This IP address has been reported a total of
272
times from
183 distinct
sources.
200.75.136.149 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
DE02-HBRR-STOR: SSH Brute Force from 200.75.136.149 at 2026-06-03 14:35:54 IST
Brute-Force
SSH
Anonymous
2026-06-03T08:32:17.391199+00:00 polka sshd-session[157137]: Connection closed by authenticating use ...
show more2026-06-03T08:32:17.391199+00:00 polka sshd-session[157137]: Connection closed by authenticating user root 200.75.136.149 port 55746 [preauth]
2026-06-03T08:32:18.445805+00:00 polka sshd-session[157139]: Connection closed by authenticating user root 200.75.136.149 port 55756 [preauth]
2026-06-03T08:32:19.490855+00:00 polka sshd-session[157141]: Connection closed by authenticating user root 200.75.136.149 port 55758 [preauth]
2026-06-03T08:32:20.543361+00:00 polka sshd-session[157143]: Connection closed by authenticating user root 200.75.136.149 port 55770 [preauth]
2026-06-03T08:32:21.587022+00:00 polka sshd-session[157145]: Connection closed by authenticating user root 200.75.136.149 port 55776 [preauth]
...
show less
2026-06-03T05:58:28.115766+00:00 expanse-johor-game-node sshd[3707212]: Invalid user user from 200.7 ...
show more2026-06-03T05:58:28.115766+00:00 expanse-johor-game-node sshd[3707212]: Invalid user user from 200.75.136.149 port 46998
2026-06-03T05:58:29.645696+00:00 expanse-johor-game-node sshd[3708071]: Invalid user user from 200.75.136.149 port 47014
2026-06-03T05:58:31.168155+00:00 expanse-johor-game-node sshd[3708212]: Invalid user user from 200.75.136.149 port 47020
2026-06-03T05:58:32.688865+00:00 expanse-johor-game-node sshd[3709078]: Invalid user user from 200.75.136.149 port 47036
2026-06-03T05:58:34.215968+00:00 expanse-johor-game-node sshd[3709223]: Invalid user user from 200.75.136.149 port 47048
...
show less
Jun 2 06:50:57 uptime-kuma sshd[749059]: Connection closed by authenticating user root 200.75.136.1 ...
show moreJun 2 06:50:57 uptime-kuma sshd[749059]: Connection closed by authenticating user root 200.75.136.149 port 42072 [preauth]
...
show less
This IP was detected by CrowdSec triggering crowdsecurity/suricata-major-severity(ET SCAN Potential ...
show moreThis IP was detected by CrowdSec triggering crowdsecurity/suricata-major-severity(ET SCAN Potential SSH Scan). Ip 200.75.136.149 performed 'crowdsecurity/suricata-major-severity' (1 events over 0s) at 2026-06-01 19:48:11.080509273 +0000 UTC
show less
2026-06-01T16:32:13.659357+00:00 edge-tyo-con01.int.pdx.net.uk sshd[543424]: Failed password for roo ...
show more2026-06-01T16:32:13.659357+00:00 edge-tyo-con01.int.pdx.net.uk sshd[543424]: Failed password for root from 200.75.136.149 port 34822 ssh2
2026-06-01T16:32:16.347232+00:00 edge-tyo-con01.int.pdx.net.uk sshd[543426]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=200.75.136.149 user=root
2026-06-01T16:32:18.653765+00:00 edge-tyo-con01.int.pdx.net.uk sshd[543426]: Failed password for root from 200.75.136.149 port 34836 ssh2
...
show less
Jun 1 07:36:58 es sshd[3528504]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 ...
show moreJun 1 07:36:58 es sshd[3528504]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=200.75.136.149 user=root
Jun 1 07:36:59 es sshd[3528504]: Failed password for root from 200.75.136.149 port 48412 ssh2
...
show less
Automated report: SSH brute force detected. This IP exceeded the allowed number of failed login atte ...
show moreAutomated report: SSH brute force detected. This IP exceeded the allowed number of failed login attempts (3 attempts).
show less
2026-06-01T05:46:03.178780+09:00 no5 sshd[1187578]: Connection closed by authenticating user root 20 ...
show more2026-06-01T05:46:03.178780+09:00 no5 sshd[1187578]: Connection closed by authenticating user root 200.75.136.149 port 51512 [preauth]
...
show less
Brute-Force
SSH
Showing 16 to
30
of 272 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ