This IP address has been reported a total of
109
times from
64 distinct
sources.
138.197.151.152 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
2026-03-19T08:56:04.532238+00:00 ubuntu sshd[2434297]: Failed password for root from 138.197.151.152 ...
show more2026-03-19T08:56:04.532238+00:00 ubuntu sshd[2434297]: Failed password for root from 138.197.151.152 port 43736 ssh2
2026-03-19T08:58:14.803755+00:00 ubuntu sshd[2482515]: Invalid user oracle from 138.197.151.152 port 46592
2026-03-19T08:58:16.276806+00:00 ubuntu sshd[2482515]: Failed password for invalid user oracle from 138.197.151.152 port 46592 ssh2
2026-03-19T08:58:18.358026+00:00 ubuntu sshd[2485457]: Invalid user frank from 138.197.151.152 port 53984
2026-03-19T08:58:18.522963+00:00 ubuntu sshd[2485457]: Failed password for invalid user frank from 138.197.151.152 port 53984 ssh2
...
show less
Mar 18 23:23:44 box sshd[2439543]: Failed password for invalid user dmdba from 138.197.151.152 port ...
show moreMar 18 23:23:44 box sshd[2439543]: Failed password for invalid user dmdba from 138.197.151.152 port 39008 ssh2
Mar 18 23:23:50 box sshd[2439614]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.197.151.152 user=root
Mar 18 23:23:52 box sshd[2439614]: Failed password for root from 138.197.151.152 port 39018 ssh2
Mar 18 23:23:55 box sshd[2439682]: Invalid user abc from 138.197.151.152 port 40396
Mar 18 23:23:56 box sshd[2439682]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.197.151.152
Mar 18 23:23:58 box sshd[2439682]: Failed password for invalid user abc from 138.197.151.152 port 40396 ssh2
Mar 18 23:24:01 box sshd[2439740]: Invalid user saman from 138.197.151.152 port 51270
...
show less
DNS Compromise
DNS Poisoning
DDoS Attack
Ping of Death
Web Spam
Email Spam
Blog Spam
Port Scan
Hacking
Brute-Force
Bad Web Bot
SSH
Web App Attack
2026-03-19T05:54:49.091500+08:00 rbm-BIDbKZig sshd[3190106]: pam_unix(sshd:auth): authentication fai ...
show more2026-03-19T05:54:49.091500+08:00 rbm-BIDbKZig sshd[3190106]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.197.151.152
2026-03-19T05:54:50.890677+08:00 rbm-BIDbKZig sshd[3190106]: Failed password for invalid user buzz from 138.197.151.152 port 55986 ssh2
2026-03-19T05:54:57.499996+08:00 rbm-BIDbKZig sshd[3190116]: Invalid user ubuntu from 138.197.151.152 port 33384
2026-03-19T05:54:57.978511+08:00 rbm-BIDbKZig sshd[3190116]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.197.151.152
2026-03-19T05:54:59.210236+08:00 rbm-BIDbKZig sshd[3190116]: Failed password for invalid user ubuntu from 138.197.151.152 port 33384 ssh2
...
show less
Detected multiple authentication failures and invalid user attempts from IP address 138.197.151.152 ...
show moreDetected multiple authentication failures and invalid user attempts from IP address 138.197.151.152 on [PT] SP01 Node
show less
Brute-Force
SSH
Anonymous
2026-03-18T22:54:49.873883+01:00 webtest sshd[646667]: Invalid user ubuntu from 138.197.151.152 port ...
show more2026-03-18T22:54:49.873883+01:00 webtest sshd[646667]: Invalid user ubuntu from 138.197.151.152 port 38370
2026-03-18T22:54:48.367145+01:00 webtest sshd[646665]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.197.151.152
2026-03-18T22:54:50.361794+01:00 webtest sshd[646665]: Failed password for invalid user buzz from 138.197.151.152 port 35632 ssh2
2026-03-18T22:54:49.979450+01:00 webtest sshd[646667]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.197.151.152
2026-03-18T22:54:51.778343+01:00 webtest sshd[646667]: Failed password for invalid user ubuntu from 138.197.151.152 port 38370 ssh2
...
show less
Brute-Force
SSH
Showing 1 to
15
of 109 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ