This IP address has been reported a total of
775
times from
322 distinct
sources.
139.159.99.95 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
This IP address carried out 4 port scanning attempts on 05-10-2025. For more information or to repor ...
show moreThis IP address carried out 4 port scanning attempts on 05-10-2025. For more information or to report interesting / incorrect findings, give me a shoutout @parthmaniar on Twitter.
show less
Sep 28 07:59:32 email sshd[2612652]: Invalid user joko from 139.159.99.95 port 51880
Sep 28 08:00:36 ...
show moreSep 28 07:59:32 email sshd[2612652]: Invalid user joko from 139.159.99.95 port 51880
Sep 28 08:00:36 email sshd[2612908]: Invalid user jawad from 139.159.99.95 port 33548
Sep 28 08:01:06 email sshd[2612949]: Invalid user eun from 139.159.99.95 port 52958
...
show less
Sep 28 07:59:32 email sshd[2612652]: Invalid user joko from 139.159.99.95 port 51880
Sep 28 08:00:36 ...
show moreSep 28 07:59:32 email sshd[2612652]: Invalid user joko from 139.159.99.95 port 51880
Sep 28 08:00:36 email sshd[2612908]: Invalid user jawad from 139.159.99.95 port 33548
Sep 28 08:01:06 email sshd[2612949]: Invalid user eun from 139.159.99.95 port 52958
...
show less
This IP address carried out 114 port scanning attempts on 04-10-2025. For more information or to rep ...
show moreThis IP address carried out 114 port scanning attempts on 04-10-2025. For more information or to report interesting / incorrect findings, give me a shoutout @parthmaniar on Twitter.
show less
This IP address carried out 19 SSH credential attack (attempts) on 04-10-2025. For more information ...
show moreThis IP address carried out 19 SSH credential attack (attempts) on 04-10-2025. For more information or to report interesting / incorrect findings, give me a shoutout @parthmaniar on Twitter.
show less
139.159.99.95 (CN/China/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; Port ...
show more139.159.99.95 (CN/China/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_DISTATTACK; Logs: Oct 5 00:28:28 13646 sshd[8861]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=139.159.99.95 user=root
Oct 5 00:28:30 13646 sshd[8861]: Failed password for root from 139.159.99.95 port 43252 ssh2
Oct 5 00:07:30 13646 sshd[5756]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=107.175.209.171 user=root
Oct 5 00:05:48 13646 sshd[5623]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=107.175.209.171 user=root
Oct 5 00:05:50 13646 sshd[5623]: Failed password for root from 107.175.209.171 port 42626 ssh2
IP Addresses Blocked:
show less
(sshd) Failed SSH login from 139.159.99.95 (CN/China/-): 5 in the last 3600 secs; Ports: *; Directio ...
show more(sshd) Failed SSH login from 139.159.99.95 (CN/China/-): 5 in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_SSHD; Logs: Oct 4 22:51:26 15792 sshd[502]: Invalid user mathias from 139.159.99.95 port 55600
Oct 4 22:51:28 15792 sshd[502]: Failed password for invalid user mathias from 139.159.99.95 port 55600 ssh2
Oct 4 22:56:08 15792 sshd[1167]: Invalid user xuliang from 139.159.99.95 port 46948
Oct 4 22:56:10 15792 sshd[1167]: Failed password for invalid user xuliang from 139.159.99.95 port 46948 ssh2
Oct 4 22:58:50 15792 sshd[1487]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=139.159.99.95 user=root
show less
(sshd) Failed SSH login from 139.159.99.95 (CN/China/-): 5 in the last 3600 secs; Ports: *; Directio ...
show more(sshd) Failed SSH login from 139.159.99.95 (CN/China/-): 5 in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_SSHD; Logs: Oct 4 22:01:29 17498 sshd[5298]: Invalid user school from 139.159.99.95 port 37186
Oct 4 22:01:31 17498 sshd[5298]: Failed password for invalid user school from 139.159.99.95 port 37186 ssh2
Oct 4 22:07:22 17498 sshd[5753]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=139.159.99.95 user=root
Oct 4 22:07:24 17498 sshd[5753]: Failed password for root from 139.159.99.95 port 42012 ssh2
Oct 4 22:08:32 17498 sshd[5834]: Invalid user novinhost from 139.159.99.95 port 46854
show less
2025-10-05T03:42:39.961145 ******* sshd[21302]: Invalid user cs2server from 139.159.99.95 port 52186 ...
show more2025-10-05T03:42:39.961145 ******* sshd[21302]: Invalid user cs2server from 139.159.99.95 port 52186
2025-10-05T03:42:40.144702 ******* sshd[21302]: Disconnected from invalid user cs2server 139.159.99.95 port 52186 [preauth]
2025-10-05T03:47:14.373697 ******* sshd[23032]: Invalid user kibana from 139.159.99.95 port 49112
show less
Oct 5 01:07:55 vps324820 sshd[371390]: Invalid user novinhost from 139.159.99.95 port 46406
Oct 5 ...
show moreOct 5 01:07:55 vps324820 sshd[371390]: Invalid user novinhost from 139.159.99.95 port 46406
Oct 5 01:07:55 vps324820 sshd[371390]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=139.159.99.95
Oct 5 01:07:57 vps324820 sshd[371390]: Failed password for invalid user novinhost from 139.159.99.95 port 46406 ssh2
...
show less
Brute-Force
SSH
Showing 1 to
15
of 775 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ