This IP address has been reported a total of
1,877
times from
763 distinct
sources.
198.154.207.145 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
2026-05-17T18:04:36+02:00 lb-2 sshd[446311]: pam_unix(sshd:auth): authentication failure; logname= u ...
show more2026-05-17T18:04:36+02:00 lb-2 sshd[446311]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=198.154.207.145 user=root
2026-05-17T18:04:38+02:00 lb-2 sshd[446311]: Failed password for root from 198.154.207.145 port 33690 ssh2
2026-05-17T18:07:53+02:00 lb-2 sshd[447073]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=198.154.207.145 user=root
2026-05-17T18:07:56+02:00 lb-2 sshd[447073]: Failed password for root from 198.154.207.145 port 52804 ssh2
...
show less
Report 2377781 with IP 3425344 for SSH brute-force attack by source 3420006 via ssh-honeypot/0.2.1+h ...
show moreReport 2377781 with IP 3425344 for SSH brute-force attack by source 3420006 via ssh-honeypot/0.2.1+http
show less
2026-05-17T14:58:36.476883+00:00 debian-4gb-nbg1-1 sshd-session[688930]: Invalid user chen from 198. ...
show more2026-05-17T14:58:36.476883+00:00 debian-4gb-nbg1-1 sshd-session[688930]: Invalid user chen from 198.154.207.145 port 59244
2026-05-17T14:59:55.866303+00:00 debian-4gb-nbg1-1 sshd-session[688963]: Invalid user ppr from 198.154.207.145 port 55746
2026-05-17T15:01:08.848471+00:00 debian-4gb-nbg1-1 sshd-session[688991]: Invalid user wpuser from 198.154.207.145 port 52228
...
show less
May 17 11:25:46 GMNH10459 sshd[2463362]: Failed password for root from 198.154.207.145 port 57792 ss ...
show moreMay 17 11:25:46 GMNH10459 sshd[2463362]: Failed password for root from 198.154.207.145 port 57792 ssh2
May 17 11:27:16 GMNH10459 sshd[2464604]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=198.154.207.145 user=root
May 17 11:27:18 GMNH10459 sshd[2464604]: Failed password for root from 198.154.207.145 port 53904 ssh2
May 17 11:28:38 GMNH10459 sshd[2465572]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=198.154.207.145 user=root
May 17 11:28:40 GMNH10459 sshd[2465572]: Failed password for root from 198.154.207.145 port 49988 ssh2
...
show less
May 17 15:40:47 vmi291233 sshd[1330145]: Invalid user amir from 198.154.207.145 port 53846
May 17 15 ...
show moreMay 17 15:40:47 vmi291233 sshd[1330145]: Invalid user amir from 198.154.207.145 port 53846
May 17 15:48:53 vmi291233 sshd[1330185]: Invalid user nexus from 198.154.207.145 port 48928
May 17 15:52:55 vmi291233 sshd[1330228]: Invalid user ec2-user from 198.154.207.145 port 40730
May 17 15:54:15 vmi291233 sshd[1330235]: Invalid user lighthouse from 198.154.207.145 port 37986
May 17 15:56:52 vmi291233 sshd[1330258]: Invalid user jackson from 198.154.207.145 port 60742
show less
2026-05-17T15:41:27.749971+02:00 router01.gfa-steriltechnik.de sshd[3004598]: Invalid user amir from ...
show more2026-05-17T15:41:27.749971+02:00 router01.gfa-steriltechnik.de sshd[3004598]: Invalid user amir from 198.154.207.145 port 36392
2026-05-17T15:41:27.949691+02:00 router01.gfa-steriltechnik.de sshd[3004598]: Disconnected from invalid user amir 198.154.207.145 port 36392 [preauth]
2026-05-17T15:47:36.502719+02:00 router01.gfa-steriltechnik.de sshd[3005432]: Disconnected from authenticating user root 198.154.207.145 port 59486 [preauth]
2026-05-17T15:49:00.774446+02:00 router01.gfa-steriltechnik.de sshd[3005628]: Invalid user nexus from 198.154.207.145 port 56766
2026-05-17T15:49:00.972201+02:00 router01.gfa-steriltechnik.de sshd[3005628]: Disconnected from invalid user nexus 198.154.207.145 port 56766 [preauth]
show less
Automated report: SSH brute force detected. This IP exceeded the allowed number of failed login atte ...
show moreAutomated report: SSH brute force detected. This IP exceeded the allowed number of failed login attempts (3 attempts).
show less
(sshd) Failed SSH login from 198.154.207.145 (US/United States/145-207-154-198.unifiedlayer.com): 5 ...
show more(sshd) Failed SSH login from 198.154.207.145 (US/United States/145-207-154-198.unifiedlayer.com): 5 in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_SSHD; Logs: May 17 08:07:22 14664 sshd[17492]: Invalid user rocky from 198.154.207.145 port 46622
May 17 08:07:24 14664 sshd[17492]: Failed password for invalid user rocky from 198.154.207.145 port 46622 ssh2
May 17 08:13:24 14664 sshd[18464]: Invalid user devuser from 198.154.207.145 port 42454
May 17 08:13:25 14664 sshd[18464]: Failed password for invalid user devuser from 198.154.207.145 port 42454 ssh2
May 17 08:14:42 14664 sshd[18643]: Invalid user rtc from 198.154.207.145 port 40882
show less
Brute-Force
SSH
Anonymous
May 17 15:08:40 sshd-session[26662]: Invalid user rocky from 198.154.207.145 port 35464
May 17 15:0 ...
show moreMay 17 15:08:40 sshd-session[26662]: Invalid user rocky from 198.154.207.145 port 35464
May 17 15:08:40 sshd-session[26662]: Received disconnect from 198.154.207.145 port 35464:11: Bye Bye [preauth]
...
show less