This IP address has been reported a total of
125
times from
89 distinct
sources.
196.196.150.4 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
SSH brute force attempt. User: root, Pass: [REDACTED]
2026-06-13T17:32:56.760866+02:00 rahona.network sshd[1623824]: Failed password for invalid user admi ...
show more2026-06-13T17:32:56.760866+02:00 rahona.network sshd[1623824]: Failed password for invalid user admin from 196.196.150.4 port 56110 ssh2
2026-06-13T17:38:16.652441+02:00 rahona.network sshd[1623946]: Invalid user dev2 from 196.196.150.4 port 59226
2026-06-13T17:38:16.654212+02:00 rahona.network sshd[1623946]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=196.196.150.4
2026-06-13T17:38:18.884316+02:00 rahona.network sshd[1623946]: Failed password for invalid user dev2 from 196.196.150.4 port 59226 ssh2
show less
2026-06-13T09:25:35.863554-06:00 coordinator sshd[2303238]: pam_unix(sshd:auth): authentication fail ...
show more2026-06-13T09:25:35.863554-06:00 coordinator sshd[2303238]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=196.196.150.4
2026-06-13T09:25:37.622495-06:00 coordinator sshd[2303238]: Failed password for invalid user admin from 196.196.150.4 port 45614 ssh2
2026-06-13T09:37:19.186591-06:00 coordinator sshd[2303425]: Invalid user dev2 from 196.196.150.4 port 50028
...
show less
Cowrie Honeypot: 5 unauthorised SSH/Telnet login attempts between 2026-06-13T14:28:52Z and 2026-06-1 ...
show moreCowrie Honeypot: 5 unauthorised SSH/Telnet login attempts between 2026-06-13T14:28:52Z and 2026-06-13T15:27:25Z
show less
Fail2ban sshd: 2026-06-13T14:30:10.091274+00:00 siem-test sshd[1731241]: Failed password for invalid ...
show moreFail2ban sshd: 2026-06-13T14:30:10.091274+00:00 siem-test sshd[1731241]: Failed password for invalid user admin from 196.196.150.4 port 46586 ssh2
2026-06-13T14:35:05.765115+00:00 siem-test sshd[1731571]: Invalid user ftpdata from 196.196.150.4 port 49530
2026-06-13T14:35:05.769311+00:00 siem-test sshd[1731571]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=196.196.150.4
2026-06-13T14:35:07.895533+00:00 siem-test sshd[1731571]: Failed password for invalid user ftpdata
show less
Brute-Force
SSH
Anonymous
Jun 13 17:22:02 community sshd[1509878]: pam_unix(sshd:auth): authentication failure; logname= uid=0 ...
show moreJun 13 17:22:02 community sshd[1509878]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=196.196.150.4
Jun 13 17:22:04 community sshd[1509878]: Failed password for invalid user admin from 196.196.150.4 port 40284 ssh2
...
show less
Jun 13 15:50:58 office sshd[1493883]: Invalid user ftpuser from 196.196.150.4 port 37270
Jun 13 15:5 ...
show moreJun 13 15:50:58 office sshd[1493883]: Invalid user ftpuser from 196.196.150.4 port 37270
Jun 13 15:56:27 office sshd[1493903]: Invalid user tfserver from 196.196.150.4 port 49940
Jun 13 16:03:42 office sshd[1493936]: Invalid user dev from 196.196.150.4 port 52640
Jun 13 16:05:37 office sshd[1493950]: Invalid user erpnext from 196.196.150.4 port 43292
Jun 13 16:07:17 office sshd[1493959]: Invalid user coder from 196.196.150.4 port 46380
show less
Jun 13 12:37:19 lewisgillcom sshd[1077288]: Failed password for invalid user ubuntu from 196.196.150 ...
show moreJun 13 12:37:19 lewisgillcom sshd[1077288]: Failed password for invalid user ubuntu from 196.196.150.4 port 42642 ssh2
Jun 13 12:40:53 lewisgillcom sshd[1078250]: Invalid user aramos from 196.196.150.4 port 40342
Jun 13 12:40:53 lewisgillcom sshd[1078250]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=196.196.150.4
Jun 13 12:40:55 lewisgillcom sshd[1078250]: Failed password for invalid user aramos from 196.196.150.4 port 40342 ssh2
Jun 13 12:43:06 lewisgillcom sshd[1078636]: Invalid user train3 from 196.196.150.4 port 38152
...
show less
Jun 13 06:27:21 foghorn sshd[1583755]: pam_unix(sshd:auth): authentication failure; logname= uid=0 e ...
show moreJun 13 06:27:21 foghorn sshd[1583755]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=196.196.150.4
Jun 13 06:27:23 foghorn sshd[1583755]: Failed password for invalid user ubuntu from 196.196.150.4 port 52160 ssh2
Jun 13 06:39:21 foghorn sshd[1585528]: Invalid user aramos from 196.196.150.4 port 49172
...
show less
2026-06-13T11:30:02.585193+00:00 sector-1 sshd-session[1909530]: User root from 196.196.150.4 not al ...
show more2026-06-13T11:30:02.585193+00:00 sector-1 sshd-session[1909530]: User root from 196.196.150.4 not allowed because not listed in AllowUsers
2026-06-13T11:31:49.946319+00:00 sector-1 sshd-session[1909762]: User root from 196.196.150.4 not allowed because not listed in AllowUsers
...
show less
Brute-Force
SSH
Showing 1 to
15
of 125 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ