This IP address has been reported a total of
5,839
times from
1,224 distinct
sources.
89.252.157.42 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
2026-06-17T11:22:53.877721+02:00 hvs sshd-session[218408]: Disconnected from invalid user cx 89.252. ...
show more2026-06-17T11:22:53.877721+02:00 hvs sshd-session[218408]: Disconnected from invalid user cx 89.252.157.42 port 43724 [preauth]
2026-06-17T11:39:20.627988+02:00 hvs sshd-session[218547]: Invalid user ga from 89.252.157.42 port 55548
2026-06-17T11:39:20.695255+02:00 hvs sshd-session[218547]: Disconnected from invalid user ga 89.252.157.42 port 55548 [preauth]
2026-06-17T11:41:08.967846+02:00 hvs sshd-session[218562]: Invalid user blogi from 89.252.157.42 port 57474
2026-06-17T11:41:09.035459+02:00 hvs sshd-session[218562]: Disconnected from invalid user blogi 89.252.157.42 port 57474 [preauth]
...
show less
T-Pot honeypot: 154 hits in 15min on port(s) 22 (Cowrie/P0f/Suricata). SSH brute-force. Automated re ...
show moreT-Pot honeypot: 154 hits in 15min on port(s) 22 (Cowrie/P0f/Suricata). SSH brute-force. Automated report.
show less
Brute-Force
SSH
Anonymous
2026-06-17T11:18:34.043873+02:00 hvs sshd-session[218372]: Invalid user content from 89.252.157.42 p ...
show more2026-06-17T11:18:34.043873+02:00 hvs sshd-session[218372]: Invalid user content from 89.252.157.42 port 47096
2026-06-17T11:18:34.108938+02:00 hvs sshd-session[218372]: Disconnected from invalid user content 89.252.157.42 port 47096 [preauth]
2026-06-17T11:20:56.426151+02:00 hvs sshd-session[218390]: Invalid user extreme from 89.252.157.42 port 38322
2026-06-17T11:20:56.492986+02:00 hvs sshd-session[218390]: Disconnected from invalid user extreme 89.252.157.42 port 38322 [preauth]
2026-06-17T11:22:53.810754+02:00 hvs sshd-session[218408]: Invalid user cx from 89.252.157.42 port 43724
...
show less
2026-06-17T09:08:14.808778+00:00 s10925611 sshd[1319443]: Invalid user content from 89.252.157.42 po ...
show more2026-06-17T09:08:14.808778+00:00 s10925611 sshd[1319443]: Invalid user content from 89.252.157.42 port 57386
2026-06-17T09:19:38.683003+00:00 s10925611 sshd[1332279]: Invalid user extreme from 89.252.157.42 port 58526
2026-06-17T09:21:32.569450+00:00 s10925611 sshd[1334404]: Invalid user cx from 89.252.157.42 port 42484
...
show less
2026-06-17T11:16:21.738889+02:00 vmi768479 sshd[1137830]: Invalid user content from 89.252.157.42 po ...
show more2026-06-17T11:16:21.738889+02:00 vmi768479 sshd[1137830]: Invalid user content from 89.252.157.42 port 56260
2026-06-17T11:16:21.805939+02:00 vmi768479 sshd[1137830]: Disconnected from invalid user content 89.252.157.42 port 56260 [preauth]
2026-06-17T11:20:39.310231+02:00 vmi768479 sshd[1137841]: Invalid user extreme from 89.252.157.42 port 53086
...
show less
Jun 17 09:08:53 agera sshd[1245522]: pam_unix(sshd:auth): authentication failure; logname= uid=0 eui ...
show moreJun 17 09:08:53 agera sshd[1245522]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=89.252.157.42
Jun 17 09:08:55 agera sshd[1245522]: Failed password for invalid user content from 89.252.157.42 port 49230 ssh2
Jun 17 09:19:44 agera sshd[1245663]: Invalid user extreme from 89.252.157.42 port 49688
...
show less
Brute-Force
SSH
Anonymous
2026-06-17T10:06:09.607374+02:00 hosting15 sshd[1004119]: Failed password for invalid user casa from ...
show more2026-06-17T10:06:09.607374+02:00 hosting15 sshd[1004119]: Failed password for invalid user casa from 89.252.157.42 port 49796 ssh2
2026-06-17T10:10:31.688594+02:00 hosting15 sshd[1006089]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=89.252.157.42 user=root
2026-06-17T10:10:33.684416+02:00 hosting15 sshd[1006089]: Failed password for root from 89.252.157.42 port 50968 ssh2
...
show less
2026-06-17T09:48:59.944038+02:00 vweb01 sshd[1442537]: Invalid user ranger from 89.252.157.42 port 4 ...
show more2026-06-17T09:48:59.944038+02:00 vweb01 sshd[1442537]: Invalid user ranger from 89.252.157.42 port 48584
2026-06-17T09:50:48.237741+02:00 vweb01 sshd[1442646]: Invalid user master from 89.252.157.42 port 58478
2026-06-17T09:52:36.253105+02:00 vweb01 sshd[1442741]: Invalid user turtle from 89.252.157.42 port 57214
2026-06-17T09:54:26.193793+02:00 vweb01 sshd[1442825]: Invalid user openstack from 89.252.157.42 port 53596
...
show less
2026-06-17T09:20:55.595859+02:00 vweb01 sshd[1440696]: Invalid user sistemas from 89.252.157.42 port ...
show more2026-06-17T09:20:55.595859+02:00 vweb01 sshd[1440696]: Invalid user sistemas from 89.252.157.42 port 59800
2026-06-17T09:24:42.634476+02:00 vweb01 sshd[1440930]: Invalid user ubuntu from 89.252.157.42 port 55134
2026-06-17T09:32:16.430944+02:00 vweb01 sshd[1441686]: Invalid user yuli from 89.252.157.42 port 46572
2026-06-17T09:34:08.390728+02:00 vweb01 sshd[1441784]: Invalid user rtc from 89.252.157.42 port 33096
...
show less
2026-06-17T07:03:15.980247+00:00 jomu sshd[1274255]: Invalid user test from 89.252.157.42 port 56338 ...
show more2026-06-17T07:03:15.980247+00:00 jomu sshd[1274255]: Invalid user test from 89.252.157.42 port 56338
2026-06-17T07:12:44.296652+00:00 jomu sshd[1277652]: Invalid user webuser from 89.252.157.42 port 44482
2026-06-17T07:14:31.752721+00:00 jomu sshd[1278208]: Invalid user info from 89.252.157.42 port 51552
...
show less
2026-06-17T03:01:27.340589-04:00 debian sshd[1248968]: pam_unix(sshd:auth): authentication failure; ...
show more2026-06-17T03:01:27.340589-04:00 debian sshd[1248968]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=89.252.157.42 user=root
2026-06-17T03:01:29.436882-04:00 debian sshd[1248968]: Failed password for root from 89.252.157.42 port 42810 ssh2
2026-06-17T03:03:30.055563-04:00 debian sshd[1249991]: Invalid user test from 89.252.157.42 port 53392
2026-06-17T03:03:30.058999-04:00 debian sshd[1249991]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=89.252.157.42
2026-06-17T03:03:32.039895-04:00 debian sshd[1249991]: Failed password for invalid user test from 89.252.157.42 port 53392 ssh2
...
show less
2026-06-17T06:00:35.681150+00:00 ellison sshd[1969808]: Invalid user seed from 89.252.157.42 port 55 ...
show more2026-06-17T06:00:35.681150+00:00 ellison sshd[1969808]: Invalid user seed from 89.252.157.42 port 55138
2026-06-17T06:05:20.942343+00:00 ellison sshd[1970315]: Invalid user laposte from 89.252.157.42 port 57062
2026-06-17T06:07:17.141522+00:00 ellison sshd[1970531]: Invalid user student1 from 89.252.157.42 port 36908
2026-06-17T06:09:14.770158+00:00 ellison sshd[1970734]: Invalid user urban from 89.252.157.42 port 42384
...
show less
Brute-Force
SSH
Showing 1 to
15
of 5839 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ