This IP address has been reported a total of
29
times from
22 distinct
sources.
158.179.167.115 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Blocked by UFW on ampereone [5522/tcp]
Source port: 43294
TTL: 253
Packet length: 40
TOS: 0x00
This ...
show moreBlocked by UFW on ampereone [5522/tcp]
Source port: 43294
TTL: 253
Packet length: 40
TOS: 0x00
This report was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Blocked by UFW on amperetwo [5522/tcp]
Source port: 52322
TTL: 253
Packet length: 40
TOS: 0x00
This ...
show moreBlocked by UFW on amperetwo [5522/tcp]
Source port: 52322
TTL: 253
Packet length: 40
TOS: 0x00
This report was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Blocked by UFW on vps2 [5522/tcp]
Source port: 49469
TTL: 253
Packet length: 40
TOS: 0x00
This repo ...
show moreBlocked by UFW on vps2 [5522/tcp]
Source port: 49469
TTL: 253
Packet length: 40
TOS: 0x00
This report was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Blocked by UFW on vps4 [5522/tcp]
Source port: 52097
TTL: 253
Packet length: 40
TOS: 0x00
This repo ...
show moreBlocked by UFW on vps4 [5522/tcp]
Source port: 52097
TTL: 253
Packet length: 40
TOS: 0x00
This report was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Blocked by UFW on amperetwo [5522/tcp]
Source port: 45831
TTL: 253
Packet length: 40
TOS: 0x00
This ...
show moreBlocked by UFW on amperetwo [5522/tcp]
Source port: 45831
TTL: 253
Packet length: 40
TOS: 0x00
This report was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Blocked by UFW on ampereone [5522/tcp]
Source port: 45831
TTL: 253
Packet length: 40
TOS: 0x00
This ...
show moreBlocked by UFW on ampereone [5522/tcp]
Source port: 45831
TTL: 253
Packet length: 40
TOS: 0x00
This report was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Honeypot [honeypot-ca-sensor1]: Brute-force attack detected on 22/SSH
โข Credentials: root:LeitboGi0r ...
show moreHoneypot [honeypot-ca-sensor1]: Brute-force attack detected on 22/SSH
โข Credentials: root:LeitboGi0ro, root:123@@@
โข Number of login attempts: 2
โข Client: SSH-2.0-paramiko_5.0.0
show less
2026-06-15T03:14:58.241588+09:00 no5 sshd[1414265]: Connection closed by authenticating user root 15 ...
show more2026-06-15T03:14:58.241588+09:00 no5 sshd[1414265]: Connection closed by authenticating user root 158.179.167.115 port 53900 [preauth]
...
show less
Jun 14 05:48:36 mc sshd[375506]: Failed password for root from 158.179.167.115 port 41316 ssh2
Jun 1 ...
show moreJun 14 05:48:36 mc sshd[375506]: Failed password for root from 158.179.167.115 port 41316 ssh2
Jun 14 14:31:16 mc sshd[934309]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=158.179.167.115 user=root
Jun 14 14:31:18 mc sshd[934309]: Failed password for root from 158.179.167.115 port 55884 ssh2
...
show less
2026-06-14T12:59:04.812039+00:00 ktj-nc sshd[274083]: Connection closed by authenticating user root ...
show more2026-06-14T12:59:04.812039+00:00 ktj-nc sshd[274083]: Connection closed by authenticating user root 158.179.167.115 port 38446 [preauth]
2026-06-14T12:59:10.878349+00:00 ktj-nc sshd[274085]: Connection closed by authenticating user root 158.179.167.115 port 46044 [preauth]
...
show less
2026-06-14T07:31:22.048649 rhel-20gb-ash-1 sshd[324912]: Connection closed by authenticating user ro ...
show more2026-06-14T07:31:22.048649 rhel-20gb-ash-1 sshd[324912]: Connection closed by authenticating user root 158.179.167.115 port 54516 [preauth]
...
show less
Brute-Force
SSH
Showing 1 to
15
of 29 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ