This IP address has been reported a total of
159
times from
140 distinct
sources.
34.138.140.242 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
2026-06-01T06:31:13.821312+02:00 zanati sshd[2730274]: Invalid user ubnt from 34.138.140.242 port 39 ...
show more2026-06-01T06:31:13.821312+02:00 zanati sshd[2730274]: Invalid user ubnt from 34.138.140.242 port 39856
...
show less
SSH brute-force on cowrie honeypot port 22. 5 login attempt(s). Usernames: ubnt, root. Passwords tri ...
show moreSSH brute-force on cowrie honeypot port 22. 5 login attempt(s). Usernames: ubnt, root. Passwords tried: 000000, ubnt, P@ssw0rd, 1234, Password.
show less
2026-06-01T06:28:26.601720+02:00 dns-admin-host01.dns-admin.srvfarm.net sshd-session[2426175]: Conne ...
show more2026-06-01T06:28:26.601720+02:00 dns-admin-host01.dns-admin.srvfarm.net sshd-session[2426175]: Connection closed by authenticating user root 34.138.140.242 port 56508 [preauth]
2026-06-01T06:28:26.731333+02:00 dns-admin-host01.dns-admin.srvfarm.net sshd-session[2426174]: Connection closed by authenticating user root 34.138.140.242 port 56536 [preauth]
2026-06-01T06:28:27.199919+02:00 dns-admin-host01.dns-admin.srvfarm.net sshd-session[2426181]: Connection closed by authenticating user root 34.138.140.242 port 56578 [preauth]
2026-06-01T06:29:25.325517+02:00 dns-admin-host01.dns-admin.srvfarm.net sshd-session[2426180]: Connection closed by authenticating user root 34.138.140.242 port 56586 [preauth]
2026-06-01T06:29:55.909296+02:00 dns-admin-host01.dns-admin.srvfarm.net sshd-session[2426179]: Connection closed by 34.138.140.242 port 56594 [preauth]
show less
Jun 1 07:28:12 intra sshd\[53776\]: Invalid user ui from 34.138.140.242Jun 1 07:28:12 intra sshd\[ ...
show moreJun 1 07:28:12 intra sshd\[53776\]: Invalid user ui from 34.138.140.242Jun 1 07:28:12 intra sshd\[53773\]: Invalid user ubnt from 34.138.140.242Jun 1 07:28:18 intra sshd\[53776\]: Failed password for invalid user ui from 34.138.140.242 port 53644 ssh2Jun 1 07:28:18 intra sshd\[53765\]: Failed password for root from 34.138.140.242 port 53568 ssh2Jun 1 07:28:18 intra sshd\[53768\]: Failed password for root from 34.138.140.242 port 53586 ssh2Jun 1 07:28:18 intra sshd\[53772\]: Failed password for root from 34.138.140.242 port 53598 ssh2
...
show less
2026-06-01T04:24:35.525104+00:00 panel.gamer3514.co.uk sshd[1753468]: Failed password for root from ...
show more2026-06-01T04:24:35.525104+00:00 panel.gamer3514.co.uk sshd[1753468]: Failed password for root from 34.138.140.242 port 40950 ssh2
2026-06-01T04:24:33.613744+00:00 panel.gamer3514.co.uk sshd[1753472]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=34.138.140.242 user=root
2026-06-01T04:24:35.554555+00:00 panel.gamer3514.co.uk sshd[1753472]: Failed password for root from 34.138.140.242 port 40918 ssh2
...
show less
Brute-Force
SSH
Anonymous
2026-06-01T04:24:27.497732+00:00 mail sshd[117707]: pam_unix(sshd:auth): authentication failure; log ...
show more2026-06-01T04:24:27.497732+00:00 mail sshd[117707]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=34.138.140.242 user=root
2026-06-01T04:24:29.614194+00:00 mail sshd[117707]: Failed password for root from 34.138.140.242 port 50464 ssh2
...
show less
2026-06-01T04:24:03.711094+00:00 24fire sshd-session[2408135]: pam_unix(sshd:auth): authentication f ...
show more2026-06-01T04:24:03.711094+00:00 24fire sshd-session[2408135]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=34.138.140.242
2026-06-01T04:24:06.059598+00:00 24fire sshd-session[2408135]: Failed password for invalid user ui from 34.138.140.242 port 47280 ssh2
...
show less
(sshd) Failed SSH login from 34.138.140.242 (US/United States/242.140.138.34.bc.googleusercontent.co ...
show more(sshd) Failed SSH login from 34.138.140.242 (US/United States/242.140.138.34.bc.googleusercontent.com)
show less