UFW blocked a suspicious connection attempt to a closed or denied port. This activity is commonly as ...
show moreUFW blocked a suspicious connection attempt to a closed or denied port. This activity is commonly associated with port scanning, service discovery, or automated internet probing. Technical: source_ip=167.99.82.164; proto=TCP; source_port=61003; target_port=1245; flags=SYN
show less
2026-03-09T03:45:26.383522+03:00 sculkbot sshd[82816]: Invalid user fedora from 167.99.82.164 port 4 ...
show more2026-03-09T03:45:26.383522+03:00 sculkbot sshd[82816]: Invalid user fedora from 167.99.82.164 port 45032
2026-03-09T03:46:34.238951+03:00 sculkbot sshd[82828]: Invalid user ec2-user from 167.99.82.164 port 53258
2026-03-09T03:47:43.460218+03:00 sculkbot sshd[82837]: Invalid user ec2-user from 167.99.82.164 port 41656
2026-03-09T03:48:51.621252+03:00 sculkbot sshd[82845]: Invalid user ec2-user from 167.99.82.164 port 34374
2026-03-09T03:50:00.609334+03:00 sculkbot sshd[82852]: Invalid user ec2-user from 167.99.82.164 port 59804
...
show less
Brute-Force
SSH
Anonymous
Mar 9 01:43:16 srv2 sshd[50450]: Invalid user debian from 167.99.82.164 port 58284
Mar 9 01:44:23 ...
show moreMar 9 01:43:16 srv2 sshd[50450]: Invalid user debian from 167.99.82.164 port 58284
Mar 9 01:44:23 srv2 sshd[50490]: Invalid user fedora from 167.99.82.164 port 39014
Mar 9 01:45:32 srv2 sshd[50639]: Invalid user ec2-user from 167.99.82.164 port 37984
Mar 9 01:46:38 srv2 sshd[50672]: Invalid user ec2-user from 167.99.82.164 port 47098
Mar 9 01:47:49 srv2 sshd[50705]: Invalid user ec2-user from 167.99.82.164 port 36370
...
show less
Mar 9 00:39:44 cloud-server-0 sshd[3576073]: Invalid user ubuntu from 167.99.82.164 port 48974
Mar ...
show moreMar 9 00:39:44 cloud-server-0 sshd[3576073]: Invalid user ubuntu from 167.99.82.164 port 48974
Mar 9 00:39:46 cloud-server-0 sshd[3576073]: Failed password for invalid user ubuntu from 167.99.82.164 port 48974 ssh2
...
show less
2026-03-09T03:29:46.563538+03:00 sculkbot sshd[82607]: Invalid user docker from 167.99.82.164 port 4 ...
show more2026-03-09T03:29:46.563538+03:00 sculkbot sshd[82607]: Invalid user docker from 167.99.82.164 port 47424
2026-03-09T03:30:52.379697+03:00 sculkbot sshd[82621]: Invalid user docker from 167.99.82.164 port 51732
2026-03-09T03:32:07.136454+03:00 sculkbot sshd[82635]: Invalid user docker from 167.99.82.164 port 56884
2026-03-09T03:33:15.787086+03:00 sculkbot sshd[82656]: Invalid user jenkins from 167.99.82.164 port 34984
2026-03-09T03:34:25.621152+03:00 sculkbot sshd[82669]: Invalid user jenkins from 167.99.82.164 port 46014
...
show less
2026-03-09T00:29:42.773710+00:00 becker-software sshd[2638718]: Invalid user docker from 167.99.82.1 ...
show more2026-03-09T00:29:42.773710+00:00 becker-software sshd[2638718]: Invalid user docker from 167.99.82.164 port 35766
2026-03-09T00:30:48.666479+00:00 becker-software sshd[2639325]: Invalid user docker from 167.99.82.164 port 36394
2026-03-09T00:32:03.002285+00:00 becker-software sshd[2640037]: Invalid user docker from 167.99.82.164 port 51654
2026-03-09T00:33:11.309335+00:00 becker-software sshd[2640641]: Invalid user jenkins from 167.99.82.164 port 47070
2026-03-09T00:34:21.207837+00:00 becker-software sshd[2641228]: Invalid user jenkins from 167.99.82.164 port 54374
...
show less
Brute-Force
SSH
Anonymous
Mar 9 01:17:18 srv2 sshd[48732]: Invalid user pi from 167.99.82.164 port 40106
Mar 9 01:28:44 srv2 ...
show moreMar 9 01:17:18 srv2 sshd[48732]: Invalid user pi from 167.99.82.164 port 40106
Mar 9 01:28:44 srv2 sshd[49358]: Invalid user docker from 167.99.82.164 port 59918
Mar 9 01:29:51 srv2 sshd[49390]: Invalid user docker from 167.99.82.164 port 37600
Mar 9 01:30:58 srv2 sshd[49534]: Invalid user docker from 167.99.82.164 port 59974
Mar 9 01:32:12 srv2 sshd[49592]: Invalid user jenkins from 167.99.82.164 port 55896
...
show less
Mar 9 01:18:38 host2 sshd[1923362]: Failed password for root from 167.99.82.164 port 51816 ssh2
Mar ...
show moreMar 9 01:18:38 host2 sshd[1923362]: Failed password for root from 167.99.82.164 port 51816 ssh2
Mar 9 01:19:44 host2 sshd[1923388]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=167.99.82.164 user=root
Mar 9 01:19:46 host2 sshd[1923388]: Failed password for root from 167.99.82.164 port 38180 ssh2
Mar 9 01:20:49 host2 sshd[1923429]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=167.99.82.164 user=root
Mar 9 01:20:51 host2 sshd[1923429]: Failed password for root from 167.99.82.164 port 37554 ssh2
...
show less
Mar 9 00:17:28 v3 sshd[3185570]: Failed password for invalid user pi from 167.99.82.164 port 54846 ...
show moreMar 9 00:17:28 v3 sshd[3185570]: Failed password for invalid user pi from 167.99.82.164 port 54846 ssh2
Mar 9 00:18:38 v3 sshd[3185590]: User root from 167.99.82.164 not allowed because not listed in AllowUsers
Mar 9 00:18:38 v3 sshd[3185590]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=167.99.82.164 user=root
Mar 9 00:18:40 v3 sshd[3185590]: Failed password for invalid user root from 167.99.82.164 port 47852 ssh2
Mar 9 00:19:46 v3 sshd[3185624]: User root from 167.99.82.164 not allowed because not listed in AllowUsers
...
show less
2026-03-09T00:17:38.186961+00:00 edge-con-sin01.int.pdx.net.uk sshd[1480888]: Failed password for in ...
show more2026-03-09T00:17:38.186961+00:00 edge-con-sin01.int.pdx.net.uk sshd[1480888]: Failed password for invalid user pi from 167.99.82.164 port 44968 ssh2
2026-03-09T00:18:47.113710+00:00 edge-con-sin01.int.pdx.net.uk sshd[1480967]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=167.99.82.164 user=root
2026-03-09T00:18:49.137808+00:00 edge-con-sin01.int.pdx.net.uk sshd[1480967]: Failed password for root from 167.99.82.164 port 42146 ssh2
...
show less
Mar 9 01:17:31 * sshd[1902296]: Failed password for invalid user pi from 167.99.82.164 port 49822 s ...
show moreMar 9 01:17:31 * sshd[1902296]: Failed password for invalid user pi from 167.99.82.164 port 49822 ssh2
Mar 9 01:18:39 * sshd[1902480]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=167.99.82.164 user=root
Mar 9 01:18:42 * sshd[1902480]: Failed password for root from 167.99.82.164 port 51134 ssh2
show less