This IP address has been reported a total of
52
times from
42 distinct
sources.
164.52.197.185 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
Automated report: SSH brute force detected. This IP exceeded the allowed number of failed login atte ...
show moreAutomated report: SSH brute force detected. This IP exceeded the allowed number of failed login attempts (3 attempts).
show less
2026-04-03T11:20:11.504903+00:00 as-south-bom1 sshd-session[66237]: Unable to negotiate with 164.52. ...
show more2026-04-03T11:20:11.504903+00:00 as-south-bom1 sshd-session[66237]: Unable to negotiate with 164.52.197.185 port 50694: no matching key exchange method found. Their offer: diffie-hellman-group14-sha1,diffie-hellman-group-exchange-sha1,diffie-hellman-group1-sha1 [preauth]
2026-04-03T11:20:44.581524+00:00 as-south-bom1 sshd-session[66242]: Unable to negotiate with 164.52.197.185 port 49486: no matching key exchange method found. Their offer: diffie-hellman-group14-sha1,diffie-hellman-group-exchange-sha1,diffie-hellman-group1-sha1 [preauth]
2026-04-03T11:21:27.136672+00:00 as-south-bom1 sshd-session[66244]: Unable to negotiate with 164.52.197.185 port 34254: no matching key exchange method found. Their offer: diffie-hellman-group14-sha1,diffie-hellman-group-exchange-sha1,diffie-hellman-group1-sha1 [preauth]
...
show less
Brute-Force
SSH
Anonymous
2026-04-03T19:14:30.129414+08:00 kltw-debian sshd[340409]: Connection closed by 164.52.197.185 port ...
show more2026-04-03T19:14:30.129414+08:00 kltw-debian sshd[340409]: Connection closed by 164.52.197.185 port 48266
2026-04-03T19:17:14.984551+08:00 kltw-debian sshd[340426]: Unable to negotiate with 164.52.197.185 port 40868: no matching key exchange method found. Their offer: diffie-hellman-group14-sha1,diffie-hellman-group-exchange-sha1,diffie-hellman-group1-sha1 [preauth]
2026-04-03T19:17:48.832969+08:00 kltw-debian sshd[340429]: Unable to negotiate with 164.52.197.185 port 33704: no matching key exchange method found. Their offer: diffie-hellman-group14-sha1,diffie-hellman-group-exchange-sha1,diffie-hellman-group1-sha1 [preauth]
2026-04-03T19:18:20.851525+08:00 kltw-debian sshd[340433]: Unable to negotiate with 164.52.197.185 port 56024: no matching key exchange method found. Their offer: diffie-hellman-group14-sha1,diffie-hellman-group-exchange-sha1,diffie-hellman-group1-sha1 [preauth]
2026-04-03T19:18:54.410781+08:00 kltw-debian sshd[340446]: Unable to negotiate with 164.52.197.185 port 4
...
show less
2026-04-03T13:19:40.729267 ******* sshd[3969783]: Invalid user 138.3.220.50 from 164.52.197.185 port ...
show more2026-04-03T13:19:40.729267 ******* sshd[3969783]: Invalid user 138.3.220.50 from 164.52.197.185 port 39824
2026-04-03T13:19:40.901784 ******* sshd[3969783]: Disconnected from invalid user 138.3.220.50 164.52.197.185 port 39824 [preauth]
2026-04-03T13:20:13.262703 ******* sshd[3970103]: Invalid user 138.68.179.197 from 164.52.197.185 port 51328
show less
Brute-Force
SSH
Anonymous
2026-04-03T07:18:10.775450 VOSTOK sshd[27154]: Invalid user 138.3.220.50 from 164.52.197.185 port 55 ...
show more2026-04-03T07:18:10.775450 VOSTOK sshd[27154]: Invalid user 138.3.220.50 from 164.52.197.185 port 55190
2026-04-03T07:18:10.778062 VOSTOK sshd[27154]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=e2e-65-185.ssdcloudindia.net
2026-04-03T07:18:12.970787 VOSTOK sshd[27154]: Failed password for invalid user 138.3.220.50 from 164.52.197.185 port 55190 ssh2
2026-04-03T07:18:44.817538 VOSTOK sshd[27352]: Invalid user 138.68.179.197 from 164.52.197.185 port 60606
...
show less
Blocked by UFW on server [22/tcp]
Source port: 54077
TTL: 236
Packet length: 40
TOS: 0x00
This repo ...
show moreBlocked by UFW on server [22/tcp]
Source port: 54077
TTL: 236
Packet length: 40
TOS: 0x00
This report was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Blocked by UFW [10522/tcp]
Source port: 41216
TTL: 239
Packet length: 40
TOS: 0x00
This report was ...
show moreBlocked by UFW [10522/tcp]
Source port: 41216
TTL: 239
Packet length: 40
TOS: 0x00
This report was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
Showing 1 to
15
of 52 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ