This IP address has been reported a total of
119
times from
81 distinct
sources.
138.197.180.134 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
2026-06-09T08:53:14.852675+02:00 karoxnet.hu sshd[161225]: Invalid user webuser from 138.197.180.134 ...
show more2026-06-09T08:53:14.852675+02:00 karoxnet.hu sshd[161225]: Invalid user webuser from 138.197.180.134 port 33224
2026-06-09T08:58:33.964994+02:00 karoxnet.hu sshd[161230]: Invalid user cloud from 138.197.180.134 port 35766
2026-06-09T09:00:22.842138+02:00 karoxnet.hu sshd[161237]: Invalid user admin from 138.197.180.134 port 40716
2026-06-09T09:02:06.496063+02:00 karoxnet.hu sshd[161242]: Invalid user admin from 138.197.180.134 port 49902
2026-06-09T09:03:54.951448+02:00 karoxnet.hu sshd[161249]: User root from 138.197.180.134 not allowed because not listed in AllowUsers
...
show less
SSH
Anonymous
2026-06-09 08:50:15,453 fail2ban.actions [3799592]: NOTICE [sshd] Ban 138.197.180.134
2026-0 ...
show more2026-06-09 08:50:15,453 fail2ban.actions [3799592]: NOTICE [sshd] Ban 138.197.180.134
2026-06-09 09:01:45,674 fail2ban.actions [3799592]: NOTICE [sshd] Ban 138.197.180.134
...
show less
(sshd) Failed SSH login from 138.197.180.134 (DE/Germany/-): 5 in the last 3600 secs; Ports: *; Dire ...
show more(sshd) Failed SSH login from 138.197.180.134 (DE/Germany/-): 5 in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_SSHD; Logs: Jun 9 01:51:20 14159 sshd[31057]: Invalid user webuser from 138.197.180.134 port 42224
Jun 9 01:51:22 14159 sshd[31057]: Failed password for invalid user webuser from 138.197.180.134 port 42224 ssh2
Jun 9 01:58:17 14159 sshd[31779]: Invalid user cloud from 138.197.180.134 port 39982
Jun 9 01:58:19 14159 sshd[31779]: Failed password for invalid user cloud from 138.197.180.134 port 39982 ssh2
Jun 9 02:00:07 14159 sshd[31995]: Invalid user admin from 138.197.180.134 port 51278
show less
Jun 9 08:27:22 gzdatacloud01 sshd[1447579]: Invalid user test1 from 138.197.180.134 port 42412
Jun ...
show moreJun 9 08:27:22 gzdatacloud01 sshd[1447579]: Invalid user test1 from 138.197.180.134 port 42412
Jun 9 08:27:24 gzdatacloud01 sshd[1447579]: Failed password for invalid user test1 from 138.197.180.134 port 42412 ssh2
Jun 9 08:30:23 gzdatacloud01 sshd[1448148]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.197.180.134 user=root
Jun 9 08:30:25 gzdatacloud01 sshd[1448148]: Failed password for root from 138.197.180.134 port 44508 ssh2
Jun 9 08:35:14 gzdatacloud01 sshd[1449072]: Invalid user jhlee from 138.197.180.134 port 37690
...
show less
FTP Brute-Force
Port Scan
Hacking
Bad Web Bot
Brute-Force
Web App Attack
SSH
Jun 9 08:25:15 whitehoodie sshd[397111]: pam_unix(sshd:auth): authentication failure; logname= uid= ...
show moreJun 9 08:25:15 whitehoodie sshd[397111]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.197.180.134 user=root
Jun 9 08:25:17 whitehoodie sshd[397111]: Failed password for root from 138.197.180.134 port 45650 ssh2
Jun 9 08:26:55 whitehoodie sshd[397128]: Invalid user test1 from 138.197.180.134 port 35808
Jun 9 08:26:55 whitehoodie sshd[397128]: Invalid user test1 from 138.197.180.134 port 35808
...
show less
Jun 9 08:11:50 gzdatacloud01 sshd[1444478]: Invalid user informatica from 138.197.180.134 port 3566 ...
show moreJun 9 08:11:50 gzdatacloud01 sshd[1444478]: Invalid user informatica from 138.197.180.134 port 35660
Jun 9 08:11:50 gzdatacloud01 sshd[1444478]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.197.180.134
Jun 9 08:11:50 gzdatacloud01 sshd[1444478]: Invalid user informatica from 138.197.180.134 port 35660
Jun 9 08:11:52 gzdatacloud01 sshd[1444478]: Failed password for invalid user informatica from 138.197.180.134 port 35660 ssh2
Jun 9 08:14:55 gzdatacloud01 sshd[1445041]: Invalid user arcgis from 138.197.180.134 port 56804
...
show less
FTP Brute-Force
Port Scan
Hacking
Bad Web Bot
Brute-Force
Web App Attack
SSH
Jun 9 07:49:44 wh02 sshd[2731470]: Invalid user uvdesk from 138.197.180.134 port 42418
Jun 9 07:49 ...
show moreJun 9 07:49:44 wh02 sshd[2731470]: Invalid user uvdesk from 138.197.180.134 port 42418
Jun 9 07:49:44 wh02 sshd[2731470]: Received disconnect from 138.197.180.134 port 42418:11: Bye Bye [preauth]
Jun 9 07:49:44 wh02 sshd[2731470]: Disconnected from invalid user uvdesk 138.197.180.134 port 42418 [preauth]
Jun 9 07:51:50 wh02 sshd[2731683]: Received disconnect from 138.197.180.134 port 51070:11: Bye Bye [preauth]
Jun 9 07:51:50 wh02 sshd[2731683]: Disconnected from authenticating user root 138.197.180.134 port 51070 [preauth]
Jun 9 07:53:28 wh02 sshd[2739045]: Invalid user git from 138.197.180.134 port 38668
Jun 9 07:53:28 wh02 sshd[2739045]: Received disconnect from 138.197.180.134 port 38668:11: Bye Bye [preauth]
Jun 9 07:53:28 wh02 sshd[2739045]: Disconnected from invalid user git 138.197.180.134 port 38668 [preauth]
Jun 9 07:55:03 wh02 sshd[2740003]: Invalid user usuario from 138.197.180.134 port 38694
Jun 9 07:55:03 wh02 sshd[2740003]: Received disconnect from 138.197.180.
show less
Jun 9 07:50:57 whitehoodie sshd[396749]: pam_unix(sshd:auth): authentication failure; logname= uid= ...
show moreJun 9 07:50:57 whitehoodie sshd[396749]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.197.180.134 user=root
Jun 9 07:50:58 whitehoodie sshd[396749]: Failed password for root from 138.197.180.134 port 52078 ssh2
Jun 9 07:52:34 whitehoodie sshd[396756]: Invalid user git from 138.197.180.134 port 45632
Jun 9 07:52:34 whitehoodie sshd[396756]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.197.180.134
Jun 9 07:52:35 whitehoodie sshd[396756]: Failed password for invalid user git from 138.197.180.134 port 45632 ssh2
...
show less
Jun 9 06:44:47 dev0-dcde-rnet sshd[23589]: Failed password for root from 138.197.180.134 port 50058 ...
show moreJun 9 06:44:47 dev0-dcde-rnet sshd[23589]: Failed password for root from 138.197.180.134 port 50058 ssh2
Jun 9 06:47:59 dev0-dcde-rnet sshd[23617]: Failed password for root from 138.197.180.134 port 49520 ssh2
show less
Brute-Force
SSH
Showing 1 to
15
of 119 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ