This IP address has been reported a total of
110
times from
99 distinct
sources.
130.211.67.46 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
SSH/Telnet honeypot (endlessh) on habith.eu: 35 connection attempts trapped, total tarpit time 11.8m ...
show moreSSH/Telnet honeypot (endlessh) on habith.eu: 35 connection attempts trapped, total tarpit time 11.8min. Automated report.
show less
[bas-9] SSH abuse from 130.211.67.46: 9 x crowdsecurity/ssh-bf matched by the behaviour engine (auto ...
show more[bas-9] SSH abuse from 130.211.67.46: 9 x crowdsecurity/ssh-bf matched by the behaviour engine (automated sensor)
show less
2026-08-22T12:54:44.271495+02:00 pve-osd-202 sshd[346167]: Unable to negotiate with 130.211.67.46 po ...
show more2026-08-22T12:54:44.271495+02:00 pve-osd-202 sshd[346167]: Unable to negotiate with 130.211.67.46 port 51634: no matching key exchange method found. Their offer: diffie-hellman-group1-sha1 [preauth]
2026-08-22T12:54:51.643287+02:00 pve-osd-202 sshd[346183]: Unable to negotiate with 130.211.67.46 port 35986: no matching host key type found. Their offer: ssh-dss [preauth]
2026-08-22T12:54:51.899327+02:00 pve-osd-202 sshd[346185]: Unable to negotiate with 130.211.67.46 port 35994: no matching host key type found. Their offer: ssh-rsa [preauth]
2026-08-22T12:54:52.505126+02:00 pve-osd-202 sshd[346189]: Unable to negotiate with 130.211.67.46 port 36010: no matching host key type found. Their offer: ecdsa-sha2-nistp384 [preauth]
2026-08-22T12:54:52.759412+02:00 pve-osd-202 sshd[346191]: Unable to negotiate with 130.211.67.46 port 36014: no matching host key type found. Their offer: ecdsa-sha2-nistp521 [preauth]
...
show less
Aug 22 18:48:57 mail sshd[15741]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 ...
show moreAug 22 18:48:57 mail sshd[15741]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=130.211.67.46
Aug 22 18:48:59 mail sshd[15741]: Failed password for invalid user admin from 130.211.67.46 port 19372 ssh2
show less
Aug 22 03:46:10 web sshd[24968]: User admin from 130.211.67.46 not allowed because none of user's gr ...
show moreAug 22 03:46:10 web sshd[24968]: User admin from 130.211.67.46 not allowed because none of user's groups are listed in AllowGroups
Aug 22 03:46:10 web sshd[24968]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=130.211.67.46 user=admin
Aug 22 03:46:10 web sshd[24968]: pam_sss(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=130.211.67.46 user=admin
Aug 22 03:46:12 web sshd[24968]: Failed password for invalid user admin from 130.211.67.46 port 15556 ssh2
...
show less
2026-08-22T12:23:34.874227+03:00 kotia sshd[2791709]: Invalid user admin from 130.211.67.46 port 146 ...
show more2026-08-22T12:23:34.874227+03:00 kotia sshd[2791709]: Invalid user admin from 130.211.67.46 port 14660
...
show less
Bad SSHAUTH 2026.08.22 11:06:37
blocked until 2026.08.25 11:06:37
by HoneyPot US-EAST_ashburn01
SSH
Brute-Force
Hacking
Anonymous
2026-08-22T09:02:03.110639+00:00 HongKong2 sshd-session[2810441]: Connection closed by 130.211.67.46 ...
show more2026-08-22T09:02:03.110639+00:00 HongKong2 sshd-session[2810441]: Connection closed by 130.211.67.46 port 22158 [preauth]
2026-08-22T09:02:03.740450+00:00 HongKong2 sshd-session[2810519]: Unable to negotiate with 130.211.67.46 port 22164: no matching cipher found. Their offer: aes128-ctr,aes192-ctr,aes256-ctr,aes256-cbc,[email protected],aes192-cbc,aes128-cbc,blowfish-cbc,arcfour128,arcfour,cast128-cbc,3des-cbc [preauth]
...
show less
SSH credential brute-force observed by honeypot.
Source IP: 130.211.67.46
Targeted device: NAS
First ...
show moreSSH credential brute-force observed by honeypot.
Source IP: 130.211.67.46
Targeted device: NAS
First seen: 22 Aug 2026 07:59:08 UTC
Last seen: 22 Aug 2026 07:59:08 UTC
Attempts: 1
Client: SSH-2.0-Go
Sample credentials: admin:admin
show less
Brute-Force
SSH
IoT Targeted
Showing 1 to
15
of 110 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ