This IP address has been reported a total of
83
times from
66 distinct
sources.
189.146.113.120 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
United States of America
with 20
reports;
Germany
with 18
reports;
Sweden
with 6
reports.
The most common categories in these recent reports were:
SSH
81
times;
Brute-Force
77
times;
Port Scan
2
times;
FTP Brute-Force
1
time;
Exploited Host
1
time;
Other
1
time.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Cowrie Honeypot: 10 unauthorised SSH/Telnet login attempts between 2026-10-09T18:24:58Z and 2026-10- ...
show moreCowrie Honeypot: 10 unauthorised SSH/Telnet login attempts between 2026-10-09T18:24:58Z and 2026-10-09T18:42:39Z
show less
2026-10-09T20:17:37.574916+02:00 serengeti2 sshd-session[725241]: Failed password for invalid user a ...
show more2026-10-09T20:17:37.574916+02:00 serengeti2 sshd-session[725241]: Failed password for invalid user administrator from 189.146.113.120 port 52958 ssh2
2026-10-09T20:19:52.640264+02:00 serengeti2 sshd-session[726048]: Invalid user ubnt from 189.146.113.120 port 37306
2026-10-09T20:19:52.645038+02:00 serengeti2 sshd-session[726048]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=189.146.113.120
2026-10-09T20:19:54.730925+02:00 serengeti2 sshd-session[726048]: Failed password for invalid user ubnt from 189.146.113.120 port 37306 ssh2
2026-10-09T20:22:13.446216+02:00 serengeti2 sshd-session[727345]: Invalid user bodega from 189.146.113.120 port 50224
...
show less
2026-10-09T20:18:21.313842+02:00 muse sshd-session[655072]: Invalid user flussonic from 189.146.113. ...
show more2026-10-09T20:18:21.313842+02:00 muse sshd-session[655072]: Invalid user flussonic from 189.146.113.120 port 59764
...
show less
2026-10-09T20:04:08.934676+02:00 serengeti2 sshd-session[718651]: pam_unix(sshd:auth): authenticatio ...
show more2026-10-09T20:04:08.934676+02:00 serengeti2 sshd-session[718651]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=189.146.113.120 user=root
2026-10-09T20:04:11.515785+02:00 serengeti2 sshd-session[718651]: Failed password for root from 189.146.113.120 port 58760 ssh2
2026-10-09T20:06:24.929532+02:00 serengeti2 sshd-session[719888]: Invalid user pre from 189.146.113.120 port 60016
2026-10-09T20:06:24.936676+02:00 serengeti2 sshd-session[719888]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=189.146.113.120
2026-10-09T20:06:27.415888+02:00 serengeti2 sshd-session[719888]: Failed password for invalid user pre from 189.146.113.120 port 60016 ssh2
...
show less
Oct 9 20:03:03 plesk sshd[30828]: Invalid user public from 189.146.113.120 port 42806
Oct 9 20:03: ...
show moreOct 9 20:03:03 plesk sshd[30828]: Invalid user public from 189.146.113.120 port 42806
Oct 9 20:03:03 plesk sshd[30828]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=189.146.113.120
Oct 9 20:03:06 plesk sshd[30828]: Failed password for invalid user public from 189.146.113.120 port 42806 ssh2
Oct 9 20:05:22 plesk sshd[31311]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=189.146.113.120 user=root
Oct 9 20:05:24 plesk sshd[31311]: Failed password for root from 189.146.113.120 port 44064 ssh2
show less
Honeypot hit: Brute-force attack detected on 22/SSH
• Credentials used: saad:123456, public:123456, ...
show moreHoneypot hit: Brute-force attack detected on 22/SSH
• Credentials used: saad:123456, public:123456, root:6969, pre:pre, 345gs5662d34:345gs5662d34, pre:3245gs5662d34, ivan:ivanivan
• Number of login attempts: 7
• 20 command(s) were executed during the session
• Client: SSH-2.0-libssh_0.11.1
show less
Hacking
Brute-Force
SSH
Exploited Host
Anonymous
2026-10-09T13:28:03.149168-04:00 vps3407359 sshd-session[929856]: Invalid user umesh from 189.146.11 ...
show more2026-10-09T13:28:03.149168-04:00 vps3407359 sshd-session[929856]: Invalid user umesh from 189.146.113.120 port 43352
2026-10-09T13:30:29.542635-04:00 vps3407359 sshd-session[929879]: Invalid user hg from 189.146.113.120 port 44568
...
show less
2026-10-09T19:19:35.066696+02:00 smtp-01.hosts.ferron.sh sshd-session[283466]: Invalid user postgres ...
show more2026-10-09T19:19:35.066696+02:00 smtp-01.hosts.ferron.sh sshd-session[283466]: Invalid user postgres from 189.146.113.120 port 50082
2026-10-09T19:25:27.671409+02:00 smtp-01.hosts.ferron.sh sshd-session[285472]: Invalid user myftp from 189.146.113.120 port 57394
2026-10-09T19:26:40.175001+02:00 smtp-01.hosts.ferron.sh sshd-session[285902]: Invalid user pzuser from 189.146.113.120 port 49906
2026-10-09T19:27:45.250518+02:00 smtp-01.hosts.ferron.sh sshd-session[286267]: Invalid user admin from 189.146.113.120 port 42030
2026-10-09T19:28:49.650108+02:00 smtp-01.hosts.ferron.sh sshd-session[286627]: Invalid user umesh from 189.146.113.120 port 38920
...
show less
Multiple SSH login attempts from 189.146.113.120 targeting user(s): postgres,root | Server Managed b ...
show moreMultiple SSH login attempts from 189.146.113.120 targeting user(s): postgres,root | Server Managed by Focusnic
show less
2026-10-09T20:13:38.939959+03:00 kotia sshd-session[741657]: Invalid user postgres from 189.146.113. ...
show more2026-10-09T20:13:38.939959+03:00 kotia sshd-session[741657]: Invalid user postgres from 189.146.113.120 port 33832
...
show less
2026-10-09T18:50:43.928833+02:00 ns1..de sshd-session[1035738]: Invalid user ubuntu from 189.146.113 ...
show more2026-10-09T18:50:43.928833+02:00 ns1..de sshd-session[1035738]: Invalid user ubuntu from 189.146.113.120 port 41066
2026-10-09T18:50:44.134880+02:00 ns1..de sshd-session[1035738]: Disconnected from invalid user ubuntu 189.146.113.120 port 41066 [preauth]
2026-10-09T18:59:08.062141+02:00 ns1..de sshd-session[1036493]: Invalid user yby from 189.146.113.120 port 42454
show less