This IP address has been reported a total of
71
times from
48 distinct
sources.
199.192.22.215 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
199.192.22.215 (US/United States/-), 5 distributed sshd attacks on account [root] in the last 3600 s ...
show more199.192.22.215 (US/United States/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_DISTATTACK; Logs: Jun 11 06:50:40 15581 sshd[13574]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=161.97.154.151 user=root
Jun 11 06:50:42 15581 sshd[13574]: Failed password for root from 161.97.154.151 port 40640 ssh2
Jun 11 06:50:10 15581 sshd[13304]: Failed password for root from 155.248.215.252 port 37812 ssh2
Jun 11 06:52:11 15581 sshd[14654]: Failed password for root from 199.192.22.215 port 59836 ssh2
Jun 11 06:52:09 15581 sshd[14654]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=199.192.22.215 user=root
IP Addresses Blocked:
161.97.154.151 (GB/United Kingdom/vmi3343459.contaboserver.net)
155.248.215.252 (US/United States/-)
show less
2026-06-11T13:39:55.049756+02:00 vmi3299174 sshd[1313356]: pam_unix(sshd:auth): authentication failu ...
show more2026-06-11T13:39:55.049756+02:00 vmi3299174 sshd[1313356]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=199.192.22.215
2026-06-11T13:39:56.570428+02:00 vmi3299174 sshd[1313356]: Failed password for invalid user defi from 199.192.22.215 port 35498 ssh2
2026-06-11T13:44:26.948533+02:00 vmi3299174 sshd[1315057]: Invalid user walrus from 199.192.22.215 port 50402
...
show less
199.192.22.215 (US/United States/-), 5 distributed sshd attacks on account [root] in the last 3600 s ...
show more199.192.22.215 (US/United States/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_DISTATTACK; Logs: Jun 11 04:39:41 13989 sshd[2526]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=202.29.235.12 user=root
Jun 11 04:37:40 13989 sshd[1493]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=199.192.22.215 user=root
Jun 11 04:37:42 13989 sshd[1493]: Failed password for root from 199.192.22.215 port 59078 ssh2
Jun 11 04:34:39 13989 sshd[32410]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=31.187.64.123 user=root
Jun 11 04:34:41 13989 sshd[32410]: Failed password for root from 31.187.64.123 port 52674 ssh2
IP Addresses Blocked:
202.29.235.12 (TH/Thailand/-)
show less
Jun 11 13:01:40 rapi wings[1730548]: WARN: [Jun 11 13:01:40.994] failed to validate user credentials ...
show moreJun 11 13:01:40 rapi wings[1730548]: WARN: [Jun 11 13:01:40.994] failed to validate user credentials (invalid format) ip=199.192.22.215:53568 method=password subsystem=sftp username=debian
Jun 11 13:01:41 rapi wings[1730548]: ERROR: [Jun 11 13:01:41.208] sftp: failed to accept inbound connection error=[ssh: no auth passed yet, the credentials provided were invalid] ip=199.192.22.215:53568
show less