This IP address has been reported a total of
68
times from
54 distinct
sources.
159.65.148.158 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
2026-06-10T17:49:12.917259+00:00 mta sshd[354306]: Failed password for root from 159.65.148.158 port ...
show more2026-06-10T17:49:12.917259+00:00 mta sshd[354306]: Failed password for root from 159.65.148.158 port 40802 ssh2
2026-06-10T18:24:49.318435+00:00 mta sshd[354622]: Invalid user niyaru from 159.65.148.158 port 58350
...
show less
2026-06-10T11:14:57.576684+00:00 zamarapp.com sshd[1797847]: pam_unix(sshd:auth): authentication fai ...
show more2026-06-10T11:14:57.576684+00:00 zamarapp.com sshd[1797847]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=159.65.148.158
2026-06-10T11:14:59.568443+00:00 zamarapp.com sshd[1797847]: Failed password for invalid user deploy from 159.65.148.158 port 47274 ssh2
...
show less
Invalid user defi from 159.65.148.158 port 51064
Connection closed by invalid user defi 159.65.148.1 ...
show moreInvalid user defi from 159.65.148.158 port 51064
Connection closed by invalid user defi 159.65.148.158 port 51064 [preauth]
User git from 159.65.148.158 not allowed because not listed in AllowUsers
Connection closed by invalid user git 159.65.148.158 port 52644 [preauth]
User git from 159.65.148.158 not allowed because not listed in AllowUsers
show less
159.65.148.158 (IN/India/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; Por ...
show more159.65.148.158 (IN/India/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_DISTATTACK; Logs: Jun 10 08:04:13 24015 sshd[20942]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=51.15.149.97 user=root
Jun 10 08:04:16 24015 sshd[20942]: Failed password for root from 51.15.149.97 port 11119 ssh2
Jun 10 08:05:13 24015 sshd[21494]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=161.97.112.114 user=root
Jun 10 08:04:44 24015 sshd[21042]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=159.65.148.158 user=root
Jun 10 08:04:47 24015 sshd[21042]: Failed password for root from 159.65.148.158 port 49552 ssh2
IP Addresses Blocked:
51.15.149.97 (FR/France/51-15-149-97.rev.poneytelecom.eu)
161.97.112.114 (DE/Germany/vmi3135840.contaboserver.net)
show less
Jun 9 13:48:07 wslbvm01 sshd[2850800]: pam_unix(sshd:auth): authentication failure; logname= uid=0 ...
show moreJun 9 13:48:07 wslbvm01 sshd[2850800]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=159.65.148.158 user=root
Jun 9 13:48:09 wslbvm01 sshd[2850800]: Failed password for root from 159.65.148.158 port 54590 ssh2
Jun 10 04:43:26 wslbvm01 sshd[3070147]: Invalid user nas from 159.65.148.158 port 42114
...
show less
Brute-Force
SSH
Anonymous
2026-06-10T09:18:52.687810+02:00 debian sshd-session[2144194]: pam_unix(sshd:auth): authentication f ...
show more2026-06-10T09:18:52.687810+02:00 debian sshd-session[2144194]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=159.65.148.158 user=root
2026-06-10T09:18:54.304441+02:00 debian sshd-session[2144194]: Failed password for root from 159.65.148.158 port 34914 ssh2
...
show less
159.65.148.158 (IN/India/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; Por ...
show more159.65.148.158 (IN/India/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_DISTATTACK; Logs: Jun 10 01:34:41 13400 sshd[16691]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=159.65.148.158 user=root
Jun 10 01:33:09 13400 sshd[16033]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=188.93.112.20 user=root
Jun 10 01:33:11 13400 sshd[16033]: Failed password for root from 188.93.112.20 port 58716 ssh2
Jun 10 01:34:09 13400 sshd[16536]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=173.249.45.68 user=root
Jun 10 01:34:11 13400 sshd[16536]: Failed password for root from 173.249.45.68 port 50358 ssh2
IP Addresses Blocked:
show less
Brute-Force
SSH
Anonymous
sshd
Brute-Force
SSH
Showing 1 to
15
of 68 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ