This IP address has been reported a total of
4,700
times from
1,170 distinct
sources.
82.152.132.24 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
2026-03-28T20:09:13.058916+01:00 server1 sshd-session[3148321]: User root from 82.152.132.24 not all ...
show more2026-03-28T20:09:13.058916+01:00 server1 sshd-session[3148321]: User root from 82.152.132.24 not allowed because not listed in AllowUsers
2026-03-28T20:13:38.358970+01:00 server1 sshd-session[3150832]: User root from 82.152.132.24 not allowed because not listed in AllowUsers
...
show less
(sshd) Failed SSH login from 82.152.132.24 (RO/Romania/-): 5 in the last 3600 secs; Ports: *; Direct ...
show more(sshd) Failed SSH login from 82.152.132.24 (RO/Romania/-): 5 in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_SSHD; Logs: Mar 28 13:00:19 14418 sshd[19289]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=82.152.132.24 user=root
Mar 28 13:00:20 14418 sshd[19289]: Failed password for root from 82.152.132.24 port 33650 ssh2
Mar 28 13:05:57 14418 sshd[20069]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=82.152.132.24 user=root
Mar 28 13:05:59 14418 sshd[20069]: Failed password for root from 82.152.132.24 port 47994 ssh2
Mar 28 13:10:25 14418 sshd[20785]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=82.152.132.24 user=root
show less
2026-03-28T18:48:46.997040+01:00 server1 sshd-session[3100763]: User root from 82.152.132.24 not all ...
show more2026-03-28T18:48:46.997040+01:00 server1 sshd-session[3100763]: User root from 82.152.132.24 not allowed because not listed in AllowUsers
2026-03-28T19:02:52.155542+01:00 server1 sshd-session[3109393]: User root from 82.152.132.24 not allowed because not listed in AllowUsers
2026-03-28T19:07:22.363521+01:00 server1 sshd-session[3112034]: User root from 82.152.132.24 not allowed because not listed in AllowUsers
...
show less
Cluster member (Omitted) (-) said, DENY 82.152.132.24, Reason:[(sshd) Failed SSH login from 82.152.1 ...
show moreCluster member (Omitted) (-) said, DENY 82.152.132.24, Reason:[(sshd) Failed SSH login from 82.152.132.24 (RO/Romania/-): 3 in the last (Omitted)]
show less
82.152.132.24 (RO/Romania/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; Po ...
show more82.152.132.24 (RO/Romania/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_DISTATTACK; Logs: Mar 28 12:51:23 14725 sshd[23107]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=181.188.176.242 user=root
Mar 28 12:51:25 14725 sshd[23107]: Failed password for root from 181.188.176.242 port 34866 ssh2
Mar 28 12:33:45 14725 sshd[21689]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=181.188.176.242 user=root
Mar 28 12:33:47 14725 sshd[21689]: Failed password for root from 181.188.176.242 port 38798 ssh2
Mar 28 12:52:01 14725 sshd[23113]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=82.152.132.24 user=root
IP Addresses Blocked:
181.188.176.242 (BO/Bolivia/LPZ-181-188-176-00242.tigo.bo)
show less
Automated report: SSH brute force detected. This IP exceeded the allowed number of failed login atte ...
show moreAutomated report: SSH brute force detected. This IP exceeded the allowed number of failed login attempts (3 attempts).
show less
Honeypot hit: Brute-force attack detected on 22/SSH
โข Number of sessions: 4
โข Credentials: root:qwer ...
show moreHoneypot hit: Brute-force attack detected on 22/SSH
โข Number of sessions: 4
โข Credentials: root:qwert54321, root:Adm1n2025, 345gs5662d34:345gs5662d34, root:3245gs5662d34
โข Number of login attempts: 4
โข Client: SSH-2.0-libssh_0.11.1
show less
Mar 28 15:29:46 NODE-2 sshd[4049190]: Failed password for root from 82.152.132.24 port 37044 ssh2
Ma ...
show moreMar 28 15:29:46 NODE-2 sshd[4049190]: Failed password for root from 82.152.132.24 port 37044 ssh2
Mar 28 15:29:47 NODE-2 sshd[4049190]: Disconnected from authenticating user root 82.152.132.24 port 37044 [preauth]
Mar 28 15:34:31 NODE-2 sshd[49160]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=82.152.132.24 user=root
Mar 28 15:34:33 NODE-2 sshd[49160]: Failed password for root from 82.152.132.24 port 42064 ssh2
Mar 28 15:34:33 NODE-2 sshd[49160]: Disconnected from authenticating user root 82.152.132.24 port 42064 [preauth]
...
show less
82.152.132.24 (RO/Romania/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; Po ...
show more82.152.132.24 (RO/Romania/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_DISTATTACK; Logs: Mar 28 14:25:09 24013 sshd[20916]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=157.20.172.87 user=root
Mar 28 14:25:11 24013 sshd[20916]: Failed password for root from 157.20.172.87 port 49362 ssh2
Mar 28 14:13:08 24013 sshd[19962]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=82.152.132.24 user=root
Mar 28 14:13:10 24013 sshd[19962]: Failed password for root from 82.152.132.24 port 48806 ssh2
Mar 28 14:27:04 24013 sshd[21067]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=82.152.132.24 user=root
IP Addresses Blocked:
157.20.172.87 (IN/India/static-172.20.157.hostzop.com)
show less
Brute-Force
SSH
Showing 4666 to
4680
of 4700 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ