This IP address has been reported a total of
20
times from
18 distinct
sources.
198.199.91.143 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
Automated SSH brute-force attack detected. The IP repeatedly attempted to authenticate to port 22 us ...
show moreAutomated SSH brute-force attack detected. The IP repeatedly attempted to authenticate to port 22 using multiple usernames and password guesses within a short timeframe.
show less
2026-03-22T09:39:28.495160+00:00 edge-con-nyc01.int.pdx.net.uk sshd[399284]: pam_unix(sshd:auth): au ...
show more2026-03-22T09:39:28.495160+00:00 edge-con-nyc01.int.pdx.net.uk sshd[399284]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=198.199.91.143 user=root
2026-03-22T09:39:29.977272+00:00 edge-con-nyc01.int.pdx.net.uk sshd[399284]: Failed password for root from 198.199.91.143 port 59502 ssh2
2026-03-22T09:39:34.238736+00:00 edge-con-nyc01.int.pdx.net.uk sshd[399286]: Invalid user ubuntu from 198.199.91.143 port 59622
...
show less
Brute-Force
SSH
Anonymous
2026-03-22T11:39:25.138549+02:00 mail sshd[2803617]: pam_unix(sshd:auth): authentication failure; lo ...
show more2026-03-22T11:39:25.138549+02:00 mail sshd[2803617]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=198.199.91.143 user=root
2026-03-22T11:39:26.674981+02:00 mail sshd[2803617]: Failed password for root from 198.199.91.143 port 54584 ssh2
2026-03-22T11:39:32.106216+02:00 mail sshd[2803622]: Invalid user ubuntu from 198.199.91.143 port 45934
...
show less
2026-03-19T16:58:18.240835-05:00 zwgonkop sshd[53133]: User root from 198.199.91.143 not allowed bec ...
show more2026-03-19T16:58:18.240835-05:00 zwgonkop sshd[53133]: User root from 198.199.91.143 not allowed because not listed in AllowUsers
2026-03-19T16:58:18.349456-05:00 zwgonkop sshd[53133]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=198.199.91.143 user=root
2026-03-19T16:58:21.056046-05:00 zwgonkop sshd[53133]: Failed password for invalid user root from 198.199.91.143 port 44062 ssh2
2026-03-19T16:58:21.872628-05:00 zwgonkop sshd[53133]: Connection closed by invalid user root 198.199.91.143 port 44062 [preauth]
2026-03-19T16:58:25.600489-05:00 zwgonkop sshd[53135]: User root from 198.199.91.143 not allowed because not listed in AllowUsers
2026-03-19T16:58:25.660098-05:00 zwgonkop sshd[53135]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=198.199.91.143 user=root
2026-03-19T16:58:27.995229-05:00 zwgonkop sshd[53135]: Failed password for invalid user root from 198.199.91.143 port 60660 ssh2
2026-03-19T16:
...
show less
Automated report: SSH brute force detected. This IP exceeded the allowed number of failed login atte ...
show moreAutomated report: SSH brute force detected. This IP exceeded the allowed number of failed login attempts (3 attempts).
show less
Mar 19 12:29:08 spidey sshd-session[30347]: pam_unix(sshd:auth): authentication failure; logname= ui ...
show moreMar 19 12:29:08 spidey sshd-session[30347]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=198.199.91.143 user=root
Mar 19 12:29:11 spidey sshd-session[30347]: Failed password for root from 198.199.91.143 port 51396 ssh2
Mar 19 12:29:15 spidey sshd-session[30353]: Invalid user gitlab-runner from 198.199.91.143 port 48418
...
show less
2026-03-19T19:29:05.889315+00:00 panel.gamer3514.co.uk sshd[3894559]: pam_unix(sshd:auth): authentic ...
show more2026-03-19T19:29:05.889315+00:00 panel.gamer3514.co.uk sshd[3894559]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=198.199.91.143 user=root
2026-03-19T19:29:08.506590+00:00 panel.gamer3514.co.uk sshd[3894559]: Failed password for root from 198.199.91.143 port 55036 ssh2
2026-03-19T19:29:13.089888+00:00 panel.gamer3514.co.uk sshd[3894561]: Invalid user gitlab-runner from 198.199.91.143 port 55040
...
show less
Brute-Force
SSH
Showing 1 to
15
of 20 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ