This IP address has been reported a total of
58
times from
48 distinct
sources.
37.131.149.58 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
Repeated SSH brute force and user enumeration attempts against a secured web server. Multiple failed ...
show moreRepeated SSH brute force and user enumeration attempts against a secured web server. Multiple failed authentication attempts from this IP across an extended period.
show less
SSH brute-force: sshd: brute force trying to get access to the system. Non existent user. | MITRE: B ...
show moreSSH brute-force: sshd: brute force trying to get access to the system. Non existent user. | MITRE: Brute Force
show less
Jun 11 11:07:38 mail6 sshd-session[3684715]: pam_unix(sshd:auth): authentication failure; logname= u ...
show moreJun 11 11:07:38 mail6 sshd-session[3684715]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=37.131.149.58 user=root
Jun 11 11:07:40 mail6 sshd-session[3684715]: Failed password for invalid user root from 37.131.149.58 port 33180 ssh2
Jun 11 11:07:44 mail6 sshd-session[3684715]: Failed password for invalid user root from 37.131.149.58 port 33180 ssh2
Jun 11 11:07:46 mail6 sshd-session[3684715]: Failed password for invalid user root from 37.131.149.58 port 33180 ssh2
Jun 11 11:07:50 mail6 sshd-session[3684715]: Failed password for invalid user root from 37.131.149.58 port 33180 ssh2
...
show less
2026-06-11T09:44:05.965298+01:00 deb sshd-session[1027858]: error: maximum authentication attempts e ...
show more2026-06-11T09:44:05.965298+01:00 deb sshd-session[1027858]: error: maximum authentication attempts exceeded for root from 37.131.149.58 port 58086 ssh2 [preauth]
2026-06-11T09:44:07.358729+01:00 deb sshd-session[1027898]: error: maximum authentication attempts exceeded for root from 37.131.149.58 port 58468 ssh2 [preauth]
2026-06-11T09:44:08.967040+01:00 deb sshd-session[1027907]: error: maximum authentication attempts exceeded for root from 37.131.149.58 port 58766 ssh2 [preauth]
2026-06-11T09:44:12.848656+01:00 deb sshd-session[1027911]: Invalid user admin from 37.131.149.58 port 59634
2026-06-11T09:44:13.138321+01:00 deb sshd-session[1027911]: error: maximum authentication attempts exceeded for invalid user admin from 37.131.149.58 port 59634 ssh2 [preauth]
...
show less
FL Jun 11 10:41:50 server01 sshd[968206]: Failed password for root from 37.131.149.58 port 33178 ssh ...
show moreFL Jun 11 10:41:50 server01 sshd[968206]: Failed password for root from 37.131.149.58 port 33178 ssh2
Jun 11 10:41:52 server01 sshd[968206]: Failed password for root from 37.131.149.58 port 33178 ssh2
Jun 11 10:41:54 server01 sshd[968206]: Failed password for root from 37.131.149.58 port 33178 ssh2
Jun 11 10:41:57 server01 sshd[968206]: Failed password for root from 37.131.149.58 port 33178 ssh2
Jun 11 10:42:01 server01 sshd[968206]: Failed password for root from 37.131.149.58 port 33178 ssh2
show less
(sshd) Failed SSH login from 37.131.149.58 (PL/Poland/host-37-131-149-58.dynamic.mm.pl): 50 in the l ...
show more(sshd) Failed SSH login from 37.131.149.58 (PL/Poland/host-37-131-149-58.dynamic.mm.pl): 50 in the last 3600 secs
show less
2026-06-11T10:20:09.424115+02:00 mail sshd[2013520]: Failed password for root from 37.131.149.58 por ...
show more2026-06-11T10:20:09.424115+02:00 mail sshd[2013520]: Failed password for root from 37.131.149.58 port 49492 ssh2
2026-06-11T10:20:11.725005+02:00 mail sshd[2013520]: Failed password for root from 37.131.149.58 port 49492 ssh2
2026-06-11T10:20:13.845952+02:00 mail sshd[2013520]: Failed password for root from 37.131.149.58 port 49492 ssh2
...
show less
CSF/LFD blocked 37.131.149.58 after LF_SSHD on * (inout, perm=1, ttl=1s). Reason: (sshd) Failed SSH ...
show moreCSF/LFD blocked 37.131.149.58 after LF_SSHD on * (inout, perm=1, ttl=1s). Reason: (sshd) Failed SSH login from 37.131.149.58 (PL/Poland/host-37-131-149-58.dynamic.mm.pl): 5 in the last 3600 secs. Evidence: Jun 11 02:15:17 paladin sshd-session[1565116]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=37.131.149.58 user=root
show less
Brute-Force
SSH
Showing 1 to
15
of 58 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ