This IP address has been reported a total of
1,233
times from
261 distinct
sources.
161.35.169.21 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Honeypot [fc-honeypot]: HTTP/1.1 request on 2375
GET /containers/json
User-Agent: libredtail-http
A ...
show moreHoneypot [fc-honeypot]: HTTP/1.1 request on 2375
GET /containers/json
User-Agent: libredtail-http
Accept: */*; 2375 [1] TCP
Reported by: https://github.com/sefinek/T-Pot-To-AbuseIPDB
show less
2026-06-12T11:45:44.344990+02:00 0ut3r sshd[217528]: pam_unix(sshd:auth): authentication failure; lo ...
show more2026-06-12T11:45:44.344990+02:00 0ut3r sshd[217528]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=161.35.169.21
2026-06-12T11:45:45.891798+02:00 0ut3r sshd[217528]: Failed password for invalid user admin from 161.35.169.21 port 59514 ssh2
2026-06-12T11:46:21.298336+02:00 0ut3r sshd[217536]: Invalid user orangepi from 161.35.169.21 port 41700
...
show less
2026-06-11T22:26:16.043000+02:00 admin sshd[3907934]: Invalid user orangepi from 161.35.169.21 port ...
show more2026-06-11T22:26:16.043000+02:00 admin sshd[3907934]: Invalid user orangepi from 161.35.169.21 port 56068
2026-06-11T22:26:16.045203+02:00 admin sshd[3907934]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=161.35.169.21
2026-06-11T22:26:18.088188+02:00 admin sshd[3907934]: Failed password for invalid user orangepi from 161.35.169.21 port 56068 ssh2
2026-06-11T22:26:53.839041+02:00 admin sshd[3908294]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=161.35.169.21 user=root
2026-06-11T22:26:55.626751+02:00 admin sshd[3908294]: Failed password for root from 161.35.169.21 port 38458 ssh2
...
show less
[AUTORAVALT][[11/06/2026 - 17:00:52 -03:00 UTC]
Attack from [DigitalOcean, LLC]
[161.35.169.21] Acti ...
show more[AUTORAVALT][[11/06/2026 - 17:00:52 -03:00 UTC]
Attack from [DigitalOcean, LLC]
[161.35.169.21] Action: BLocKed
FTP Brute-Force -> Running brute force credentials on the FTP server.
Brute-Force -> Credential brute-force attacks on webpage logins and services like SSH, FTP, SIP, SMTP, RDP, etc.
]
...
show less
Automated report: 103 attacks in 24h targeting cwp2 via SSH. SSH/brute_force: 78 on cwp2; SSH/invali ...
show moreAutomated report: 103 attacks in 24h targeting cwp2 via SSH. SSH/brute_force: 78 on cwp2; SSH/invalid_user: 29 on cwp2
show less
2026-06-11T04:18:00.316627+02:00 vm635618.cloud.nuxt.network sshd-session[105776]: pam_unix(sshd:aut ...
show more2026-06-11T04:18:00.316627+02:00 vm635618.cloud.nuxt.network sshd-session[105776]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=161.35.169.21
2026-06-11T04:18:02.747178+02:00 vm635618.cloud.nuxt.network sshd-session[105776]: Failed password for invalid user admin from 161.35.169.21 port 44750 ssh2
2026-06-11T04:18:33.600346+02:00 vm635618.cloud.nuxt.network sshd-session[105778]: Invalid user orangepi from 161.35.169.21 port 43132
...
show less
Honeypot [fra-de-honeypot]: HTTP/1.1 request on 2375
GET /containers/json
User-Agent: libredtail-ht ...
show moreHoneypot [fra-de-honeypot]: HTTP/1.1 request on 2375
GET /containers/json
User-Agent: libredtail-http
Accept: */*; 2375 [1] TCP
Reported by DisPaisy Enterprises (dispaisy.systems) using: https://github.com/sefinek/T-Pot-To-AbuseIPDB
show less