This IP address has been reported a total of
203
times from
30 distinct
sources.
138.197.34.221 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
2026-06-13T04:59:43.047987+02:00 forgejo sshd-session[781454]: Connection reset by 138.197.34.221 po ...
show more2026-06-13T04:59:43.047987+02:00 forgejo sshd-session[781454]: Connection reset by 138.197.34.221 port 33786
2026-06-13T04:59:44.049660+02:00 forgejo sshd-session[781456]: error: kex_exchange_identification: read: Connection reset by peer
2026-06-13T04:59:44.049728+02:00 forgejo sshd-session[781456]: Connection reset by 138.197.34.221 port 33806
...
show less
2026-06-13T03:57:23.104858+02:00 forgejo sshd-session[781091]: Connection reset by 138.197.34.221 po ...
show more2026-06-13T03:57:23.104858+02:00 forgejo sshd-session[781091]: Connection reset by 138.197.34.221 port 48610
2026-06-13T03:57:38.133597+02:00 forgejo sshd-session[781087]: error: kex_exchange_identification: read: Connection reset by peer
2026-06-13T03:57:38.133625+02:00 forgejo sshd-session[781087]: Connection reset by 138.197.34.221 port 48576
...
show less
Honeypot detection: Telnet / IoT device brute-force or exploitation attempt on port 23. Severity: ME ...
show moreHoneypot detection: Telnet / IoT device brute-force or exploitation attempt on port 23. Severity: MEDIUM. Aaran.cloud
show less
2026-06-13T02:54:52.495607+02:00 forgejo sshd-session[780658]: Connection reset by 138.197.34.221 po ...
show more2026-06-13T02:54:52.495607+02:00 forgejo sshd-session[780658]: Connection reset by 138.197.34.221 port 38724
2026-06-13T02:54:56.009060+02:00 forgejo sshd-session[780659]: error: kex_exchange_identification: read: Connection reset by peer
2026-06-13T02:54:56.009093+02:00 forgejo sshd-session[780659]: Connection reset by 138.197.34.221 port 38736
...
show less
Graylog firewall DROP detected. Hits=5924, ASN=AS14061, Provider=DigitalOcean, LLC, Country=US, Rang ...
show moreGraylog firewall DROP detected. Hits=5924, ASN=AS14061, Provider=DigitalOcean, LLC, Country=US, Range=138.197.32.0/20, AbuseScore=100, Reports=196
show less
Port Scan
Hacking
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH
2026-06-12T05:21:30.629336+02:00 forgejo sshd-session[770822]: Connection reset by 138.197.34.221 po ...
show more2026-06-12T05:21:30.629336+02:00 forgejo sshd-session[770822]: Connection reset by 138.197.34.221 port 50976
2026-06-12T05:21:34.683957+02:00 forgejo sshd-session[770819]: error: kex_exchange_identification: read: Connection reset by peer
2026-06-12T05:21:34.683996+02:00 forgejo sshd-session[770819]: Connection reset by 138.197.34.221 port 55162
...
show less
2026-06-12T04:20:12.654194+02:00 forgejo sshd-session[770337]: Connection reset by 138.197.34.221 po ...
show more2026-06-12T04:20:12.654194+02:00 forgejo sshd-session[770337]: Connection reset by 138.197.34.221 port 49220
2026-06-12T04:20:17.045029+02:00 forgejo sshd-session[770338]: error: kex_exchange_identification: read: Connection reset by peer
2026-06-12T04:20:17.045067+02:00 forgejo sshd-session[770338]: Connection reset by 138.197.34.221 port 49234
...
show less
2026-06-12T03:17:25.903593+02:00 forgejo sshd-session[769960]: Connection reset by 138.197.34.221 po ...
show more2026-06-12T03:17:25.903593+02:00 forgejo sshd-session[769960]: Connection reset by 138.197.34.221 port 34958
2026-06-12T03:17:36.777233+02:00 forgejo sshd-session[769954]: error: kex_exchange_identification: read: Connection reset by peer
2026-06-12T03:17:36.777268+02:00 forgejo sshd-session[769954]: Connection reset by 138.197.34.221 port 52226
...
show less
Graylog firewall DROP detected. Hits=5936, ASN=AS14061, Provider=DigitalOcean, LLC, Country=US, Rang ...
show moreGraylog firewall DROP detected. Hits=5936, ASN=AS14061, Provider=DigitalOcean, LLC, Country=US, Range=138.197.32.0/20, AbuseScore=95, Reports=187
show less
Port Scan
Hacking
Brute-Force
Bad Web Bot
Exploited Host
Web App Attack
SSH