This IP address has been reported a total of
61
times from
53 distinct
sources.
159.65.55.20 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
2026-09-01T16:57:17.089884+00:00 uman sshd[4094816]: User root from 159.65.55.20 not allowed because ...
show more2026-09-01T16:57:17.089884+00:00 uman sshd[4094816]: User root from 159.65.55.20 not allowed because not listed in AllowUsers
2026-09-01T16:59:48.449398+00:00 uman sshd[4095409]: Invalid user x from 159.65.55.20 port 46460
2026-09-01T17:02:26.477051+00:00 uman sshd[4096031]: Invalid user app from 159.65.55.20 port 50950
2026-09-01T17:05:11.240818+00:00 uman sshd[4096693]: User root from 159.65.55.20 not allowed because not listed in AllowUsers
2026-09-01T17:07:47.755595+00:00 uman sshd[4097312]: User root from 159.65.55.20 not allowed because not listed in AllowUsers
...
show less
Failed SSH authentication attempts recorded by a honeypot sensor network.
Threat score: 18/100 (low) ...
show moreFailed SSH authentication attempts recorded by a honeypot sensor network.
Threat score: 18/100 (low) | Phase: reconnaissance (pre-auth probing / scanning)
Failed auth: 7 (3 bad password, 4 invalid user) | 0 success | 13 total SSH log events | seen on 1 sensor(s)
Origin: United Kingdom (GB) | AS14061 DigitalOcean, LLC | datacenter | 159.65.55.0/24
First seen: 2026-09-01 16:52:36 UTC | Last seen: 2026-09-01 17:07:15 UTC
Source: Linux OpenSSH journalctl telemetry, multi-sensor CERT honeypot.
show less
2026-09-01T19:00:10.957404+02:00 ns3124905 sshd-session[2320989]: Failed password for invalid user x ...
show more2026-09-01T19:00:10.957404+02:00 ns3124905 sshd-session[2320989]: Failed password for invalid user x from 159.65.55.20 port 58276 ssh2
2026-09-01T19:05:33.122659+02:00 ns3124905 sshd-session[2322906]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=159.65.55.20 user=root
2026-09-01T19:05:35.353414+02:00 ns3124905 sshd-session[2322906]: Failed password for root from 159.65.55.20 port 36836 ssh2
...
show less
2026-09-01T19:01:34.124387+02:00 AGE-2 sshd-session[520085]: pam_unix(sshd:auth): authentication fai ...
show more2026-09-01T19:01:34.124387+02:00 AGE-2 sshd-session[520085]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=159.65.55.20
2026-09-01T19:01:36.062793+02:00 AGE-2 sshd-session[520085]: Failed password for invalid user x from 159.65.55.20 port 45394 ssh2
2026-09-01T19:04:19.255168+02:00 AGE-2 sshd-session[521130]: Invalid user app from 159.65.55.20 port 60980
2026-09-01T19:04:19.307447+02:00 AGE-2 sshd-session[521130]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=159.65.55.20
2026-09-01T19:04:21.350118+02:00 AGE-2 sshd-session[521130]: Failed password for invalid user app from 159.65.55.20 port 60980 ssh2
...
show less
Honeypot hit: Brute-force attack detected on 22/SSH
โข Credentials: root:33, x:x, app:app
โข Number of ...
show moreHoneypot hit: Brute-force attack detected on 22/SSH
โข Credentials: root:33, x:x, app:app
โข Number of login attempts: 3
โข Client: SSH-2.0-Go
Reported by: https://github.com/sefinek/T-Pot-To-AbuseIPDB
show less
2026-09-01T13:01:03.458552-04:00 www3 sshd[726321]: pam_unix(sshd:auth): authentication failure; log ...
show more2026-09-01T13:01:03.458552-04:00 www3 sshd[726321]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=159.65.55.20
2026-09-01T13:01:05.452860-04:00 www3 sshd[726321]: Failed password for invalid user x from 159.65.55.20 port 54314 ssh2
2026-09-01T13:03:47.197219-04:00 www3 sshd[726595]: Invalid user app from 159.65.55.20 port 60656
2026-09-01T13:03:47.292080-04:00 www3 sshd[726595]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=159.65.55.20
2026-09-01T13:03:49.467653-04:00 www3 sshd[726595]: Failed password for invalid user app from 159.65.55.20 port 60656 ssh2
...
show less
Brute-Force
SSH
Anonymous
Sep 1 19:01:01 prisma sshd[3938279]: pam_unix(sshd:auth): authentication failure; logname= uid=0 eu ...
show moreSep 1 19:01:01 prisma sshd[3938279]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=159.65.55.20
Sep 1 19:01:03 prisma sshd[3938279]: Failed password for invalid user x from 159.65.55.20 port 52362 ssh2
Sep 1 19:03:44 prisma sshd[3940434]: Invalid user app from 159.65.55.20 port 44852
Sep 1 19:03:44 prisma sshd[3940434]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=159.65.55.20
Sep 1 19:03:47 prisma sshd[3940434]: Failed password for invalid user app from 159.65.55.20 port 44852 ssh2
...
show less
Brute-Force
SSH
Anonymous
Sep 1 19:00:37 rey sshd[3742696]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid= ...
show moreSep 1 19:00:37 rey sshd[3742696]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=159.65.55.20
Sep 1 19:00:39 rey sshd[3742696]: Failed password for [redacted] from 159.65.55.20 port 59494 ssh2
Sep 1 19:03:19 rey sshd[3743337]: Invalid user [redacted] from 159.65.55.20 port 60858
Sep 1 19:03:20 rey sshd[3743337]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=159.65.55.20
Sep 1 19:03:22 rey sshd[3743337]: Failed password for [redacted] from 159.65.55.20 port 60858 ssh2
...
show less
2026-09-01T18:00:14.293274+01:00 rahona.network sshd-session[38370]: pam_unix(sshd:auth): authentica ...
show more2026-09-01T18:00:14.293274+01:00 rahona.network sshd-session[38370]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=159.65.55.20
2026-09-01T18:00:16.188475+01:00 rahona.network sshd-session[38370]: Failed password for invalid user x from 159.65.55.20 port 38956 ssh2
2026-09-01T18:02:54.941786+01:00 rahona.network sshd-session[38903]: Connection from 159.65.55.20 port 51526 on 178.63.185.182 port 22 rdomain ""
2026-09-01T18:02:55.007335+01:00 rahona.network sshd-session[38903]: Invalid user app from 159.65.55.20 port 51526
show less