This IP address has been reported a total of
10
times from
7 distinct
sources.
138.199.234.148 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
2026-09-02T08:32:54.439791+03:30 vm940970 sshd[144864]: Invalid user from 138.199.234.148 port 3652 ...
show more2026-09-02T08:32:54.439791+03:30 vm940970 sshd[144864]: Invalid user from 138.199.234.148 port 36520
...
show less
Port Scan
Hacking
Brute-Force
Bad Web Bot
SSH
Anonymous
2026-09-02T06:47:44.465173+02:00 7802 sshd[3412769]: Failed password for root from 138.199.234.148 p ...
show more2026-09-02T06:47:44.465173+02:00 7802 sshd[3412769]: Failed password for root from 138.199.234.148 port 50346 ssh2
2026-09-02T06:47:54.138609+02:00 7802 sshd[3412788]: Invalid user dspace from 138.199.234.148 port 50794
2026-09-02T06:47:54.171492+02:00 7802 sshd[3412788]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.199.234.148
2026-09-02T06:47:55.789873+02:00 7802 sshd[3412788]: Failed password for invalid user dspace from 138.199.234.148 port 50794 ssh2
2026-09-02T06:48:06.434886+02:00 7802 sshd[3412833]: Invalid user docker from 138.199.234.148 port 53198
...
show less
Brute-Force
SSH
Anonymous
2026-09-02T06:26:43.618339+02:00 7802 sshd[3410944]: Failed password for invalid user guest from 138 ...
show more2026-09-02T06:26:43.618339+02:00 7802 sshd[3410944]: Failed password for invalid user guest from 138.199.234.148 port 56556 ssh2
2026-09-02T06:26:52.962596+02:00 7802 sshd[3410947]: Invalid user samba from 138.199.234.148 port 49566
2026-09-02T06:26:52.995674+02:00 7802 sshd[3410947]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.199.234.148
2026-09-02T06:26:55.697970+02:00 7802 sshd[3410947]: Failed password for invalid user samba from 138.199.234.148 port 49566 ssh2
2026-09-02T06:27:04.986452+02:00 7802 sshd[3410997]: Invalid user raaj from 138.199.234.148 port 52532
...
show less
Brute-Force
SSH
Anonymous
2026-09-02T06:05:57.596753+02:00 7802 sshd[3408866]: pam_unix(sshd:auth): authentication failure; lo ...
show more2026-09-02T06:05:57.596753+02:00 7802 sshd[3408866]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.199.234.148
2026-09-02T06:05:59.009484+02:00 7802 sshd[3408866]: Failed password for invalid user student from 138.199.234.148 port 39832 ssh2
2026-09-02T06:06:09.552915+02:00 7802 sshd[3408915]: Invalid user uftp from 138.199.234.148 port 53580
2026-09-02T06:06:09.588815+02:00 7802 sshd[3408915]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.199.234.148
2026-09-02T06:06:10.981575+02:00 7802 sshd[3408915]: Failed password for invalid user uftp from 138.199.234.148 port 53580 ssh2
...
show less
Brute-Force
SSH
Anonymous
2026-09-02T05:44:11.031993+02:00 7802 sshd[3407030]: pam_unix(sshd:auth): authentication failure; lo ...
show more2026-09-02T05:44:11.031993+02:00 7802 sshd[3407030]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.199.234.148
2026-09-02T05:44:12.821127+02:00 7802 sshd[3407030]: Failed password for invalid user admin2 from 138.199.234.148 port 39200 ssh2
2026-09-02T05:44:19.592274+02:00 7802 sshd[3407033]: Invalid user adminuser from 138.199.234.148 port 42372
2026-09-02T05:44:19.627492+02:00 7802 sshd[3407033]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.199.234.148
2026-09-02T05:44:21.846333+02:00 7802 sshd[3407033]: Failed password for invalid user adminuser from 138.199.234.148 port 42372 ssh2
...
show less
2026-09-02T03:44:12.569138likely-lavender.ptr.network sshd[84500]: Invalid user admin2 from 138.199. ...
show more2026-09-02T03:44:12.569138likely-lavender.ptr.network sshd[84500]: Invalid user admin2 from 138.199.234.148 port 42808
2026-09-02T03:44:12.587689likely-lavender.ptr.network sshd[84500]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.199.234.148
2026-09-02T03:44:14.513231likely-lavender.ptr.network sshd[84500]: Failed password for invalid user admin2 from 138.199.234.148 port 42808 ssh2
...
show less
2026-09-02T10:39:53.984025+08:00 VM-0-7-ubuntu sshd[2415980]: Invalid user admin2 from 138.199.234.1 ...
show more2026-09-02T10:39:53.984025+08:00 VM-0-7-ubuntu sshd[2415980]: Invalid user admin2 from 138.199.234.148 port 60362
2026-09-02T10:39:54.158036+08:00 VM-0-7-ubuntu sshd[2415980]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.199.234.148
2026-09-02T10:39:55.446163+08:00 VM-0-7-ubuntu sshd[2415980]: Failed password for invalid user admin2 from 138.199.234.148 port 60362 ssh2
...
show less
Automated report by DataDream Sentinel.
Repeated SSH authentication failures consistent with credent ...
show moreAutomated report by DataDream Sentinel.
Repeated SSH authentication failures consistent with credential brute-force activity were detected against infrastructure monitored by DataDream.
6 failed-authentication event references were correlated between 2026-09-02 02:39:48 and 02:39:51 UTC.
No successful SSH authentication was observed in the available telemetry.
Reference: DD-AIPDB-20260902-F8C7044A
show less
Brute-Force
SSH
Showing 1 to
10
of 10 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ