This IP address has been reported a total of
3,553
times from
662 distinct
sources.
159.192.99.12 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
159.192.99.12 (TH/Thailand/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; P ...
show more159.192.99.12 (TH/Thailand/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_DISTATTACK; Logs: Jun 11 20:55:44 18055 sshd[28687]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=103.13.207.88 user=root
Jun 11 20:55:46 18055 sshd[28687]: Failed password for root from 103.13.207.88 port 52420 ssh2
Jun 11 20:54:45 18055 sshd[28252]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=159.192.99.12 user=root
Jun 11 20:54:46 18055 sshd[28252]: Failed password for root from 159.192.99.12 port 28021 ssh2
Jun 11 20:56:42 18055 sshd[29078]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=31.3.182.38 user=root
IP Addresses Blocked:
103.13.207.88 (SG/Singapore/ip103-13-207-88.cloudhost.web.id)
show less
159.192.99.12 (TH/Thailand/-), 5 distributed sshd attacks on account [postgres] in the last 3600 sec ...
show more159.192.99.12 (TH/Thailand/-), 5 distributed sshd attacks on account [postgres] in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_DISTATTACK; Logs: Jun 11 19:56:56 13308 sshd[20673]: Invalid user postgres from 159.192.99.12 port 56184
Jun 11 19:55:26 13308 sshd[20441]: Invalid user postgres from 83.118.107.46 port 44520
Jun 11 19:55:28 13308 sshd[20441]: Failed password for invalid user postgres from 83.118.107.46 port 44520 ssh2
Jun 11 19:54:56 13308 sshd[20240]: Invalid user postgres from 103.112.5.7 port 45356
Jun 11 19:54:58 13308 sshd[20240]: Failed password for invalid user postgres from 103.112.5.7 port 45356 ssh2
IP Addresses Blocked:
show less
2026-06-11T22:58:39.685864+00:00 edge-mini sshd[431509]: Failed password for root from 159.192.99.12 ...
show more2026-06-11T22:58:39.685864+00:00 edge-mini sshd[431509]: Failed password for root from 159.192.99.12 port 29568 ssh2
2026-06-11T23:02:35.772747+00:00 edge-mini sshd[431525]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=159.192.99.12 user=root
2026-06-11T23:02:37.389087+00:00 edge-mini sshd[431525]: Failed password for root from 159.192.99.12 port 8038 ssh2
...
show less
Brute-Force
SSH
Anonymous
Jun 12 00:47:32 srv sshd[11954]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 ...
show moreJun 12 00:47:32 srv sshd[11954]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=159.192.99.12
Jun 12 00:47:34 srv sshd[11954]: Failed password for invalid user tomcat from 159.192.99.12 port 3090 ssh2
show less
Jun 11 14:23:18 servidor sshd[3960136]: Invalid user zabbix from 159.192.99.12 port 41093
Jun 11 14: ...
show moreJun 11 14:23:18 servidor sshd[3960136]: Invalid user zabbix from 159.192.99.12 port 41093
Jun 11 14:23:20 servidor sshd[3960136]: Failed password for invalid user zabbix from 159.192.99.12 port 41093 ssh2
Jun 11 14:23:21 servidor sshd[3960136]: Connection closed by invalid user zabbix 159.192.99.12 port 41093 [preauth]
...
show less
Brute-Force
SSH
Anonymous
Jun 11 19:37:12 conf sshd[421033]: Connection closed by invalid user deploy 159.192.99.12 port 42706 ...
show moreJun 11 19:37:12 conf sshd[421033]: Connection closed by invalid user deploy 159.192.99.12 port 42706 [preauth]
Jun 11 20:30:05 conf sshd[430793]: Connection from 159.192.99.12 port 65047 on 79.137.33.6 port 22 rdomain ""
Jun 11 20:30:06 conf sshd[430793]: Invalid user deploy from 159.192.99.12 port 65047
...
show less
159.192.99.12 (TH/Thailand/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; P ...
show more159.192.99.12 (TH/Thailand/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_DISTATTACK; Logs: Jun 11 12:46:39 18277 sshd[18419]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=159.192.99.12 user=root
Jun 11 12:46:41 18277 sshd[18419]: Failed password for root from 159.192.99.12 port 18170 ssh2
Jun 11 12:50:11 18277 sshd[20407]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=180.180.123.139 user=root
Jun 11 12:48:41 18277 sshd[19488]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=202.29.220.6 user=root
Jun 11 12:48:43 18277 sshd[19488]: Failed password for root from 202.29.220.6 port 53328 ssh2
IP Addresses Blocked:
show less
2026-06-11T14:09:24.047443-03:00 pentest sshd[605904]: Invalid user defi from 159.192.99.12 port 464 ...
show more2026-06-11T14:09:24.047443-03:00 pentest sshd[605904]: Invalid user defi from 159.192.99.12 port 4649
2026-06-11T14:09:24.412214-03:00 pentest sshd[605904]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=159.192.99.12
2026-06-11T14:09:25.870567-03:00 pentest sshd[605904]: Failed password for invalid user defi from 159.192.99.12 port 4649 ssh2
...
show less