This IP address has been reported a total of
174
times from
114 distinct
sources.
209.38.100.83 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Blocked by UFW (TCP on 5918)
Source port: 61006
TTL: 238
Packet length: 44
TOS: 0x08
This report (f ...
show moreBlocked by UFW (TCP on 5918)
Source port: 61006
TTL: 238
Packet length: 44
TOS: 0x08
This report (for 209.38.100.83) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
Anonymous
209.38.100.83 - - [23/Jun/2026:14:40:05 +0200] "GET /favicon.ico HTTP/1.1" 301 162 "http://phpmyadmi ...
show more209.38.100.83 - - [23/Jun/2026:14:40:05 +0200] "GET /favicon.ico HTTP/1.1" 301 162 "http://phpmyadmin.app6.gl-amf.org/" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/142.0.0.0 Safari/537.36"
...
show less
Blocked by UFW (TCP on 1912)
Source port: 61001
TTL: 241
Packet length: 44
TOS: 0x08
This report (f ...
show moreBlocked by UFW (TCP on 1912)
Source port: 61001
TTL: 241
Packet length: 44
TOS: 0x08
This report (for 209.38.100.83) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Blocked by UFW (TCP on 8443)
Source port: 61006
TTL: 237
Packet length: 44
TOS: 0x08
This report (f ...
show moreBlocked by UFW (TCP on 8443)
Source port: 61006
TTL: 237
Packet length: 44
TOS: 0x08
This report (for 209.38.100.83) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
SSH Brute force: 9 attempts were recorded from 209.38.100.83
2026-03-10T09:34:36+01:00 Invalid user ...
show moreSSH Brute force: 9 attempts were recorded from 209.38.100.83
2026-03-10T09:34:36+01:00 Invalid user test1 from 209.38.100.83 port 50452
2026-03-10T09:35:58+01:00 Invalid user test2 from 209.38.100.83 port 55220
2026-03-10T09:37:21+01:00 Invalid user test3 from 209.38.100.83 port 50466
2026-03-10T09:38:38+01:00 Connection closed by authenticating user root 209.38.100.83 port 38858 [preauth]
2026-03-10T09:39:51+01:00 Connection closed by authenticating user root 209.38.100.83 port 37074 [preauth]
2026-03-10T09:41:06+01:00 Connection closed by authenticating user root 209.38.100.83 port 44136 [preauth]
2026-03-10T09:42:18+01:00 Connection closed by authenticating user root 209.38.100.83 port 49514 [preauth]
2026-03-10T09:43:28+01:00 Connection closed by authenticating user root 209.38.100.83 port 54520 [preauth]
2026-03-10T09:44:40+01:00 Connection closed by authenticating user root 209.38.
show less
2026-03-10T19:34:47.723515+11:00 spydi.spydisec.com sshd[3693846]: Invalid user test1 from 209.38.10 ...
show more2026-03-10T19:34:47.723515+11:00 spydi.spydisec.com sshd[3693846]: Invalid user test1 from 209.38.100.83 port 38666
2026-03-10T19:36:12.032423+11:00 spydi.spydisec.com sshd[3694130]: Invalid user test2 from 209.38.100.83 port 45130
2026-03-10T19:37:33.785719+11:00 spydi.spydisec.com sshd[3694369]: Invalid user test3 from 209.38.100.83 port 51948
...
show less
Fail2ban sshd: 2026-03-10T08:34:45.358416+00:00 siem-test sshd[1608642]: Failed password for invalid ...
show moreFail2ban sshd: 2026-03-10T08:34:45.358416+00:00 siem-test sshd[1608642]: Failed password for invalid user test1 from 209.38.100.83 port 40820 ssh2
2026-03-10T08:36:05.095789+00:00 siem-test sshd[1608730]: Invalid user test2 from 209.38.100.83 port 34388
2026-03-10T08:36:05.158198+00:00 siem-test sshd[1608730]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=209.38.100.83
2026-03-10T08:36:06.772982+00:00 siem-test sshd[1608730]: Failed password for invalid user test2 fro
show less
Report 2130021 with IP 3177583 for SSH brute-force attack by source 3172246 via ssh-honeypot/0.2.0+h ...
show moreReport 2130021 with IP 3177583 for SSH brute-force attack by source 3172246 via ssh-honeypot/0.2.0+http
show less
Brute-Force
SSH
Showing 1 to
15
of 174 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ