This IP address has been reported a total of
142
times from
86 distinct
sources.
159.223.223.149 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
Reported by Fail2Ban: 2025-12-15 05:06:04,377 fail2ban.actions [858]: NOTICE [sshd] Ban 159. ...
show moreReported by Fail2Ban: 2025-12-15 05:06:04,377 fail2ban.actions [858]: NOTICE [sshd] Ban 159.223.223.149
show less
Unwanted traffic detected by honeypot on December 14, 2025: port scans (1 port 22 scan), and brute f ...
show moreUnwanted traffic detected by honeypot on December 14, 2025: port scans (1 port 22 scan), and brute force and hacking attacks (3 over ssh).
show less
Dec 15 05:05:00 unifi sshd[1553848]: Failed password for root from 159.223.223.149 port 48554 ssh2
D ...
show moreDec 15 05:05:00 unifi sshd[1553848]: Failed password for root from 159.223.223.149 port 48554 ssh2
Dec 15 05:05:36 unifi sshd[1553853]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=159.223.223.149 user=root
Dec 15 05:05:37 unifi sshd[1553853]: Failed password for root from 159.223.223.149 port 37406 ssh2
Dec 15 05:06:14 unifi sshd[1553858]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=159.223.223.149 user=root
Dec 15 05:06:16 unifi sshd[1553858]: Failed password for root from 159.223.223.149 port 53494 ssh2
...
show less
Brute-Force
SSH
Anonymous
Dec 15 04:04:52 nosvoid sshd[99236]: Failed password for root from 159.223.223.149 port 38610 ssh2
D ...
show moreDec 15 04:04:52 nosvoid sshd[99236]: Failed password for root from 159.223.223.149 port 38610 ssh2
Dec 15 04:05:29 nosvoid sshd[100473]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=159.223.223.149 user=root
Dec 15 04:05:31 nosvoid sshd[100473]: Failed password for root from 159.223.223.149 port 44476 ssh2
Dec 15 04:06:07 nosvoid sshd[101601]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=159.223.223.149 user=root
Dec 15 04:06:09 nosvoid sshd[101601]: Failed password for root from 159.223.223.149 port 36436 ssh2
...
show less
Detected multiple authentication failures and invalid user attempts from IP address 159.223.223.149 ...
show moreDetected multiple authentication failures and invalid user attempts from IP address 159.223.223.149 on [PT] SP01 Node
show less
2025-12-15T04:04:34.114948+00:00 edge-con-sao01.int.pdx.net.uk sshd[1296013]: Failed password for ro ...
show more2025-12-15T04:04:34.114948+00:00 edge-con-sao01.int.pdx.net.uk sshd[1296013]: Failed password for root from 159.223.223.149 port 53918 ssh2
2025-12-15T04:05:10.692857+00:00 edge-con-sao01.int.pdx.net.uk sshd[1296066]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=159.223.223.149 user=root
2025-12-15T04:05:12.355419+00:00 edge-con-sao01.int.pdx.net.uk sshd[1296066]: Failed password for root from 159.223.223.149 port 52406 ssh2
...
show less
Dec 15 04:04:20 shomerdns sshd[537022]: Failed password for root from 159.223.223.149 port 54328 ssh ...
show moreDec 15 04:04:20 shomerdns sshd[537022]: Failed password for root from 159.223.223.149 port 54328 ssh2
Dec 15 04:04:58 shomerdns sshd[537026]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=159.223.223.149 user=root
Dec 15 04:05:00 shomerdns sshd[537026]: Failed password for root from 159.223.223.149 port 45416 ssh2
show less
2025-12-15T05:03:39.142452+01:00 v2202507290157366551 sshd[2606291]: Connection closed by authentica ...
show more2025-12-15T05:03:39.142452+01:00 v2202507290157366551 sshd[2606291]: Connection closed by authenticating user root 159.223.223.149 port 53660 [preauth]
2025-12-15T05:04:17.409595+01:00 v2202507290157366551 sshd[2607421]: Connection closed by authenticating user root 159.223.223.149 port 35640 [preauth]
2025-12-15T05:04:57.420642+01:00 v2202507290157366551 sshd[2608609]: Connection closed by authenticating user root 159.223.223.149 port 51356 [preauth]
...
show less
Dec 15 12:04:14 mocha sshd[779377]: Failed password for root from 159.223.223.149 port 50510 ssh2
De ...
show moreDec 15 12:04:14 mocha sshd[779377]: Failed password for root from 159.223.223.149 port 50510 ssh2
Dec 15 12:04:52 mocha sshd[780106]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=159.223.223.149 user=root
Dec 15 12:04:54 mocha sshd[780106]: Failed password for root from 159.223.223.149 port 44232 ssh2
...
show less
2025-12-15T05:03:29.321643+01:00 mx01.crazycraftland.net sshd-session[939963]: User root from 159.22 ...
show more2025-12-15T05:03:29.321643+01:00 mx01.crazycraftland.net sshd-session[939963]: User root from 159.223.223.149 not allowed because not listed in AllowUsers
2025-12-15T05:04:07.462476+01:00 mx01.crazycraftland.net sshd-session[940417]: User root from 159.223.223.149 not allowed because not listed in AllowUsers
2025-12-15T05:04:46.802206+01:00 mx01.crazycraftland.net sshd-session[940760]: User root from 159.223.223.149 not allowed because not listed in AllowUsers
...
show less
Brute-Force
SSH
Showing 1 to
15
of 142 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ