This IP address has been reported a total of
49
times from
19 distinct
sources.
103.216.220.42 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
SSH brute force on port 22 -- 2 attempts, 1 successful. Credentials: root:philipp. Active: 2026-07-1 ...
show moreSSH brute force on port 22 -- 2 attempts, 1 successful. Credentials: root:philipp. Active: 2026-07-11T08:08 to 2026-07-11T09:12. Post-login: /usr/bin/usjngljmrc [mld] 3069724; /usr/bin/usjngljmrc /usr/sbin/gdm3 3069724; /usr/bin/usjngljmrc hald-runner 3069724. Malware: miner (critical); trojan (critical); trojan (high). Source: AS136557 Host Universal Pty Ltd (Brisbane, AU). Data from SSH honeypot โ not a production system.
show less
Reconnaissance or port-scan activity observed on a honeypot sensor. Honeypot decoy type: Suricata. D ...
show moreReconnaissance or port-scan activity observed on a honeypot sensor. Honeypot decoy type: Suricata. Decoy listen port: 23910/tcp. Observed event time: 2026-04-24 09:52:32 UTC. Report from passive honeypot only; no payload or credentials included.
show less
Reconnaissance or port-scan activity observed on a honeypot sensor. Honeypot decoy type: Suricata. D ...
show moreReconnaissance or port-scan activity observed on a honeypot sensor. Honeypot decoy type: Suricata. Decoy listen port: 23910/tcp. Observed event time: 2026-04-24 09:52:00 UTC. Report from passive honeypot only; no payload or credentials included.
show less
Reconnaissance or port-scan activity observed on a honeypot sensor. Honeypot decoy type: Suricata. D ...
show moreReconnaissance or port-scan activity observed on a honeypot sensor. Honeypot decoy type: Suricata. Decoy listen port: 23910/tcp. Observed event time: 2026-04-24 09:36:59 UTC. Report from passive honeypot only; no payload or credentials included.
show less
Reconnaissance or port-scan activity observed on a honeypot sensor. Honeypot decoy type: Suricata. D ...
show moreReconnaissance or port-scan activity observed on a honeypot sensor. Honeypot decoy type: Suricata. Decoy listen port: 23910/tcp. Observed event time: 2026-04-24 08:52:00 UTC. Report from passive honeypot only; no payload or credentials included.
show less
Reconnaissance or port-scan activity observed on a honeypot sensor. Honeypot decoy type: Suricata. D ...
show moreReconnaissance or port-scan activity observed on a honeypot sensor. Honeypot decoy type: Suricata. Decoy listen port: 23910/tcp. Observed event time: 2026-04-24 08:37:01 UTC. Report from passive honeypot only; no payload or credentials included.
show less
Reconnaissance or port-scan activity observed on a honeypot sensor. Honeypot decoy type: Suricata. D ...
show moreReconnaissance or port-scan activity observed on a honeypot sensor. Honeypot decoy type: Suricata. Decoy listen port: 23910/tcp. Observed event time: 2026-04-24 08:21:59 UTC. Report from passive honeypot only; no payload or credentials included.
show less
Reconnaissance or port-scan activity observed on a honeypot sensor. Honeypot decoy type: Suricata. D ...
show moreReconnaissance or port-scan activity observed on a honeypot sensor. Honeypot decoy type: Suricata. Decoy listen port: 23910/tcp. Observed event time: 2026-04-24 08:06:59 UTC. Report from passive honeypot only; no payload or credentials included.
show less
Reconnaissance or port-scan activity observed on a honeypot sensor. Honeypot decoy type: Suricata. D ...
show moreReconnaissance or port-scan activity observed on a honeypot sensor. Honeypot decoy type: Suricata. Decoy listen port: 23910/tcp. Observed event time: 2026-04-24 07:51:59 UTC. Report from passive honeypot only; no payload or credentials included.
show less
Reconnaissance or port-scan activity observed on a honeypot sensor. Honeypot decoy type: Suricata. D ...
show moreReconnaissance or port-scan activity observed on a honeypot sensor. Honeypot decoy type: Suricata. Decoy listen port: 23910/tcp. Observed event time: 2026-04-24 07:37:02 UTC. Report from passive honeypot only; no payload or credentials included.
show less
Reconnaissance or port-scan activity observed on a honeypot sensor. Honeypot decoy type: Suricata. D ...
show moreReconnaissance or port-scan activity observed on a honeypot sensor. Honeypot decoy type: Suricata. Decoy listen port: 37167/tcp. Observed event time: 2026-04-24 07:21:59 UTC. Report from passive honeypot only; no payload or credentials included.
show less
Reconnaissance or port-scan activity observed on a honeypot sensor. Honeypot decoy type: Suricata. D ...
show moreReconnaissance or port-scan activity observed on a honeypot sensor. Honeypot decoy type: Suricata. Decoy listen port: 37167/tcp. Observed event time: 2026-04-24 07:06:59 UTC. Report from passive honeypot only; no payload or credentials included.
show less
Generic malicious activity detected: Tentativa de varredura de porta TCP... | Proto: TCP | Port: 596 ...
show moreGeneric malicious activity detected: Tentativa de varredura de porta TCP... | Proto: TCP | Port: 59601 | Location: Australia, Brisbane
show less
Port Scan
Hacking
Showing 1 to
15
of 49 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ