This IP address has been reported a total of
23
times from
22 distinct
sources.
138.197.144.172 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
2026-02-23T17:10:38.643630+01:00 tor01-ca-pop.as202427.net sshd[3313957]: User root from 138.197.144 ...
show more2026-02-23T17:10:38.643630+01:00 tor01-ca-pop.as202427.net sshd[3313957]: User root from 138.197.144.172 not allowed because not listed in AllowUsers
2026-02-23T17:11:20.477276+01:00 tor01-ca-pop.as202427.net sshd[3314059]: User root from 138.197.144.172 not allowed because not listed in AllowUsers
2026-02-23T17:11:59.856258+01:00 tor01-ca-pop.as202427.net sshd[3314160]: User root from 138.197.144.172 not allowed because not listed in AllowUsers
...
show less
Report 2090109 with IP 3137670 for SSH brute-force attack by source 3132334 via ssh-honeypot/0.2.0+h ...
show moreReport 2090109 with IP 3137670 for SSH brute-force attack by source 3132334 via ssh-honeypot/0.2.0+http
show less
Brute-Force
SSH
Anonymous
Feb 23 18:11:11 ubuntu-server sshd[2998812]: Failed password for root from 138.197.144.172 port 5469 ...
show moreFeb 23 18:11:11 ubuntu-server sshd[2998812]: Failed password for root from 138.197.144.172 port 54698 ssh2
Feb 23 18:11:49 ubuntu-server sshd[2998853]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.197.144.172 user=root
Feb 23 18:11:51 ubuntu-server sshd[2998853]: Failed password for root from 138.197.144.172 port 43182 ssh2
...
show less
Brute-Force
SSH
Anonymous
Feb 23 16:11:09 madrants sshd[681098]: Failed password for root from 138.197.144.172 port 54074 ssh2 ...
show moreFeb 23 16:11:09 madrants sshd[681098]: Failed password for root from 138.197.144.172 port 54074 ssh2
Feb 23 16:11:47 madrants sshd[681104]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.197.144.172 user=root
Feb 23 16:11:49 madrants sshd[681104]: Failed password for root from 138.197.144.172 port 48978 ssh2
...
show less
Brute-Force
SSH
Anonymous
2026-02-23T11:10:14.771439 SPARTAN sshd[6013]: Failed password for root from 138.197.144.172 port 58 ...
show more2026-02-23T11:10:14.771439 SPARTAN sshd[6013]: Failed password for root from 138.197.144.172 port 58398 ssh2
2026-02-23T11:10:54.621790 SPARTAN sshd[6102]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.197.144.172 user=root
2026-02-23T11:10:56.646659 SPARTAN sshd[6102]: Failed password for root from 138.197.144.172 port 49502 ssh2
2026-02-23T11:11:34.404248 SPARTAN sshd[6489]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.197.144.172 user=root
2026-02-23T11:11:36.920157 SPARTAN sshd[6489]: Failed password for root from 138.197.144.172 port 50520 ssh2
...
show less
2026-02-23T16:11:06.195718+00:00 edge-mini sshd[569394]: Failed password for root from 138.197.144.1 ...
show more2026-02-23T16:11:06.195718+00:00 edge-mini sshd[569394]: Failed password for root from 138.197.144.172 port 54830 ssh2
2026-02-23T16:11:43.955624+00:00 edge-mini sshd[569397]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.197.144.172 user=root
2026-02-23T16:11:46.041690+00:00 edge-mini sshd[569397]: Failed password for root from 138.197.144.172 port 53880 ssh2
...
show less
2026-02-24T05:10:51.648021+13:00 afterlife sshd[42051]: Failed password for root from 138.197.144.17 ...
show more2026-02-24T05:10:51.648021+13:00 afterlife sshd[42051]: Failed password for root from 138.197.144.172 port 33602 ssh2
2026-02-24T05:11:30.761645+13:00 afterlife sshd[42053]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.197.144.172 user=root
2026-02-24T05:11:32.727176+13:00 afterlife sshd[42053]: Failed password for root from 138.197.144.172 port 52254 ssh2
...
show less
Brute-Force
SSH
Showing 1 to
15
of 23 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ