This IP address has been reported a total of
1,485
times from
655 distinct
sources.
139.99.38.177 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
2026-05-24T16:42:22.392290+02:00 web1.wira-gmbh.de sshd[1644860]: Disconnected from authenticating u ...
show more2026-05-24T16:42:22.392290+02:00 web1.wira-gmbh.de sshd[1644860]: Disconnected from authenticating user root 139.99.38.177 port 57332 [preauth]
2026-05-24T16:46:15.673397+02:00 web1.wira-gmbh.de sshd[1649114]: Invalid user sga from 139.99.38.177 port 45458
2026-05-24T16:46:15.844500+02:00 web1.wira-gmbh.de sshd[1649114]: Disconnected from invalid user sga 139.99.38.177 port 45458 [preauth]
2026-05-24T16:50:00.193066+02:00 web1.wira-gmbh.de sshd[1652979]: Invalid user csgoserver from 139.99.38.177 port 56404
2026-05-24T16:50:00.363325+02:00 web1.wira-gmbh.de sshd[1652979]: Disconnected from invalid user csgoserver 139.99.38.177 port 56404 [preauth]
show less
2026-05-24T14:36:54.558879+00:00 sg-jumphost-server sshd[295405]: Disconnected from authenticating u ...
show more2026-05-24T14:36:54.558879+00:00 sg-jumphost-server sshd[295405]: Disconnected from authenticating user root 139.99.38.177 port 49824 [preauth]
2026-05-24T14:41:17.817635+00:00 sg-jumphost-server sshd[295550]: Disconnected from authenticating user root 139.99.38.177 port 35510 [preauth]
2026-05-24T14:45:07.506514+00:00 sg-jumphost-server sshd[295670]: Disconnected from authenticating user root 139.99.38.177 port 55920 [preauth]
...
show less
May 24 16:30:26 login sshd[12518]: Failed password for root from 139.99.38.177 port 36070 ssh2
May 2 ...
show moreMay 24 16:30:26 login sshd[12518]: Failed password for root from 139.99.38.177 port 36070 ssh2
May 24 16:38:42 login sshd[12728]: Failed password for root from 139.99.38.177 port 52232 ssh2
...
show less
(sshd) Failed SSH login from 139.99.38.177 (SG/Singapore/ip177.ip-139-99-38.net): 5 in the last 3600 ...
show more(sshd) Failed SSH login from 139.99.38.177 (SG/Singapore/ip177.ip-139-99-38.net): 5 in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_SSHD; Logs: May 24 08:23:56 15017 sshd[16135]: Invalid user userm from 139.99.38.177 port 42988
May 24 08:23:58 15017 sshd[16135]: Failed password for invalid user userm from 139.99.38.177 port 42988 ssh2
May 24 08:30:22 15017 sshd[16886]: Invalid user guo from 139.99.38.177 port 38498
May 24 08:30:25 15017 sshd[16886]: Failed password for invalid user guo from 139.99.38.177 port 38498 ssh2
May 24 08:34:39 15017 sshd[17400]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=139.99.38.177 user=root
show less
Automated report: SSH brute force detected. This IP exceeded the allowed number of failed login atte ...
show moreAutomated report: SSH brute force detected. This IP exceeded the allowed number of failed login attempts (3 attempts).
show less
2026-05-24T13:23:24.913399+00:00 thelemmy.club sshd-session[1942287]: Invalid user userm from 139.99 ...
show more2026-05-24T13:23:24.913399+00:00 thelemmy.club sshd-session[1942287]: Invalid user userm from 139.99.38.177 port 33818
2026-05-24T13:23:25.150377+00:00 thelemmy.club sshd-session[1942287]: Disconnected from invalid user userm 139.99.38.177 port 33818 [preauth]
...
show less
2026-05-24T15:19:31.723631235664.hosted-by-kvmka.com sshd[1200136]: pam_unix(sshd:auth): authenticat ...
show more2026-05-24T15:19:31.723631235664.hosted-by-kvmka.com sshd[1200136]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=139.99.38.177
2026-05-24T15:19:33.439332235664.hosted-by-kvmka.com sshd[1200136]: Failed password for invalid user userm from 139.99.38.177 port 42096 ssh2
...
show less
2026-05-24T10:08:54.887516-03:00 dns1 sshd[27911]: Failed password for invalid user ubuntu from 139. ...
show more2026-05-24T10:08:54.887516-03:00 dns1 sshd[27911]: Failed password for invalid user ubuntu from 139.99.38.177 port 60022 ssh2
2026-05-24T10:08:56.348433-03:00 dns1 sshd[27911]: Disconnected from invalid user ubuntu 139.99.38.177 port 60022 [preauth]
2026-05-24T10:13:13.232231-03:00 dns1 sshd[27928]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=139.99.38.177 user=root
2026-05-24T10:13:15.390187-03:00 dns1 sshd[27928]: Failed password for root from 139.99.38.177 port 60248 ssh2
2026-05-24T10:13:16.132181-03:00 dns1 sshd[27928]: Disconnected from authenticating user root 139.99.38.177 port 60248 [preauth]
show less
2026-05-24T09:52:03.607252-03:00 dns1 sshd[27748]: Failed password for invalid user pivpn from 139.9 ...
show more2026-05-24T09:52:03.607252-03:00 dns1 sshd[27748]: Failed password for invalid user pivpn from 139.99.38.177 port 36558 ssh2
2026-05-24T09:52:04.973536-03:00 dns1 sshd[27748]: Disconnected from invalid user pivpn 139.99.38.177 port 36558 [preauth]
2026-05-24T09:56:12.101834-03:00 dns1 sshd[27794]: Invalid user testftp from 139.99.38.177 port 43482
2026-05-24T09:56:12.135644-03:00 dns1 sshd[27794]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=139.99.38.177
2026-05-24T09:56:14.128965-03:00 dns1 sshd[27794]: Failed password for invalid user testftp from 139.99.38.177 port 43482 ssh2
show less
2026-05-24T09:34:47.521997-03:00 dns1 sshd[27539]: Disconnected from authenticating user root 139.99 ...
show more2026-05-24T09:34:47.521997-03:00 dns1 sshd[27539]: Disconnected from authenticating user root 139.99.38.177 port 52676 [preauth]
2026-05-24T09:38:56.940561-03:00 dns1 sshd[27587]: Invalid user demo from 139.99.38.177 port 37570
2026-05-24T09:38:56.972484-03:00 dns1 sshd[27587]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=139.99.38.177
2026-05-24T09:38:59.071017-03:00 dns1 sshd[27587]: Failed password for invalid user demo from 139.99.38.177 port 37570 ssh2
2026-05-24T09:39:01.442047-03:00 dns1 sshd[27587]: Disconnected from invalid user demo 139.99.38.177 port 37570 [preauth]
show less
2026-05-24T12:17:28.519580+00:00 certa-prod-1 sshd[1185371]: Failed password for invalid user runner ...
show more2026-05-24T12:17:28.519580+00:00 certa-prod-1 sshd[1185371]: Failed password for invalid user runner from 139.99.38.177 port 36688 ssh2
2026-05-24T12:22:14.902331+00:00 certa-prod-1 sshd[1185961]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=139.99.38.177 user=root
2026-05-24T12:22:17.110174+00:00 certa-prod-1 sshd[1185961]: Failed password for root from 139.99.38.177 port 43378 ssh2
2026-05-24T12:26:35.447474+00:00 certa-prod-1 sshd[1186474]: Invalid user umair from 139.99.38.177 port 41838
...
show less
Brute-Force
SSH
Showing 1171 to
1185
of 1485 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ