This IP address has been reported a total of
95
times from
53 distinct
sources.
111.21.255.4 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
Germany
with 22
reports;
United States of America
with 13
reports;
United Kingdom of Great Britain and Northern Ireland
with 9
reports.
The most common categories in these recent reports were:
Brute-Force
88
times;
SSH
80
times;
Web App Attack
4
times;
Hacking
2
times;
Web Spam
2
times;
Other
3
times.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Oct 3 01:34:52 obsidian sshd[837242]: Failed password for root from 111.21.255.4 port 43270 ssh2
Oc ...
show moreOct 3 01:34:52 obsidian sshd[837242]: Failed password for root from 111.21.255.4 port 43270 ssh2
Oct 3 01:34:54 obsidian sshd[837244]: Invalid user ubuntu from 111.21.255.4 port 44460
Oct 3 01:34:56 obsidian sshd[837247]: Invalid user gener8 from 111.21.255.4 port 45410
...
show less
Detected by CrowdSec on web-6405131d: CrowdSec: crowdsecurity/ssh-slow-bf | ASN: 9808 (China Mobile ...
show moreDetected by CrowdSec on web-6405131d: CrowdSec: crowdsecurity/ssh-slow-bf | ASN: 9808 (China Mobile Communications Group Co., Ltd.) | Country: CN | Range: 111.21.0.0/16
show less
Detected by SiberKapan threat intelligence platform (siberkapan.org). Attack types: fail2ban_ban. So ...
show moreDetected by SiberKapan threat intelligence platform (siberkapan.org). Attack types: fail2ban_ban. Sources: fail2ban. First seen: 2026-10-02. Risk score: 40/100.
show less
2026-10-03T01:47:57.468448+02:00 serengeti sshd-session[3399374]: Failed password for root from 111. ...
show more2026-10-03T01:47:57.468448+02:00 serengeti sshd-session[3399374]: Failed password for root from 111.21.255.4 port 51520 ssh2
2026-10-03T01:47:58.701859+02:00 serengeti sshd-session[3399376]: Invalid user ubuntu from 111.21.255.4 port 52084
2026-10-03T01:47:58.938163+02:00 serengeti sshd-session[3399376]: Failed password for invalid user ubuntu from 111.21.255.4 port 52084 ssh2
2026-10-03T01:48:00.174043+02:00 serengeti sshd-session[3399378]: Invalid user xnsprkteknologirfb from 111.21.255.4 port 52700
2026-10-03T01:48:00.411766+02:00 serengeti sshd-session[3399378]: Failed password for invalid user xnsprkteknologirfb from 111.21.255.4 port 52700 ssh2
...
show less
Oct 2 23:32:15 ubuntu sshd[2690358]: Invalid user ubuntu from 111.21.255.4 port 60808
Oct 2 23:32: ...
show moreOct 2 23:32:15 ubuntu sshd[2690358]: Invalid user ubuntu from 111.21.255.4 port 60808
Oct 2 23:32:15 ubuntu sshd[2690358]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=111.21.255.4
Oct 2 23:32:18 ubuntu sshd[2690358]: Failed password for invalid user ubuntu from 111.21.255.4 port 60808 ssh2
...
show less
2026-10-03T01:02:44.937013+02:00 localhost sshd[2804982]: Invalid user ubuntu from 111.21.255.4 port ...
show more2026-10-03T01:02:44.937013+02:00 localhost sshd[2804982]: Invalid user ubuntu from 111.21.255.4 port 46278
2026-10-03T01:02:46.722477+02:00 localhost sshd[2804980]: Connection closed by authenticating user root 111.21.255.4 port 45154 [preauth]
2026-10-03T01:02:46.727310+02:00 localhost sshd[2805016]: Invalid user franvallejo from 111.21.255.4 port 47450
2026-10-03T01:02:45.447123+02:00 localhost sshd[2804982]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=111.21.255.4
2026-10-03T01:02:47.418235+02:00 localhost sshd[2804982]: Failed password for invalid user ubuntu from 111.21.255.4 port 46278 ssh2
...
show less
2026-10-03T01:01:07.605877+02:00 serengeti sshd-session[3392579]: Failed password for root from 111. ...
show more2026-10-03T01:01:07.605877+02:00 serengeti sshd-session[3392579]: Failed password for root from 111.21.255.4 port 46692 ssh2
2026-10-03T01:01:08.816443+02:00 serengeti sshd-session[3392583]: Invalid user ubuntu from 111.21.255.4 port 47370
2026-10-03T01:01:09.042090+02:00 serengeti sshd-session[3392583]: Failed password for invalid user ubuntu from 111.21.255.4 port 47370 ssh2
2026-10-03T01:01:10.239468+02:00 serengeti sshd-session[3392585]: Invalid user sprakteknologi from 111.21.255.4 port 47912
2026-10-03T01:01:10.468027+02:00 serengeti sshd-session[3392585]: Failed password for invalid user sprakteknologi from 111.21.255.4 port 47912 ssh2
...
show less
Oct 3 00:55:21 Debian-1202-bookworm-amd64-base sshd[849309]: pam_unix(sshd:auth): authentication fa ...
show moreOct 3 00:55:21 Debian-1202-bookworm-amd64-base sshd[849309]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=111.21.255.4
Oct 3 00:55:23 Debian-1202-bookworm-amd64-base sshd[849309]: Failed password for invalid user ubuntu from 111.21.255.4 port 56682 ssh2
Oct 3 00:55:24 Debian-1202-bookworm-amd64-base sshd[851881]: Invalid user xstarsmp from 111.21.255.4 port 57888
Oct 3 00:55:24 Debian-1202-bookworm-amd64-base sshd[851881]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=111.21.255.4
Oct 3 00:55:26 Debian-1202-bookworm-amd64-base sshd[851881]: Failed password for invalid user xstarsmp from 111.21.255.4 port 57888 ssh2
...
show less
Oct 2 22:18:25 obsidian sshd[463802]: Failed password for root from 111.21.255.4 port 34026 ssh2
Oc ...
show moreOct 2 22:18:25 obsidian sshd[463802]: Failed password for root from 111.21.255.4 port 34026 ssh2
Oct 2 22:18:26 obsidian sshd[463806]: Invalid user ubuntu from 111.21.255.4 port 35234
Oct 2 22:18:28 obsidian sshd[463835]: Invalid user gener8 from 111.21.255.4 port 35826
...
show less
Detected by CrowdSec on web-6405131d: CrowdSec: crowdsecurity/ssh-bf | ASN: 9808 (China Mobile Commu ...
show moreDetected by CrowdSec on web-6405131d: CrowdSec: crowdsecurity/ssh-bf | ASN: 9808 (China Mobile Communications Group Co., Ltd.) | Country: CN | Range: 111.21.0.0/16
show less