This IP address has been reported a total of
269
times from
71 distinct
sources.
161.132.54.90 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
Automatic Fail2Ban report from jail ssh: multiple matching events detected.
Brute-Force
SSH
Anonymous
2026-06-10T20:12:34.753507+00:00 nbg01-02-secure sshd[410742]: Invalid user ubuntu from 161.132.54.9 ...
show more2026-06-10T20:12:34.753507+00:00 nbg01-02-secure sshd[410742]: Invalid user ubuntu from 161.132.54.90 port 40520
2026-06-10T20:12:34.756257+00:00 nbg01-02-secure sshd[410742]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=161.132.54.90
2026-06-10T20:12:36.404109+00:00 nbg01-02-secure sshd[410742]: Failed password for invalid user ubuntu from 161.132.54.90 port 40520 ssh2
...
show less
Brute-Force
Anonymous
2026-06-10T19:21:49.488883+02:00 hosting15 sshd[1713378]: pam_unix(sshd:auth): authentication failur ...
show more2026-06-10T19:21:49.488883+02:00 hosting15 sshd[1713378]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=161.132.54.90
2026-06-10T19:21:51.675339+02:00 hosting15 sshd[1713378]: Failed password for invalid user ubuntu from 161.132.54.90 port 37904 ssh2
2026-06-10T19:31:38.465745+02:00 hosting15 sshd[1716969]: Invalid user ubuntu from 161.132.54.90 port 51964
...
show less
2026-06-10T16:59:17.784848+06:00 zabbix sshd[9370]: pam_unix(sshd:auth): authentication failure; log ...
show more2026-06-10T16:59:17.784848+06:00 zabbix sshd[9370]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=161.132.54.90
2026-06-10T16:59:19.728046+06:00 zabbix sshd[9370]: Failed password for invalid user mysql from 161.132.54.90 port 51712 ssh2
...
show less
Jun 10 06:23:28 v4bgp sshd[520810]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid ...
show moreJun 10 06:23:28 v4bgp sshd[520810]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=161.132.54.90 user=root
Jun 10 06:23:30 v4bgp sshd[520810]: Failed password for root from 161.132.54.90 port 59044 ssh2
Jun 10 07:07:37 v4bgp sshd[524266]: Invalid user ubuntu from 161.132.54.90 port 55342
...
show less
(sshd) Failed SSH login from 161.132.54.90 (PE/Peru/-): 5 in the last 3600 secs; Ports: *; Direction ...
show more(sshd) Failed SSH login from 161.132.54.90 (PE/Peru/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_SSHD; Logs: Jun 10 09:01:59 ded01 sshd[4104255]: Did not receive identification string from 161.132.54.90 port 35836
Jun 10 09:04:41 ded01 sshd[4105846]: Did not receive identification string from 161.132.54.90 port 34444
Jun 10 09:05:24 ded01 sshd[4107468]: Did not receive identification string from 161.132.54.90 port 36334
Jun 10 09:07:06 ded01 sshd[4108433]: Did not receive identification string from 161.132.54.90 port 48414
Jun 10 09:13:32 ded01 sshd[4113481]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=161.132.54.90 user=root
show less
Jun 10 03:28:06 mx1 sshd[3090500]: Invalid user ubuntu from 161.132.54.90 port 33466
Jun 10 04:05:15 ...
show moreJun 10 03:28:06 mx1 sshd[3090500]: Invalid user ubuntu from 161.132.54.90 port 33466
Jun 10 04:05:15 mx1 sshd[3110674]: Invalid user ubuntu from 161.132.54.90 port 34820
Jun 10 05:19:31 mx1 sshd[3151443]: Invalid user ubuntu from 161.132.54.90 port 37806
...
show less
Automatic Fail2Ban report from jail ssh: multiple matching events detected.
Brute-Force
SSH
Anonymous
SSH Brute Force (3 attempts). Evidence: sshd:auth): authentication failure; logname= uid=0 euid=0 tt ...
show moreSSH Brute Force (3 attempts). Evidence: sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=161.132.54.90;sshd[7418]: Failed password for invalid user ubuntu from 161.132.54.90 port 40428 ssh2
show less
SSH credential brute-force observed by honeypot.
Source IP: 161.132.54.90
Targeted device: Debian se ...
show moreSSH credential brute-force observed by honeypot.
Source IP: 161.132.54.90
Targeted device: Debian server
First seen: 08 Jun 2026 22:26:56 UTC
Last seen: 09 Jun 2026 00:46:52 UTC
Attempts: 7
Client: SSH-2.0-phpseclib_1.0 (openssl)
Sample credentials: root:123456, ubuntu:ubuntu, ubuntu:123456, root:rootubuntu, ubuntu:P@ssw0rd2026, 71MsDe85xzDEI:Ni49GdEE016, ai:Bb123456@
show less
Jun 8 11:07:05 honeypot sshd[18185]: Failed password for root from 161.132.54.90 port 32772 ssh2
.. ...
show moreJun 8 11:07:05 honeypot sshd[18185]: Failed password for root from 161.132.54.90 port 32772 ssh2
...
show less
Jun 8 08:51:43 honeypot sshd[14824]: Failed password for root from 161.132.54.90 port 52274 ssh2
.. ...
show moreJun 8 08:51:43 honeypot sshd[14824]: Failed password for root from 161.132.54.90 port 52274 ssh2
...
show less
Brute-Force
SSH
Showing 1 to
15
of 269 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ