This IP address has been reported a total of
54
times from
46 distinct
sources.
192.3.219.20 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
Repeated SSH brute force and user enumeration attempts against a secured server. Multiple failed aut ...
show moreRepeated SSH brute force and user enumeration attempts against a secured server. Multiple failed authentication attempts from this IP across an extended period.
show less
Jun 29 12:08:59 Debian-1202-bookworm-amd64-base sshd[2930471]: pam_unix(sshd:auth): authentication f ...
show moreJun 29 12:08:59 Debian-1202-bookworm-amd64-base sshd[2930471]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=192.3.219.20
Jun 29 12:09:01 Debian-1202-bookworm-amd64-base sshd[2930471]: Failed password for invalid user user1 from 192.3.219.20 port 59460 ssh2
Jun 29 12:10:37 Debian-1202-bookworm-amd64-base sshd[2993357]: Invalid user developer from 192.3.219.20 port 60172
Jun 29 12:10:37 Debian-1202-bookworm-amd64-base sshd[2993357]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=192.3.219.20
Jun 29 12:10:39 Debian-1202-bookworm-amd64-base sshd[2993357]: Failed password for invalid user developer from 192.3.219.20 port 60172 ssh2
...
show less
2026-06-29T10:07:42.715646+00:00 my-vps sshd-session[4072308]: pam_unix(sshd:auth): authentication f ...
show more2026-06-29T10:07:42.715646+00:00 my-vps sshd-session[4072308]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=192.3.219.20 user=root
2026-06-29T10:07:44.638315+00:00 my-vps sshd-session[4072308]: Failed password for root from 192.3.219.20 port 22314 ssh2
2026-06-29T10:09:21.341347+00:00 my-vps sshd-session[4072552]: Invalid user user1 from 192.3.219.20 port 1528
...
show less
192.3.219.20 (US/United States/192-3-219-20-host.colocrossing.com), 5 distributed sshd attacks on ac ...
show more192.3.219.20 (US/United States/192-3-219-20-host.colocrossing.com), 5 distributed sshd attacks on account [root] in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_DISTATTACK; Logs: Jun 29 05:01:31 18020 sshd[26085]: Failed password for root from 160.187.180.173 port 59466 ssh2
Jun 29 05:01:29 18020 sshd[26085]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=160.187.180.173 user=root
Jun 29 05:00:09 18020 sshd[25401]: Failed password for root from 45.197.12.65 port 57068 ssh2
Jun 29 05:00:26 18020 sshd[25592]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=192.3.219.20 user=root
Jun 29 05:00:28 18020 sshd[25592]: Failed password for root from 192.3.219.20 port 55262 ssh2
IP Addresses Blocked:
160.187.180.173 (PK/Pakistan/-)
45.197.12.65 (MY/Malaysia/-)
show less
Jun 29 11:40:20 h2930838 sshd[16374]: pam_unix(sshd:auth): authentication failure; logname= uid=0 eu ...
show moreJun 29 11:40:20 h2930838 sshd[16374]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=192.3.219.20 user=root
Jun 29 11:40:23 h2930838 sshd[16374]: Failed password for invalid user root from 192.3.219.20 port 6918 ssh2
show less
Multiple SSH login attempts from 192.3.219.20 targeting user(s): ftpuser,postgres | Server Managed b ...
show moreMultiple SSH login attempts from 192.3.219.20 targeting user(s): ftpuser,postgres | Server Managed by Focusnic
show less
2026-06-29T11:08:55.843676+02:00 frank sshd-session[2317631]: pam_unix(sshd:auth): authentication fa ...
show more2026-06-29T11:08:55.843676+02:00 frank sshd-session[2317631]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=192.3.219.20 user=root
2026-06-29T11:08:57.912000+02:00 frank sshd-session[2317631]: Failed password for root from 192.3.219.20 port 19294 ssh2
2026-06-29T11:10:31.637546+02:00 frank sshd-session[2320814]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=192.3.219.20 user=root
2026-06-29T11:10:33.474205+02:00 frank sshd-session[2320814]: Failed password for root from 192.3.219.20 port 30290 ssh2
2026-06-29T11:12:08.290345+02:00 frank sshd-session[2323140]: Invalid user postgres from 192.3.219.20 port 60086
...
show less
2026-06-29T08:29:32.118938+00:00 ubuntu sshd[902023]: Failed password for root from 192.3.219.20 por ...
show more2026-06-29T08:29:32.118938+00:00 ubuntu sshd[902023]: Failed password for root from 192.3.219.20 port 56364 ssh2
2026-06-29T08:31:13.856398+00:00 ubuntu sshd[902070]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=192.3.219.20 user=root
2026-06-29T08:31:15.604392+00:00 ubuntu sshd[902070]: Failed password for root from 192.3.219.20 port 40666 ssh2
...
show less
[rede-168-134] (sshd) Failed SSH login from 192.3.219.20 (US/United States/192-3-219-20-host.colocro ...
show more[rede-168-134] (sshd) Failed SSH login from 192.3.219.20 (US/United States/192-3-219-20-host.colocrossing.com): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: Jun 29 04:45:26 sshd[5814]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=192.3.219.20 user=[USERNAME]
Jun 29 04:45:28 sshd[5814]: Failed password for [USERNAME] from 192.3.219.20 port 28104 ssh2
Jun 29 04:51:46 sshd[5983]: Invalid user [USERNAME] from 192.3.219.20 port 54814
Jun 29 04:51:49 sshd[5983]: Failed password for invalid user [USERNAME] from 192.3.219.20 port 54814 ssh2
Jun 29 04:53:26 sshd[6010]: pam_unix(sshd:auth): authentication failure; l
show less
Port Scan
Showing 1 to
15
of 54 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ