This IP address has been reported a total of
174
times from
121 distinct
sources.
185.213.27.134 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
(sshd) Failed SSH login from 185.213.27.134 (GB/United Kingdom/vmi2925204.contaboserver.net): 5 in t ...
show more(sshd) Failed SSH login from 185.213.27.134 (GB/United Kingdom/vmi2925204.contaboserver.net): 5 in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_SSHD; Logs: Jun 30 23:15:13 14397 sshd[15156]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=185.213.27.134 user=root
Jun 30 23:15:14 14397 sshd[15156]: Failed password for root from 185.213.27.134 port 56604 ssh2
Jun 30 23:25:11 14397 sshd[20469]: Invalid user user from 185.213.27.134 port 37320
Jun 30 23:25:13 14397 sshd[20469]: Failed password for invalid user user from 185.213.27.134 port 37320 ssh2
Jun 30 23:27:42 14397 sshd[21732]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=185.213.27.134 user=root
show less
2026-07-01T11:45:45.364399+08:00 *hostname* sshd-session[356256]: Invalid user jenkins from 185.213. ...
show more2026-07-01T11:45:45.364399+08:00 *hostname* sshd-session[356256]: Invalid user jenkins from 185.213.27.134 port 57858
2026-07-01T11:47:52.472584+08:00 *hostname* sshd-session[356281]: Connection from 185.213.27.134 port 49028 on 10.66.0.3 port 22 rdomain ""
2026-07-01T11:47:53.414264+08:00 *hostname* sshd-session[356281]: Invalid user admin from 185.213.27.134 port 49028
2026-07-01T11:49:45.331237+08:00 *hostname* sshd-session[356312]: Connection from 185.213.27.134 port 60738 on 10.66.0.3 port 22 rdomain ""
2026-07-01T11:49:46.279372+08:00 *hostname* sshd-session[356312]: Invalid user devendra from 185.213.27.134 port 60738
show less
2026-07-01T03:09:57.099352+00:00 sg-jumphost-server sshd[1796379]: Disconnected from authenticating ...
show more2026-07-01T03:09:57.099352+00:00 sg-jumphost-server sshd[1796379]: Disconnected from authenticating user root 185.213.27.134 port 53160 [preauth]
2026-07-01T03:12:41.035907+00:00 sg-jumphost-server sshd[1796444]: Disconnected from authenticating user root 185.213.27.134 port 56900 [preauth]
...
show less
2026-07-01T02:41:21.694645+00:00 sg-jumphost-server sshd[1795576]: Disconnected from authenticating ...
show more2026-07-01T02:41:21.694645+00:00 sg-jumphost-server sshd[1795576]: Disconnected from authenticating user root 185.213.27.134 port 53560 [preauth]
2026-07-01T02:51:25.715597+00:00 sg-jumphost-server sshd[1795839]: Disconnected from authenticating user root 185.213.27.134 port 43410 [preauth]
2026-07-01T02:53:59.669179+00:00 sg-jumphost-server sshd[1795891]: Invalid user steam from 185.213.27.134 port 50618
...
show less
Report 2520441 with IP 3561326 for SSH brute-force attack by source 3555984 via ssh-honeypot/0.2.0+h ...
show moreReport 2520441 with IP 3561326 for SSH brute-force attack by source 3555984 via ssh-honeypot/0.2.0+http
show less
2026-07-01T04:09:01.441305+02:00 mail sshd-session[554036]: Failed password for root from 185.213.27 ...
show more2026-07-01T04:09:01.441305+02:00 mail sshd-session[554036]: Failed password for root from 185.213.27.134 port 49162 ssh2
2026-07-01T04:11:03.970986+02:00 mail sshd-session[554518]: Failed password for root from 185.213.27.134 port 34124 ssh2
2026-07-01T04:13:05.404179+02:00 mail sshd-session[554654]: Failed password for root from 185.213.27.134 port 32990 ssh2
2026-07-01T04:15:02.330674+02:00 mail sshd-session[554787]: Invalid user sammy from 185.213.27.134 port 49658
2026-07-01T04:15:04.242824+02:00 mail sshd-session[554787]: Failed password for invalid user sammy from 185.213.27.134 port 49658 ssh2
...
show less