This IP address has been reported a total of
114
times from
59 distinct
sources.
45.134.212.74 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
Attacker conducted 2 SSH sessions using weak credentials (administrator/1234) over a 2-minute window ...
show moreAttacker conducted 2 SSH sessions using weak credentials (administrator/1234) over a 2-minute window. No commands were executed, but the attacker attempted 4 port forwarding connections targeting HTTPS and HTTP services on external addresses, suggesting reconnaissance or lateral movement probing.
show less
Two SSH sessions established using weak credentials (administrator/1234) with OpenSSH client. The at ...
show moreTwo SSH sessions established using weak credentials (administrator/1234) with OpenSSH client. The attacker attempted multiple port forwarding connections to external hosts on ports 80 and 443, suggesting reconnaissance or tunnel establishment for command and control purposes. No command execution or malware artifacts were recovered during the activity window.
show less
Attacker from 45.134.212.74 established 2 SSH sessions using weak credentials (administrator/1234) a ...
show moreAttacker from 45.134.212.74 established 2 SSH sessions using weak credentials (administrator/1234) and attempted port forwarding to external HTTPS and HTTP services including infrastructure associated with content delivery and cloud hosting providers, suggesting reconnaissance or lateral movement staging; no commands were executed and no malware artifacts were recovered during the activity window.
show less
The attacker established 2 SSH sessions from this IP with unknown credentials and executed no comman ...
show moreThe attacker established 2 SSH sessions from this IP with unknown credentials and executed no commands, but attempted port forwarding to 4 external hosts across ports 80 and 443, suggesting reconnaissance or preparation for tunneling traffic through the compromised system.
show less
Two SSH sessions were established using weak credentials (administrator/1234), with the attacker att ...
show moreTwo SSH sessions were established using weak credentials (administrator/1234), with the attacker attempting port forwarding to five external destinations across ports 80 and 443, suggesting reconnaissance or lateral movement activity. No commands were executed and no artifacts were recovered during the approximately two-minute intrusion window.
show less
Attacker established 2 SSH sessions using weak credentials (administrator/1234) but executed no comm ...
show moreAttacker established 2 SSH sessions using weak credentials (administrator/1234) but executed no commands and initiated no file transfers. Port forwarding was attempted to 4 external destinations across ports 80 and 443, suggesting reconnaissance for command and control or data exfiltration infrastructure.
show less