This IP address has been reported a total of
60
times from
50 distinct
sources.
172.214.47.35 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Honeypot hit: Brute-force attack detected on 22/SSH
โข Credentials: root:1, root:12, root:123, root:1 ...
show moreHoneypot hit: Brute-force attack detected on 22/SSH
โข Credentials: root:1, root:12, root:123, root:123456
โข Number of login attempts: 4
โข 1 command(s) were executed during the session
โข Client: SSH-2.0-Go
show less
2025-11-30T03:31:44.317221+00:00 edge-ntt-vie01.int.pdx.net.uk sshd[296076]: Failed password for roo ...
show more2025-11-30T03:31:44.317221+00:00 edge-ntt-vie01.int.pdx.net.uk sshd[296076]: Failed password for root from 172.214.47.35 port 5136 ssh2
2025-11-30T03:32:05.152930+00:00 edge-ntt-vie01.int.pdx.net.uk sshd[296211]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=172.214.47.35 user=root
2025-11-30T03:32:06.743739+00:00 edge-ntt-vie01.int.pdx.net.uk sshd[296211]: Failed password for root from 172.214.47.35 port 5136 ssh2
...
show less
Nov 30 04:31:40 Moonlgxt sshd[3433093]: Failed password for root from 172.214.47.35 port 5136 ssh2
N ...
show moreNov 30 04:31:40 Moonlgxt sshd[3433093]: Failed password for root from 172.214.47.35 port 5136 ssh2
Nov 30 04:32:00 Moonlgxt sshd[3433299]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=172.214.47.35 user=root
Nov 30 04:32:02 Moonlgxt sshd[3433299]: Failed password for root from 172.214.47.35 port 5136 ssh2
...
show less
2025-11-30T05:31:25.798836+02:00 fra-GW01 sshd[2639548]: Failed password for root from 172.214.47.35 ...
show more2025-11-30T05:31:25.798836+02:00 fra-GW01 sshd[2639548]: Failed password for root from 172.214.47.35 port 5136 ssh2
2025-11-30T05:31:27.618385+02:00 fra-GW01 sshd[2639557]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=172.214.47.35 user=root
2025-11-30T05:31:29.794418+02:00 fra-GW01 sshd[2639557]: Failed password for root from 172.214.47.35 port 5136 ssh2
...
show less
Blocked by UFW on vds [22/tcp]
Source port: 5136
TTL: 241
Packet length: 40
TOS: 0x00
This report w ...
show moreBlocked by UFW on vds [22/tcp]
Source port: 5136
TTL: 241
Packet length: 40
TOS: 0x00
This report was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Malicious activity detected from 8075 MICROSOFT-CORP-MSN-AS-BLOCK towards host client.sillydev.co.uk ...
show moreMalicious activity detected from 8075 MICROSOFT-CORP-MSN-AS-BLOCK towards host client.sillydev.co.uk (GET HTTP/1.1) @ 2025-09-14T03:29:27Z (47 occurrences)
show less
172.214.47.35 (AS8075 MICROSOFT-CORP-MSN-AS-BLOCK) was intercepted at 2025-08-15T20:23:11Z after vio ...
show more172.214.47.35 (AS8075 MICROSOFT-CORP-MSN-AS-BLOCK) was intercepted at 2025-08-15T20:23:11Z after violating WAF directive: 874a3e315c344b1281ad4f00046aab6f. Pre-cautionary/corrective action applied: managed_challenge.
show less
172.214.47.35 (AS8075 MICROSOFT-CORP-MSN-AS-BLOCK) was intercepted at 2025-08-15T19:08:15Z after vio ...
show more172.214.47.35 (AS8075 MICROSOFT-CORP-MSN-AS-BLOCK) was intercepted at 2025-08-15T19:08:15Z after violating WAF directive: 874a3e315c344b1281ad4f00046aab6f. Pre-cautionary/corrective action applied: managed_challenge.
show less