This IP address has been reported a total of
68
times from
60 distinct
sources.
161.132.54.212 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
2026-09-20T00:52:33.253479+02:00 canterlot.jotoma.de sshd[883052]: Invalid user admin from 161.132.5 ...
show more2026-09-20T00:52:33.253479+02:00 canterlot.jotoma.de sshd[883052]: Invalid user admin from 161.132.54.212 port 46438
2026-09-20T00:52:33.621221+02:00 canterlot.jotoma.de sshd[883052]: Connection closed by invalid user admin 161.132.54.212 port 46438 [preauth]
2026-09-20T00:53:07.221963+02:00 canterlot.jotoma.de sshd[883610]: Invalid user user from 161.132.54.212 port 51436
...
show less
Brute-Force
SSH
Anonymous
161.132.54.212 - - [20/Sep/2026:00:22:41 +0200] "POST /cgi-bin/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.% ...
show more161.132.54.212 - - [20/Sep/2026:00:22:41 +0200] "POST /cgi-bin/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/bin/sh HTTP/1.1" 400 150 "-" "-"
...
show less
Attack source identified and submitted via NetVexor BGP Blackhole Network
Port Scan
Hacking
Brute-Force
Anonymous
2026-09-19T21:12:49.989802+00:00 nosvoid.com sshd[2006601]: pam_unix(sshd:auth): authentication fail ...
show more2026-09-19T21:12:49.989802+00:00 nosvoid.com sshd[2006601]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=161.132.54.212 user=root
2026-09-19T21:12:51.982542+00:00 nosvoid.com sshd[2006601]: Failed password for root from 161.132.54.212 port 47454 ssh2
2026-09-19T21:15:47.615264+00:00 nosvoid.com sshd[2012404]: Invalid user test from 161.132.54.212 port 58988
2026-09-19T21:15:47.623666+00:00 nosvoid.com sshd[2012404]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=161.132.54.212
2026-09-19T21:15:49.384669+00:00 nosvoid.com sshd[2012404]: Failed password for invalid user test from 161.132.54.212 port 58988 ssh2
...
show less
Brute-Force
SSH
Anonymous
fail2ban: apache-traversal jail (1 hits in 2419200s) on skipper
Sep 19 22:24:57 box sshd-session[37823]: Invalid user admin from 161.132.54.212 port 56428
Sep 19 22 ...
show moreSep 19 22:24:57 box sshd-session[37823]: Invalid user admin from 161.132.54.212 port 56428
Sep 19 22:24:58 box sshd-session[37823]: Connection closed by invalid user admin 161.132.54.212 port 56428 [preauth]
Sep 19 22:31:31 box sshd-session[38400]: Invalid user user from 161.132.54.212 port 48092
Sep 19 22:31:33 box sshd-session[38400]: Connection closed by invalid user user 161.132.54.212 port 48092 [preauth]
Sep 19 22:37:33 box sshd-session[38426]: Connection closed by authenticating user root 161.132.54.212 port 39962 [preauth]
...
show less
Level: (LOW): Known Attacker via CitrixHoneypot IOC Country: Peru 1x -> Target Country: Polen HTTPS
Hacking
Web App Attack
Anonymous
2026-09-19T20:36:25.574289+02:00 hvs sshd-session[248791]: Invalid user admin from 161.132.54.212 po ...
show more2026-09-19T20:36:25.574289+02:00 hvs sshd-session[248791]: Invalid user admin from 161.132.54.212 port 43094
2026-09-19T20:36:25.993588+02:00 hvs sshd-session[248791]: Connection closed by invalid user admin 161.132.54.212 port 43094 [preauth]
2026-09-19T20:39:34.409928+02:00 hvs sshd-session[248813]: Invalid user user from 161.132.54.212 port 33368
2026-09-19T20:39:35.035168+02:00 hvs sshd-session[248813]: Connection closed by invalid user user 161.132.54.212 port 33368 [preauth]
2026-09-19T20:42:22.053656+02:00 hvs sshd-session[248841]: Connection closed by authenticating user root 161.132.54.212 port 53846 [preauth]
...
show less
Brute-Force
SSH
Anonymous
sshd: Invalid user admin from 161.132.54.212 port 54450
sshd: Invalid user user from 161.132.54.212 ...
show moresshd: Invalid user admin from 161.132.54.212 port 54450
sshd: Invalid user user from 161.132.54.212 port 57934
show less
2026-09-19T23:36:20.425370+08:00 VM-16-128-ubuntu sshd[1943642]: Failed password for invalid user ad ...
show more2026-09-19T23:36:20.425370+08:00 VM-16-128-ubuntu sshd[1943642]: Failed password for invalid user admin from 161.132.54.212 port 37006 ssh2
2026-09-19T23:38:46.479958+08:00 VM-16-128-ubuntu sshd[1944260]: Invalid user user from 161.132.54.212 port 40862
2026-09-19T23:38:46.481924+08:00 VM-16-128-ubuntu sshd[1944260]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=161.132.54.212
2026-09-19T23:38:48.586240+08:00 VM-16-128-ubuntu sshd[1944260]: Failed password for invalid user user from 161.132.54.212 port 40862 ssh2
...
show less
Brute-Force
SSH
Showing 1 to
15
of 68 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ