
report;
France
with 1
report.
The most common categories in these recent reports were:
SSH
3
times;
Brute-Force
3
times.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Sustained failed SSH authentication attempts recorded by a honeypot sensor network.
Threat score: 12 ...
show moreSustained failed SSH authentication attempts recorded by a honeypot sensor network.
Threat score: 12/100 (info) | Phase: reconnaissance (pre-auth probing / scanning)
Failed auth: 33 (3 bad password, 30 invalid user) | 0 success | 52 total SSH log events | seen on 1 sensor(s)
Origin: South Africa (ZA) | AS16509 Amazon.com, Inc. | datacenter | 13.246.138.0/24
First seen: 2026-10-07 18:05:56 UTC | Last seen: 2026-10-07 18:52:27 UTC
Source: Linux OpenSSH journalctl telemetry, multi-sensor CERT honeypot.
show less
2026-10-07T14:38:46.272761-04:00 nextcloud sshd[159287]: Invalid user odoo18 from 13.246.138.100 por ...
show more2026-10-07T14:38:46.272761-04:00 nextcloud sshd[159287]: Invalid user odoo18 from 13.246.138.100 port 20098
2026-10-07T14:38:47.643869-04:00 nextcloud sshd[160116]: Invalid user ubuntu from 13.246.138.100 port 20112
2026-10-07T14:38:49.021896-04:00 nextcloud sshd[160232]: Invalid user user1 from 13.246.138.100 port 20122
2026-10-07T14:38:51.734655-04:00 nextcloud sshd[161285]: Invalid user minecraft from 13.246.138.100 port 20142
2026-10-07T14:38:53.104005-04:00 nextcloud sshd[161292]: Invalid user ubnt from 13.246.138.100 port 20156
...
show less
2026-10-08T05:20:39.442267+11:00 mail1 sshd[3916206]: Failed password for invalid user odoo18 from 1 ...
show more2026-10-08T05:20:39.442267+11:00 mail1 sshd[3916206]: Failed password for invalid user odoo18 from 13.246.138.100 port 34376 ssh2
2026-10-08T05:20:44.636860+11:00 mail1 sshd[3916211]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=13.246.138.100 user=ubuntu
2026-10-08T05:20:46.726851+11:00 mail1 sshd[3916211]: Failed password for ubuntu from 13.246.138.100 port 37264 ssh2
...
show less
Brute-Force
SSH
Showing 1 to
3
of 3 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ