This IP address has been reported a total of
313
times from
210 distinct
sources.
185.161.73.149 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
2026-09-11T17:04:23.148414+00:00 mailcow sshd[1473211]: Failed password for invalid user ubuntu from ...
show more2026-09-11T17:04:23.148414+00:00 mailcow sshd[1473211]: Failed password for invalid user ubuntu from 185.161.73.149 port 55540 ssh2
2026-09-11T17:07:54.928100+00:00 mailcow sshd[1475498]: Invalid user ubuntu from 185.161.73.149 port 21827
2026-09-11T17:07:54.974091+00:00 mailcow sshd[1475498]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=185.161.73.149
2026-09-11T17:07:56.542170+00:00 mailcow sshd[1475498]: Failed password for invalid user ubuntu from 185.161.73.149 port 21827 ssh2
...
show less
2026-09-12T01:00:32.140563+08:00 CVM24121 sshd[402931]: pam_unix(sshd:auth): authentication failure; ...
show more2026-09-12T01:00:32.140563+08:00 CVM24121 sshd[402931]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=185.161.73.149
2026-09-12T01:00:35.032888+08:00 CVM24121 sshd[402931]: Failed password for invalid user ubuntu from 185.161.73.149 port 57594 ssh2
2026-09-12T01:05:40.497516+08:00 CVM24121 sshd[403459]: Invalid user ubuntu from 185.161.73.149 port 43356
...
show less
2026-09-11T12:59:54.948764-04:00 oinkvps sshd[205015]: Invalid user ubuntu from 185.161.73.149 port ...
show more2026-09-11T12:59:54.948764-04:00 oinkvps sshd[205015]: Invalid user ubuntu from 185.161.73.149 port 34912
...
show less
2026-09-11T18:46:42.839816+02:00 milkyway sshd[2593220]: pam_unix(sshd:auth): authentication failure ...
show more2026-09-11T18:46:42.839816+02:00 milkyway sshd[2593220]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=185.161.73.149
2026-09-11T18:46:45.120200+02:00 milkyway sshd[2593220]: Failed password for invalid user ubuntu from 185.161.73.149 port 55832 ssh2
2026-09-11T18:59:53.918412+02:00 milkyway sshd[2595177]: Invalid user ubuntu from 185.161.73.149 port 55322
...
show less
Brute-Force
SSH
Anonymous
2026-09-11T18:58:46.448838+02:00 PRACSNew sshd-session[3591917]: Invalid user ubuntu from 185.161.73 ...
show more2026-09-11T18:58:46.448838+02:00 PRACSNew sshd-session[3591917]: Invalid user ubuntu from 185.161.73.149 port 59908
...
show less
Sep 11 18:56:14 pegasus sshd[260554]: Invalid user ubuntu from 185.161.73.149 port 34770
Sep 11 18:5 ...
show moreSep 11 18:56:14 pegasus sshd[260554]: Invalid user ubuntu from 185.161.73.149 port 34770
Sep 11 18:56:14 pegasus sshd[260554]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=185.161.73.149
Sep 11 18:56:16 pegasus sshd[260554]: Failed password for invalid user ubuntu from 185.161.73.149 port 34770 ssh2
Sep 11 18:57:21 pegasus sshd[260705]: Invalid user ubuntu from 185.161.73.149 port 53374
show less
Detected by SiberKapan threat intelligence platform (siberkapan.org). Attack types: honeypot_ssh. So ...
show moreDetected by SiberKapan threat intelligence platform (siberkapan.org). Attack types: honeypot_ssh. Sources: honeypot. First seen: 2026-09-11. Risk score: 30/100.
show less
Sep 11 18:43:11 main-angler sshd[3977465]: pam_unix(sshd:auth): authentication failure; logname= uid ...
show moreSep 11 18:43:11 main-angler sshd[3977465]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=185.161.73.149 user=root
Sep 11 18:43:13 main-angler sshd[3977465]: Failed password for root from 185.161.73.149 port 47604 ssh2
Sep 11 18:47:30 main-angler sshd[3982507]: Invalid user ubuntu from 185.161.73.149 port 43386
...
show less
Brute-Force
SSH
Anonymous
2026-09-11T19:40:02.827670+03:30 digitalogic sshd-session[371617]: Connection closed by authenticati ...
show more2026-09-11T19:40:02.827670+03:30 digitalogic sshd-session[371617]: Connection closed by authenticating user ubuntu 185.161.73.149 port 29111 [preauth]
2026-09-11T20:17:20.072409+03:30 digitalogic sshd-session[397644]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=185.161.73.149 user=ubuntu
2026-09-11T20:17:22.518406+03:30 digitalogic sshd-session[397644]: Failed password for ubuntu from 185.161.73.149 port 23574 ssh2
...
show less
Sep 11 18:41:20 srv-ubuntu-dev3 sshd[4111362]: Connection closed by authenticating user root 185.161 ...
show moreSep 11 18:41:20 srv-ubuntu-dev3 sshd[4111362]: Connection closed by authenticating user root 185.161.73.149 port 35378 [preauth]
Sep 11 18:41:36 srv-ubuntu-dev3 sshd[4111417]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=185.161.73.149 user=root
Sep 11 18:41:38 srv-ubuntu-dev3 sshd[4111417]: Failed password for root from 185.161.73.149 port 56720 ssh2
Sep 11 18:41:39 srv-ubuntu-dev3 sshd[4111417]: Connection closed by authenticating user root 185.161.73.149 port 56720 [preauth]
Sep 11 18:46:29 srv-ubuntu-dev3 sshd[4112350]: Invalid user ubuntu from 185.161.73.149 port 46804
...
show less
Brute-Force
SSH
Anonymous
Sep 11 18:31:28 C1D543E sshd[1500939]: Failed password for invalid user root from 185.161.73.149 por ...
show moreSep 11 18:31:28 C1D543E sshd[1500939]: Failed password for invalid user root from 185.161.73.149 port 43439 ssh2
Sep 11 18:38:58 C1D543E sshd[1501522]: User root from 185.161.73.149 not allowed because not listed in AllowUsers
Sep 11 18:38:58 C1D543E sshd[1501522]: Failed password for invalid user root from 185.161.73.149 port 40275 ssh2
Sep 11 18:43:20 C1D543E sshd[1501935]: User root from 185.161.73.149 not allowed because not listed in AllowUsers
Sep 11 18:43:20 C1D543E sshd[1501935]: Failed password for invalid user root from 185.161.73.149 port 59049 ssh2
...
show less
Brute-Force
SSH
Showing 1 to
15
of 313 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ