This IP address has been reported a total of
38
times from
27 distinct
sources.
138.201.157.95 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
2024-04-22T10:46:55.805986+08:00 kltw-debian sshd[83669]: Disconnected from authenticating user root ...
show more2024-04-22T10:46:55.805986+08:00 kltw-debian sshd[83669]: Disconnected from authenticating user root 138.201.157.95 port 46972 [preauth]
2024-04-22T10:54:01.139796+08:00 kltw-debian sshd[83734]: Disconnected from authenticating user root 138.201.157.95 port 54374 [preauth]
2024-04-22T10:55:02.004536+08:00 kltw-debian sshd[83745]: Invalid user chenyong from 138.201.157.95 port 52534
2024-04-22T10:55:02.277695+08:00 kltw-debian sshd[83745]: Disconnected from invalid user chenyong 138.201.157.95 port 52534 [preauth]
2024-04-22T10:56:03.990967+08:00 kltw-debian sshd[83801]: Disconnected from authenticating user root 138.201.157.95 port 43940 [preauth]
...
show less
2024-04-22T02:50:45.295524+02:00 earnapp sshd[3908569]: pam_unix(sshd:auth): authentication failure; ...
show more2024-04-22T02:50:45.295524+02:00 earnapp sshd[3908569]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.201.157.95 user=root
2024-04-22T02:50:47.473481+02:00 earnapp sshd[3908569]: Failed password for root from 138.201.157.95 port 51962 ssh2
2024-04-22T02:52:57.574600+02:00 earnapp sshd[3910794]: Invalid user ahmed from 138.201.157.95 port 45246
...
show less
Invalid user toptst from 138.201.157.95 port 51210
Invalid user rodrigo from 138.201.157.95 port 426 ...
show moreInvalid user toptst from 138.201.157.95 port 51210
Invalid user rodrigo from 138.201.157.95 port 42658
Invalid user supervisor from 138.201.157.95 port 52820
Invalid user fuser from 138.201.157.95 port 38590
Invalid user liao from 138.201.157.95 port 40344
show less
SSH brute force: 12 attempts were recorded from 138.201.157.95
2024-04-22T01:44:11.330018+02:00 from ...
show moreSSH brute force: 12 attempts were recorded from 138.201.157.95
2024-04-22T01:44:11.330018+02:00 from 138.201.157.95 port 57188 on <redacted> port 22 rdomain ""
2024-04-22T01:44:11.541529+02:00 user user3 from 138.201.157.95 port 57188
2024-04-22T01:45:11.478849+02:00 from 138.201.157.95 port 59768 on <redacted> port 22 rdomain ""
2024-04-22T01:45:11.689315+02:00 user user from 138.201.157.95 port 59768
2024-04-22T01:47:25.041029+02:00 from 138.201.157.95 port 54908 on <redacted> port 22 rdomain ""
2024-04-22T01:47:25.260062+02:00 user abdullah from 138.201.157.95 port 54908
2024-04-22T01:51:35.960758+02:00 from 138.201.157.95 port 55820 on <redacted> port 22 rdomain ""
2024-04-22T01:51:36.173930+02:00 user ops from 138.201.157.95 port 55820
2024-04-22T01:57:17.435992+02:00 from 138.201.157.95 port 42406 on <redacted> port 22 rdomain ""
2024-04-22T01:57:17.603533+02:00 user home from 138.
show less
(sshd) Failed SSH login from 138.201.157.95 (DE/Germany/static.95.157.201.138.clients.your-server.de ...
show more(sshd) Failed SSH login from 138.201.157.95 (DE/Germany/static.95.157.201.138.clients.your-server.de): 5 in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_SSHD; Logs: Apr 21 18:33:06 17126 sshd[19080]: Invalid user suraj from 138.201.157.95 port 39948
Apr 21 18:33:08 17126 sshd[19080]: Failed password for invalid user suraj from 138.201.157.95 port 39948 ssh2
Apr 21 18:35:49 17126 sshd[19422]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=138.201.157.95 user=root
Apr 21 18:35:51 17126 sshd[19422]: Failed password for root from 138.201.157.95 port 35316 ssh2
Apr 21 18:36:58 17126 sshd[19597]: Invalid user scsadmin from 138.201.157.95 port 42516
show less
Brute-Force
SSH
Anonymous
Multiple unauthorized SSH access attempts
Brute-Force
SSH
Anonymous
2024-04-22T00:54:49.745002online4.bobelweb.eu sshd[1400]: Invalid user es_user from 138.201.157.95 p ...
show more2024-04-22T00:54:49.745002online4.bobelweb.eu sshd[1400]: Invalid user es_user from 138.201.157.95 port 35248
2024-04-22T00:58:10.220553online4.bobelweb.eu sshd[2029]: User root from static.95.157.201.138.clients.your-server.de not allowed because not listed in AllowUsers
2024-04-22T00:59:12.146907online4.bobelweb.eu sshd[2036]: User root from static.95.157.201.138.clients.your-server.de not allowed because not listed in AllowUsers
2024-04-22T01:00:14.806035online4.bobelweb.eu sshd[3094]: User root from static.95.157.201.138.clients.your-server.de not allowed because not listed in AllowUsers
2024-04-22T01:01:16.648372online4.bobelweb.eu sshd[3242]: User root from static.95.157.201.138.clients.your-server.de not allowed because not listed in AllowUsers
show less
Brute-Force
SSH
Showing 1 to
15
of 38 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ