This IP address has been reported a total of
23
times from
19 distinct
sources.
138.199.236.130 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
(sshd) Failed SSH login from 138.199.236.130 (DE/Germany/static.130.236.199.138.clients.your-server. ...
show more(sshd) Failed SSH login from 138.199.236.130 (DE/Germany/static.130.236.199.138.clients.your-server.de): 5 in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_SSHD; Logs: Jun 15 18:10:05 17913 sshd[26124]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.199.236.130 user=root
Jun 15 18:10:07 17913 sshd[26124]: Failed password for root from 138.199.236.130 port 48536 ssh2
Jun 15 18:18:52 17913 sshd[30268]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.199.236.130 user=root
Jun 15 18:18:54 17913 sshd[30268]: Failed password for root from 138.199.236.130 port 52876 ssh2
Jun 15 18:20:36 17913 sshd[31225]: Invalid user ems from 138.199.236.130 port 58980
show less
2026-06-16T06:09:07.450917+08:00 raspberrypi sshd-session[504063]: Invalid user ubuntu from 138.199. ...
show more2026-06-16T06:09:07.450917+08:00 raspberrypi sshd-session[504063]: Invalid user ubuntu from 138.199.236.130 port 53032
2026-06-16T06:11:40.510126+08:00 raspberrypi sshd-session[504100]: Invalid user admin from 138.199.236.130 port 59452
2026-06-16T06:12:33.322226+08:00 raspberrypi sshd-session[504110]: Invalid user admin from 138.199.236.130 port 45790
...
show less
SSH Brute force: 1 attempts were recorded from 138.199.236.130
2026-06-15T22:16:21+02:00 Disconnecte ...
show moreSSH Brute force: 1 attempts were recorded from 138.199.236.130
2026-06-15T22:16:21+02:00 Disconnected from authenticating user root 138.199.236.130 port 48320 [preauth]
show less
2026-06-15T22:44:55.637309+02:00 ccbnet04 sshd[3626824]: pam_unix(sshd:auth): authentication failure ...
show more2026-06-15T22:44:55.637309+02:00 ccbnet04 sshd[3626824]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.199.236.130
2026-06-15T22:44:57.492651+02:00 ccbnet04 sshd[3626824]: Failed password for invalid user frontend from 138.199.236.130 port 52840 ssh2
2026-06-15T22:57:21.947072+02:00 ccbnet04 sshd[3631847]: Invalid user landi from 138.199.236.130 port 55298
2026-06-15T22:57:21.953192+02:00 ccbnet04 sshd[3631847]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.199.236.130
2026-06-15T22:57:24.220646+02:00 ccbnet04 sshd[3631847]: Failed password for invalid user landi from 138.199.236.130 port 55298 ssh2
...
show less
2026-06-15T23:39:19.667367+03:00 wolfemium.cloud sshd-session[471984]: Invalid user superuser from 1 ...
show more2026-06-15T23:39:19.667367+03:00 wolfemium.cloud sshd-session[471984]: Invalid user superuser from 138.199.236.130 port 56822
2026-06-15T23:39:19.679030+03:00 wolfemium.cloud sshd-session[471984]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.199.236.130
2026-06-15T23:39:21.542807+03:00 wolfemium.cloud sshd-session[471984]: Failed password for invalid user superuser from 138.199.236.130 port 56822 ssh2
2026-06-15T23:41:24.117154+03:00 wolfemium.cloud sshd-session[472367]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.199.236.130 user=root
2026-06-15T23:41:25.555566+03:00 wolfemium.cloud sshd-session[472367]: Failed password for root from 138.199.236.130 port 37752 ssh2
...
show less
2026-06-15T20:32:12.294181+00:00 wireguard sshd[3430218]: Invalid user steam from 138.199.236.130 po ...
show more2026-06-15T20:32:12.294181+00:00 wireguard sshd[3430218]: Invalid user steam from 138.199.236.130 port 40356
2026-06-15T20:38:14.810030+00:00 wireguard sshd[3432481]: Invalid user pivpn from 138.199.236.130 port 36480
2026-06-15T20:40:12.035259+00:00 wireguard sshd[3433226]: Invalid user superuser from 138.199.236.130 port 41840
...
show less
Brute-Force
Anonymous
Jun 15 20:28:58 sftp-cognizant-san-jose-1 sshd[1289114]: pam_unix(sshd:auth): authentication failure ...
show moreJun 15 20:28:58 sftp-cognizant-san-jose-1 sshd[1289114]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.199.236.130
Jun 15 20:29:00 sftp-cognizant-san-jose-1 sshd[1289114]: Failed password for invalid user steam from 138.199.236.130 port 59268 ssh2
Jun 15 20:37:52 sftp-cognizant-san-jose-1 sshd[1289273]: Invalid user pivpn from 138.199.236.130 port 43834
...
show less
Jun 15 22:17:15 altux6 sshd\[26635\]: User root from 138.199.236.130 not allowed because not listed ...
show moreJun 15 22:17:15 altux6 sshd\[26635\]: User root from 138.199.236.130 not allowed because not listed in AllowUsers
Jun 15 22:17:15 altux6 sshd\[26635\]: pam_unix\(sshd:auth\): authentication failure\; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.199.236.130 user=root
Jun 15 22:17:17 altux6 sshd\[26635\]: Failed password for invalid user root from 138.199.236.130 port 60960 ssh2
...
show less
2026-06-15T22:01:38.950497+02:00 weberin sshd[1752038]: pam_unix(sshd:auth): authentication failure; ...
show more2026-06-15T22:01:38.950497+02:00 weberin sshd[1752038]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.199.236.130 user=root
2026-06-15T22:01:41.282824+02:00 weberin sshd[1752038]: Failed password for root from 138.199.236.130 port 37728 ssh2
2026-06-15T22:03:25.749635+02:00 weberin sshd[1752124]: Invalid user michael from 138.199.236.130 port 59686
2026-06-15T22:03:25.755892+02:00 weberin sshd[1752124]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.199.236.130
2026-06-15T22:03:27.776884+02:00 weberin sshd[1752124]: Failed password for invalid user michael from 138.199.236.130 port 59686 ssh2
...
show less
Brute-Force
SSH
Showing 1 to
15
of 23 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ