This IP address has been reported a total of
43
times from
39 distinct
sources.
134.199.156.39 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
SSH Honeypot attack.
{"client_version":"SSH-2.0-Go","duser":"root","level":"info","msg":"Request wit ...
show moreSSH Honeypot attack.
{"client_version":"SSH-2.0-Go","duser":"root","level":"info","msg":"Request with password","password":"123456","server_version":"SSH-2.0-OpenSSH_7.9p1 Debian-10","src":"134.199.156.39","time":"2026-03-16T00:41:42.526675998Z"}
{"client_version":"SSH-2.0-Go","duser":"root","level":"info","msg":"Request with password","password":"password","server_version":"SSH-2.0-OpenSSH_7.9p1 Debian-10","src":"134.199.156.39","time":"2026-03-16T00:42:59.552557907Z"}
{"client_version":"SSH-2.0-Go","duser":"root","level":"info","msg":"Request with password","password":"admin","server_version":"SSH-2.0-OpenSSH_7.9p1 Debian-10","src":"134.199.156.39","time":"2026-03-16T00:44:15.360858836Z"}
{"client_version":"SSH-2.0-Go","duser":"root","level":"info","msg":"Request with password","password":"toor","server_version":"SSH-2.0-OpenSSH_7.9p1 Debian-10","src":"134.199.156.39","time":"2026-03-16T00:45:21.87462606Z"}
{"client_version":"SSH-2.0-Go","duser":"root","level":"info","msg":"Request with password","passw
...
show less
Mar 16 00:43:48 s238143 sshd[2689034]: Failed password for root from 134.199.156.39 port 40170 ssh2
...
show moreMar 16 00:43:48 s238143 sshd[2689034]: Failed password for root from 134.199.156.39 port 40170 ssh2
Mar 16 00:44:52 s238143 sshd[2689140]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=134.199.156.39 user=root
Mar 16 00:44:54 s238143 sshd[2689140]: Failed password for root from 134.199.156.39 port 42516 ssh2
Mar 16 00:45:58 s238143 sshd[2689262]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=134.199.156.39 user=root
Mar 16 00:46:01 s238143 sshd[2689262]: Failed password for root from 134.199.156.39 port 57310 ssh2
...
show less
Mar 16 01:42:53 [host] sshd[6073]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid= ...
show moreMar 16 01:42:53 [host] sshd[6073]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=
Mar 16 01:42:55 [host] sshd[6073]: Failed password for root from 134.199.156.39 port 47174 ssh2
Mar 16 01:42:56 [host] sshd[6073]: Connection closed by authenticating user root 134.199.156.39 port
Mar 16 01:44:09 [host] sshd[6130]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=
Mar 16 01:44:11 [host] sshd[6130]: Failed password for root from 134.199.156.39 port 59652 ssh2
show less
Mar 16 01:41:29 node2 sshd[432549]: Failed password for root from 134.199.156.39 port 47802 ssh2
Mar ...
show moreMar 16 01:41:29 node2 sshd[432549]: Failed password for root from 134.199.156.39 port 47802 ssh2
Mar 16 01:42:43 node2 sshd[432677]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=134.199.156.39 user=root
Mar 16 01:42:46 node2 sshd[432677]: Failed password for root from 134.199.156.39 port 54756 ssh2
Mar 16 01:43:59 node2 sshd[432896]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=134.199.156.39 user=root
Mar 16 01:44:01 node2 sshd[432896]: Failed password for root from 134.199.156.39 port 58534 ssh2
...
show less
2026-03-16T01:41:24.606166+01:00 ruysdoos.beruys.net sshd-session[1794952]: User root from 134.199.1 ...
show more2026-03-16T01:41:24.606166+01:00 ruysdoos.beruys.net sshd-session[1794952]: User root from 134.199.156.39 not allowed because none of user's groups are listed in AllowGroups
2026-03-16T01:42:41.535800+01:00 ruysdoos.beruys.net sshd-session[1795702]: User root from 134.199.156.39 not allowed because none of user's groups are listed in AllowGroups
2026-03-16T01:43:57.905112+01:00 ruysdoos.beruys.net sshd-session[1796652]: User root from 134.199.156.39 not allowed because none of user's groups are listed in AllowGroups
...
show less
Mar 15 17:42:18 ftp-green sshd[508681]: Failed password for root from 134.199.156.39 port 40346 ssh2 ...
show moreMar 15 17:42:18 ftp-green sshd[508681]: Failed password for root from 134.199.156.39 port 40346 ssh2
Mar 15 17:42:20 ftp-green sshd[508681]: Connection closed by authenticating user root 134.199.156.39 port 40346 [preauth]
Mar 15 17:43:34 ftp-green sshd[508812]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=134.199.156.39 user=root
Mar 15 17:43:37 ftp-green sshd[508812]: Failed password for root from 134.199.156.39 port 40056 ssh2
Mar 15 17:43:38 ftp-green sshd[508812]: Connection closed by authenticating user root 134.199.156.39 port 40056 [preauth]
...
show less
Brute-Force
SSH
Showing 1 to
15
of 43 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ