This IP address carried out 74 SSH credential attack (attempts) on 17-11-2025. For more information ...
show moreThis IP address carried out 74 SSH credential attack (attempts) on 17-11-2025. For more information or to report interesting / incorrect findings, give me a shoutout @parthmaniar on Twitter.
show less
(sshd) Failed SSH login from 38.134.41.2 (US/United States/rhykse.site): 5 in the last 3600 secs; Po ...
show more(sshd) Failed SSH login from 38.134.41.2 (US/United States/rhykse.site): 5 in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_SSHD; Logs: Nov 17 16:58:29 24375 sshd[9332]: Invalid user postgres from 38.134.41.2 port 53170
Nov 17 16:58:31 24375 sshd[9332]: Failed password for invalid user postgres from 38.134.41.2 port 53170 ssh2
Nov 17 17:02:02 24375 sshd[9669]: Invalid user testuser from 38.134.41.2 port 49008
Nov 17 17:02:05 24375 sshd[9669]: Failed password for invalid user testuser from 38.134.41.2 port 49008 ssh2
Nov 17 17:03:21 24375 sshd[9754]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=38.134.41.2 user=root
show less
2025-11-17T18:59:02.758014+02:00 jadzia sshd-session[637839]: Invalid user postgres from 38.134.41.2 ...
show more2025-11-17T18:59:02.758014+02:00 jadzia sshd-session[637839]: Invalid user postgres from 38.134.41.2 port 39156
2025-11-17T18:59:02.880238+02:00 jadzia sshd-session[637839]: Disconnected from invalid user postgres 38.134.41.2 port 39156 [preauth]
2025-11-17T19:02:14.348210+02:00 jadzia sshd-session[638539]: Invalid user testuser from 38.134.41.2 port 49612
2025-11-17T19:02:14.473853+02:00 jadzia sshd-session[638539]: Disconnected from invalid user testuser 38.134.41.2 port 49612 [preauth]
2025-11-17T19:03:32.422332+02:00 jadzia sshd-session[638637]: User root from 38.134.41.2 not allowed because not listed in AllowUsers
...
show less
2025-11-17T16:59:46.347121+00:00 ovh-grav sshd[1884955]: Invalid user postgres from 38.134.41.2 port ...
show more2025-11-17T16:59:46.347121+00:00 ovh-grav sshd[1884955]: Invalid user postgres from 38.134.41.2 port 46736
2025-11-17T17:02:28.664703+00:00 ovh-grav sshd[1885150]: Invalid user testuser from 38.134.41.2 port 58510
...
show less
[Auto ban] Fail2Ban jail sshd on host: 3 failures in 2h. Excerpt: 2025-11-17T16:20:24.715261+00:00 U ...
show more[Auto ban] Fail2Ban jail sshd on host: 3 failures in 2h. Excerpt: 2025-11-17T16:20:24.715261+00:00 Ubuntu-Toronto1 sshd[455075]: Invalid user nancy from 38.134.41.2 port 48752
2025-11-17T16:21:37.450317+00:00 Ubuntu-Toronto1 sshd[455103]: Invalid user sl from 38.134.41.2 port 33870
2025-11-17T16:22:50.618873+00:00 Ubuntu-Toronto1 sshd[455131]: Invalid user znc from 38.134.41.2 port 35164
show less