This IP address has been reported a total of
57
times from
47 distinct
sources.
155.138.202.235 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
2026-09-30T17:29:43.652670us-2 sshd[30412]: pam_unix(sshd:auth): authentication failure; logname= ui ...
show more2026-09-30T17:29:43.652670us-2 sshd[30412]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=155.138.202.235
2026-09-30T17:29:45.360391us-2 sshd[30412]: Failed password for invalid user administrator from 155.138.202.235 port 56446 ssh2
...
show less
2026-09-30T11:57:28.041742+00:00 edge-mini sshd[431345]: pam_unix(sshd:auth): authentication failure ...
show more2026-09-30T11:57:28.041742+00:00 edge-mini sshd[431345]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=155.138.202.235
2026-09-30T11:57:30.006815+00:00 edge-mini sshd[431345]: Failed password for invalid user cat from 155.138.202.235 port 51102 ssh2
2026-09-30T14:24:27.347152+00:00 edge-mini sshd[433562]: Invalid user administrator from 155.138.202.235 port 49188
...
show less
Cowrie Honeypot: Unauthorised SSH/Telnet login attempt with user "administrator" at 2026-09-30T14:20 ...
show moreCowrie Honeypot: Unauthorised SSH/Telnet login attempt with user "administrator" at 2026-09-30T14:20:47Z
show less
2026-09-30 14:02:04,417 quad proftpd[4139144] 2a03:4000:3e:312:360a:466c:8ea1:45b9 (155.138.202.235[ ...
show more2026-09-30 14:02:04,417 quad proftpd[4139144] 2a03:4000:3e:312:360a:466c:8ea1:45b9 (155.138.202.235[155.138.202.235]): USER administrator: no such user found from 155.138.202.235 [155.138.202.235] to 2.56.97.107:22
show less
Brute-Force
Exploited Host
SSH
Anonymous
2026-09-30T10:58:41.592560-03:00 web sshd[72275]: pam_unix(sshd:auth): authentication failure; logna ...
show more2026-09-30T10:58:41.592560-03:00 web sshd[72275]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=155.138.202.235
2026-09-30T10:58:43.683111-03:00 web sshd[72275]: Failed password for invalid user administrator from 155.138.202.235 port 51206 ssh2
2026-09-30T10:58:45.551021-03:00 web sshd[72275]: Connection closed by invalid user administrator 155.138.202.235 port 51206 [preauth]
...
show less
Brute-Force
SSH
Anonymous
Sep 30 09:57:46 v sshd\[11262\]: Invalid user administrator from 155.138.202.235 port 54968
Sep 30 0 ...
show moreSep 30 09:57:46 v sshd\[11262\]: Invalid user administrator from 155.138.202.235 port 54968
Sep 30 09:57:46 v sshd\[11262\]: pam_unix\(sshd:auth\): authentication failure\; logname= uid=0 euid=0 tty=ssh ruser= rhost=155.138.202.235
Sep 30 09:57:48 v sshd\[11262\]: Failed password for invalid user administrator from 155.138.202.235 port 54968 ssh2
...
show less
Sep 30 15:19:55 lnxmail62 sshd[3824335]: pam_unix(sshd:auth): authentication failure; logname= uid=0 ...
show moreSep 30 15:19:55 lnxmail62 sshd[3824335]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=155.138.202.235 user=root
Sep 30 15:19:58 lnxmail62 sshd[3824335]: Failed password for root from 155.138.202.235 port 50906 ssh2
Sep 30 15:27:21 lnxmail62 sshd[3829449]: Invalid user Deploy from 155.138.202.235 port 48882
Sep 30 15:27:21 lnxmail62 sshd[3829449]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=155.138.202.235
Sep 30 15:27:23 lnxmail62 sshd[3829449]: Failed password for invalid user Deploy from 155.138.202.235 port 48882 ssh2
...
show less
Brute-Force
SSH
Anonymous
2026-09-30T15:23:26.591845+02:00 host.nilsbossaller.de sshd[1303011]: pam_unix(sshd:auth): authentic ...
show more2026-09-30T15:23:26.591845+02:00 host.nilsbossaller.de sshd[1303011]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=155.138.202.235 user=root
2026-09-30T15:23:28.663533+02:00 host.nilsbossaller.de sshd[1303011]: Failed password for root from 155.138.202.235 port 34130 ssh2
2026-09-30T15:23:29.700201+02:00 host.nilsbossaller.de sshd[1303011]: Connection closed by authenticating user root 155.138.202.235 port 34130 [preauth]
...
show less
Brute-Force
SSH
Anonymous
2026-09-30T14:43:56.458466+02:00 hosting15 sshd[1764701]: pam_unix(sshd:auth): authentication failur ...
show more2026-09-30T14:43:56.458466+02:00 hosting15 sshd[1764701]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=155.138.202.235
2026-09-30T14:43:58.168202+02:00 hosting15 sshd[1764701]: Failed password for invalid user deploy from 155.138.202.235 port 51076 ssh2
2026-09-30T14:52:05.235702+02:00 hosting15 sshd[1772272]: Invalid user deploy from 155.138.202.235 port 34086
...
show less
Brute-Force
SSH
Showing 1 to
15
of 57 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ