This IP address has been reported a total of
196
times from
129 distinct
sources.
161.97.137.104 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
2024-09-05T13:53:20.013421+02:00 mail sshd[692162]: Failed password for root from 161.97.137.104 por ...
show more2024-09-05T13:53:20.013421+02:00 mail sshd[692162]: Failed password for root from 161.97.137.104 port 33280 ssh2
2024-09-05T13:54:08.997307+02:00 mail sshd[692193]: Invalid user user02 from 161.97.137.104 port 33364
2024-09-05T13:54:09.000404+02:00 mail sshd[692193]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=161.97.137.104
2024-09-05T13:54:10.700469+02:00 mail sshd[692193]: Failed password for invalid user user02 from 161.97.137.104 port 33364 ssh2
2024-09-05T13:54:59.051059+02:00 mail sshd[692202]: Invalid user zhangwei from 161.97.137.104 port 33448
...
show less
Report 1330628 with IP 2375468 for SSH brute-force attack by source 2372853 via ssh-honeypot/0.2.0+h ...
show moreReport 1330628 with IP 2375468 for SSH brute-force attack by source 2372853 via ssh-honeypot/0.2.0+http
show less
Sep 5 05:52:43 europa sshd[612039]: pam_unix(sshd:auth): authentication failure; logname= uid=0 eui ...
show moreSep 5 05:52:43 europa sshd[612039]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=161.97.137.104 user=root
Sep 5 05:52:45 europa sshd[612039]: Failed password for root from 161.97.137.104 port 48372 ssh2
Sep 5 05:53:32 europa sshd[612065]: Invalid user user02 from 161.97.137.104 port 48444
...
show less
Sep 5 20:36:07 ip-172-26-1-7 sshd[505097]: Invalid user reader from 161.97.137.104 port 45198
Sep ...
show moreSep 5 20:36:07 ip-172-26-1-7 sshd[505097]: Invalid user reader from 161.97.137.104 port 45198
Sep 5 20:41:09 ip-172-26-1-7 sshd[505770]: Invalid user amber from 161.97.137.104 port 45370
Sep 5 20:41:57 ip-172-26-1-7 sshd[505775]: Invalid user mapadmin from 161.97.137.104 port 45444
...
show less
2024-09-05T08:33:21.145488+02:00 Linux12 sshd[95659]: Failed password for invalid user ubuntu from 1 ...
show more2024-09-05T08:33:21.145488+02:00 Linux12 sshd[95659]: Failed password for invalid user ubuntu from 161.97.137.104 port 51216 ssh2
2024-09-05T08:34:06.718551+02:00 Linux12 sshd[98802]: Invalid user ubuntu from 161.97.137.104 port 51258
2024-09-05T08:34:06.720876+02:00 Linux12 sshd[98802]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=161.97.137.104
2024-09-05T08:34:08.985475+02:00 Linux12 sshd[98802]: Failed password for invalid user ubuntu from 161.97.137.104 port 51258 ssh2
2024-09-05T08:34:51.811997+02:00 Linux12 sshd[101862]: Invalid user redis2 from 161.97.137.104 port 51304
2024-09-05T08:34:51.814312+02:00 Linux12 sshd[101862]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=161.97.137.104
2024-09-05T08:34:53.923487+02:00 Linux12 sshd[101862]: Failed password for invalid user redis2 from 161.97.137.104 port 51304 ssh2
2024-09-05T08:35:35.496475+02:00 Linux12 sshd[104973]: Invalid user infinity from
...
show less
Sep 4 22:59:22 cm0app00 sshd[2942907]: Invalid user bloom from 161.97.137.104 port 41232
Sep 4 23: ...
show moreSep 4 22:59:22 cm0app00 sshd[2942907]: Invalid user bloom from 161.97.137.104 port 41232
Sep 4 23:00:12 cm0app00 sshd[2943163]: Invalid user osama from 161.97.137.104 port 41308
Sep 4 23:01:01 cm0app00 sshd[2943643]: Invalid user spider from 161.97.137.104 port 41376
Sep 4 23:01:48 cm0app00 sshd[2944120]: Invalid user code from 161.97.137.104 port 41446
Sep 4 23:02:34 cm0app00 sshd[2944391]: Invalid user visitor from 161.97.137.104 port 41516
...
show less
Sep 5 08:49:48 ubuntu-MQTT sshd[195305]: Failed password for invalid user root from 161.97.137.104 ...
show moreSep 5 08:49:48 ubuntu-MQTT sshd[195305]: Failed password for invalid user root from 161.97.137.104 port 47792 ssh2
Sep 5 08:58:08 ubuntu-MQTT sshd[195373]: User root from 161.97.137.104 not allowed because not listed in AllowUsers
Sep 5 08:58:08 ubuntu-MQTT sshd[195373]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=161.97.137.104 user=root
Sep 5 08:58:10 ubuntu-MQTT sshd[195373]: Failed password for invalid user root from 161.97.137.104 port 48058 ssh2
Sep 5 08:58:57 ubuntu-MQTT sshd[195381]: Invalid user bloom from 161.97.137.104 port 48130
...
show less
Sep 4 22:41:54 b146-InstructorB sshd[550429]: Invalid user zhangsan from 161.97.137.104 port 43318
...
show moreSep 4 22:41:54 b146-InstructorB sshd[550429]: Invalid user zhangsan from 161.97.137.104 port 43318
Sep 4 22:41:54 b146-InstructorB sshd[550429]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=161.97.137.104
Sep 4 22:41:55 b146-InstructorB sshd[550429]: Failed password for invalid user zhangsan from 161.97.137.104 port 43318 ssh2
...
show less
Sep 5 06:12:06 jumphost sshd[511381]: User root from 161.97.137.104 not allowed because none of use ...
show moreSep 5 06:12:06 jumphost sshd[511381]: User root from 161.97.137.104 not allowed because none of user's groups are listed in AllowGroups
Sep 5 06:13:33 jumphost sshd[511420]: User root from 161.97.137.104 not allowed because none of user's groups are listed in AllowGroups
Sep 5 06:14:13 jumphost sshd[511443]: User root from 161.97.137.104 not allowed because none of user's groups are listed in AllowGroups
...
show less
Brute-Force
SSH
Showing 1 to
15
of 196 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ