This IP address has been reported a total of
58
times from
52 distinct
sources.
138.199.207.57 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
blocked for webapp attack | path requested: /index.php | seen at 2026-09-01 07:03:50.406 |
Web App Attack
Anonymous
Sep 1 06:40:41 ubuntu sshd[2146195]: Invalid user admin from 138.199.207.57 port 33784
Sep 1 06:44 ...
show moreSep 1 06:40:41 ubuntu sshd[2146195]: Invalid user admin from 138.199.207.57 port 33784
Sep 1 06:44:49 ubuntu sshd[2149175]: Invalid user user from 138.199.207.57 port 59538
Sep 1 06:53:06 ubuntu sshd[2155460]: Invalid user user from 138.199.207.57 port 44642
...
show less
2026-09-01T06:15:39.640473+00:00 md sshd-session[2876466]: Invalid user user from 138.199.207.57 por ...
show more2026-09-01T06:15:39.640473+00:00 md sshd-session[2876466]: Invalid user user from 138.199.207.57 port 36384
2026-09-01T06:15:39.644555+00:00 md sshd-session[2876466]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.199.207.57
2026-09-01T06:15:41.691991+00:00 md sshd-session[2876466]: Failed password for invalid user user from 138.199.207.57 port 36384 ssh2
2026-09-01T06:19:49.696094+00:00 md sshd-session[2876493]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.199.207.57 user=root
2026-09-01T06:19:51.723039+00:00 md sshd-session[2876493]: Failed password for root from 138.199.207.57 port 49862 ssh2
...
show less
Sep 1 08:02:43 webhosting02 sshd[320613]: Invalid user admin from 138.199.207.57 port 59052
Sep 1 ...
show moreSep 1 08:02:43 webhosting02 sshd[320613]: Invalid user admin from 138.199.207.57 port 59052
Sep 1 08:10:46 webhosting02 sshd[321353]: Invalid user ubuntu from 138.199.207.57 port 54372
...
show less
2026-09-01T07:58:40.536569+02:00 kittycat sshd-session[2378653]: pam_unix(sshd:auth): authentication ...
show more2026-09-01T07:58:40.536569+02:00 kittycat sshd-session[2378653]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.199.207.57
2026-09-01T07:58:42.820787+02:00 kittycat sshd-session[2378653]: Failed password for invalid user user from 138.199.207.57 port 51982 ssh2
2026-09-01T08:02:48.664003+02:00 kittycat sshd-session[2379174]: Connection from 138.199.207.57 port 51036 on 144.91.110.176 port 22 rdomain ""
2026-09-01T08:02:48.763432+02:00 kittycat sshd-session[2379174]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.199.207.57 user=root
2026-09-01T08:02:51.311971+02:00 kittycat sshd-session[2379174]: Failed password for root from 138.199.207.57 port 51036 ssh2
...
show less
PortSentry honeypot: unsolicited TCP connection to closed decoy port 23 (Telnet) on a host running n ...
show morePortSentry honeypot: unsolicited TCP connection to closed decoy port 23 (Telnet) on a host running no such service. Automated port-scan detection at 2026-09-01T05:51:22Z.
show less
Port Scan
Showing 1 to
15
of 58 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ