This IP address has been reported a total of
1,914
times from
697 distinct
sources.
138.197.200.106 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
2026-04-22T04:55:21.522484+01:00 srv01 sshd-session[1668412]: pam_unix(sshd:auth): authentication fa ...
show more2026-04-22T04:55:21.522484+01:00 srv01 sshd-session[1668412]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.197.200.106
2026-04-22T04:55:23.911782+01:00 srv01 sshd-session[1668412]: Failed password for invalid user frappe from 138.197.200.106 port 51248 ssh2
2026-04-22T04:56:44.585350+01:00 srv01 sshd-session[1669240]: Invalid user server from 138.197.200.106 port 51512
2026-04-22T04:56:44.586783+01:00 srv01 sshd-session[1669240]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.197.200.106
2026-04-22T04:56:46.606757+01:00 srv01 sshd-session[1669240]: Failed password for invalid user server from 138.197.200.106 port 51512 ssh2
...
show less
2026-04-22T03:46:54.048131+02:00 axisverse sshd-session[1455477]: Invalid user ubuntu from 138.197.2 ...
show more2026-04-22T03:46:54.048131+02:00 axisverse sshd-session[1455477]: Invalid user ubuntu from 138.197.200.106 port 45612
2026-04-22T03:49:22.721273+02:00 axisverse sshd-session[1458995]: Invalid user admin1234 from 138.197.200.106 port 35610
2026-04-22T03:50:50.582426+02:00 axisverse sshd-session[1462038]: Invalid user sumit from 138.197.200.106 port 56312
...
show less
2026-04-21T19:03:14.605015 pclab24.pl sshd[408460]: Connection from 138.197.200.106 port 35050 on 10 ...
show more2026-04-21T19:03:14.605015 pclab24.pl sshd[408460]: Connection from 138.197.200.106 port 35050 on 10.10.0.5 port 22
2026-04-21T19:03:15.520874 pclab24.pl sshd[408460]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.197.200.106 user=root
2026-04-21T19:03:17.348239 pclab24.pl sshd[408460]: Failed password for root from 138.197.200.106 port 35050 ssh2
2026-04-21T19:05:47.190712 pclab24.pl sshd[408803]: Connection from 138.197.200.106 port 36650 on 10.10.0.5 port 22
2026-04-21T19:05:48.108660 pclab24.pl sshd[408803]: Invalid user test1 from 138.197.200.106 port 36650
...
show less
138.197.200.106 (US/United States/-), 5 distributed sshd attacks on account [root] in the last 3600 ...
show more138.197.200.106 (US/United States/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_DISTATTACK; Logs: Apr 21 10:24:32 10854 sshd[28584]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=102.210.149.236 user=root
Apr 21 10:24:34 10854 sshd[28584]: Failed password for root from 102.210.149.236 port 19417 ssh2
Apr 21 11:15:33 10854 sshd[934]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.197.200.106 user=root
Apr 21 11:15:35 10854 sshd[934]: Failed password for root from 138.197.200.106 port 60304 ssh2
Apr 21 10:25:35 10854 sshd[28677]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=102.210.149.236 user=root
IP Addresses Blocked:
102.210.149.236 (KE/Kenya/-)
show less
Brute-Force
SSH
Anonymous
(sshd) Failed SSH login from 138.197.200.106 (US/United States/-): 5 in the last 3600 secs; Ports: * ...
show more(sshd) Failed SSH login from 138.197.200.106 (US/United States/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_SSHD; Logs: Apr 21 17:15:13 server02 sshd[28097]: Invalid user ubuntu from 138.197.200.106 port 59512
Apr 21 17:15:15 server02 sshd[28097]: Failed password for invalid user ubuntu from 138.197.200.106 port 59512 ssh2
Apr 21 17:37:51 server02 sshd[29258]: Invalid user utente from 138.197.200.106 port 53070
Apr 21 17:37:52 server02 sshd[29258]: Failed password for invalid user utente from 138.197.200.106 port 53070 ssh2
Apr 21 17:40:21 server02 sshd[29339]: Invalid user ftpuser from 138.197.200.106 port 41100
show less
2026-04-21T16:12:48.930020+01:00 [server] sshd-session[1149279]: Invalid user ubuntu from 138.197.20 ...
show more2026-04-21T16:12:48.930020+01:00 [server] sshd-session[1149279]: Invalid user ubuntu from 138.197.200.106 port 37994
2026-04-21T16:37:49.326436+01:00 [server] sshd-session[1152769]: Invalid user utente from 138.197.200.106 port 35566
2026-04-21T16:40:19.397820+01:00 [server] sshd-session[1153197]: Invalid user ftpuser from 138.197.200.106 port 59932
...
show less
Apr 21 16:26:33 odin sshd[10383]: Failed password for root from 138.197.200.106 port 33578 ssh2
Apr ...
show moreApr 21 16:26:33 odin sshd[10383]: Failed password for root from 138.197.200.106 port 33578 ssh2
Apr 21 16:29:13 odin sshd[10592]: Failed password for root from 138.197.200.106 port 38726 ssh2
show less
Brute-Force
SSH
Showing 1891 to
1905
of 1914 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ