This IP address has been reported a total of
155
times from
103 distinct
sources.
116.169.217.66 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
Fail2Ban banned IP after 3 attempts against AbuseIPDB
This IP address carried out 2 port scanning attempts on 08-05-2026. For more information or to repor ...
show moreThis IP address carried out 2 port scanning attempts on 08-05-2026. For more information or to report interesting / incorrect findings, give me a shoutout @parthmaniar on Twitter.
show less
May 7 18:15:41 phoenix sshd[2935459]: pam_unix(sshd:auth): authentication failure; logname= uid=0 e ...
show moreMay 7 18:15:41 phoenix sshd[2935459]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=116.169.217.66 user=root
May 7 18:15:43 phoenix sshd[2935459]: Failed password for root from 116.169.217.66 port 58152 ssh2
...
show less
2026-05-07T19:29:24.785843+02:00 aligw01.aneirin.net sshd-session[5549]: Connection closed by 116.16 ...
show more2026-05-07T19:29:24.785843+02:00 aligw01.aneirin.net sshd-session[5549]: Connection closed by 116.169.217.66 port 43508 [preauth]
2026-05-07T19:29:30.588039+02:00 aligw01.aneirin.net sshd-session[5551]: Failed password for root from 116.169.217.66 port 43522 ssh2
2026-05-07T19:29:32.581717+02:00 aligw01.aneirin.net sshd-session[5551]: Connection closed by authenticating user root 116.169.217.66 port 43522 [preauth]
...
show less
(sshd) Failed SSH login from 116.169.217.66 (CN/China/-): 5 in the last 3600 secs; Ports: *; Directi ...
show more(sshd) Failed SSH login from 116.169.217.66 (CN/China/-): 5 in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_SSHD; Logs: May 7 12:20:08 4470 sshd[26888]: Did not receive identification string from 116.169.217.66 port 54538
May 7 12:20:23 4470 sshd[26889]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=116.169.217.66 user=root
May 7 12:20:24 4470 sshd[26889]: Failed password for root from 116.169.217.66 port 54552 ssh2
May 7 12:20:27 4470 sshd[26900]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=116.169.217.66 user=root
May 7 12:20:29 4470 sshd[26900]: Failed password for root from 116.169.217.66 port 52812 ssh2
show less
Honeypot bot from CN: 4 SSH login attempts; 1 fake-shell sessions opened; 1 commands executed; first ...
show moreHoneypot bot from CN: 4 SSH login attempts; 1 fake-shell sessions opened; 1 commands executed; first seen 2026-05-03T19:55:31, last seen 2026-05-03T19:56:41; client banner: SSH-2.0-Go
show less
ThreatBook Intelligence: Dynamic IP more details on http://threatbook.io/ip/116.169.217.66
2026-05-0 ...
show moreThreatBook Intelligence: Dynamic IP more details on http://threatbook.io/ip/116.169.217.66
2026-05-04 00:31:01 ["uname -s -m"]
show less
2026-05-04T19:43:14.326810Z [cowrie.ssh.factory.CowrieSSHFactory] New connection: 116.169.217.66:472 ...
show more2026-05-04T19:43:14.326810Z [cowrie.ssh.factory.CowrieSSHFactory] New connection: 116.169.217.66:47272 (158.69.22.11:2222) [session: 4e4679a5abaa]
2026-05-04T19:43:15.423609Z [cowrie.ssh.factory.CowrieSSHFactory] New connection: 116.169.217.66:47274 (158.69.22.11:2222) [session: c20ebc4d4f54]
...
show less
This IP address carried out 28 port scanning attempts on 03-05-2026. For more information or to repo ...
show moreThis IP address carried out 28 port scanning attempts on 03-05-2026. For more information or to report interesting / incorrect findings, give me a shoutout @parthmaniar on Twitter.
show less
This IP address carried out 4 SSH credential attack (attempts) on 03-05-2026. For more information o ...
show moreThis IP address carried out 4 SSH credential attack (attempts) on 03-05-2026. For more information or to report interesting / incorrect findings, give me a shoutout @parthmaniar on Twitter.
show less
May 3 17:56:55 Sayrix2 sshd[191210]: Failed password for root from 116.169.217.66 port 57004 ssh2
M ...
show moreMay 3 17:56:55 Sayrix2 sshd[191210]: Failed password for root from 116.169.217.66 port 57004 ssh2
May 3 17:57:14 Sayrix2 sshd[191212]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=116.169.217.66 user=root
May 3 17:57:17 Sayrix2 sshd[191212]: Failed password for root from 116.169.217.66 port 47490 ssh2
May 3 17:57:40 Sayrix2 sshd[191214]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=116.169.217.66 user=root
May 3 17:57:41 Sayrix2 sshd[191214]: Failed password for root from 116.169.217.66 port 51170 ssh2
...
show less
(sshd) Failed SSH login from 116.169.217.66 (CN/China/-): 5 in the last 3600 secs; Ports: *; Directi ...
show more(sshd) Failed SSH login from 116.169.217.66 (CN/China/-): 5 in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_SSHD; Logs: May 3 12:55:49 21255 sshd[28416]: Did not receive identification string from 116.169.217.66 port 49846
May 3 12:56:01 21255 sshd[28417]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=116.169.217.66 user=root
May 3 12:56:03 21255 sshd[28417]: Failed password for root from 116.169.217.66 port 49860 ssh2
May 3 12:56:15 21255 sshd[28567]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=116.169.217.66 user=root
May 3 12:56:17 21255 sshd[28567]: Failed password for root from 116.169.217.66 port 54764 ssh2
show less
Brute-Force
SSH
Showing 1 to
15
of 155 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ