This IP address has been reported a total of
46
times from
29 distinct
sources.
209.38.69.12 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
SSH brute force attempt. User: mark, Pass: [REDACTED]
Brute-Force
SSH
Anonymous
SSH brute force attempt. User: alex, Pass: [REDACTED]
2026-08-27T17:08:24.387616-04:00 sputnik3 sshd[3330528]: Invalid user ftpuser from 209.38.69.12 port ...
show more2026-08-27T17:08:24.387616-04:00 sputnik3 sshd[3330528]: Invalid user ftpuser from 209.38.69.12 port 59132
2026-08-27T17:09:32.385156-04:00 sputnik3 sshd[3330533]: Invalid user gameserver from 209.38.69.12 port 41152
2026-08-27T17:11:35.167102-04:00 sputnik3 sshd[3331152]: Invalid user testi from 209.38.69.12 port 59108
...
show less
Brute-Force
SSH
Anonymous
2026-08-27T23:08:02.165126+02:00 luspi-server sshd-session[1245889]: Invalid user ftpuser from 209.3 ...
show more2026-08-27T23:08:02.165126+02:00 luspi-server sshd-session[1245889]: Invalid user ftpuser from 209.38.69.12 port 51560
2026-08-27T23:09:11.250392+02:00 luspi-server sshd-session[1246761]: Invalid user gameserver from 209.38.69.12 port 47660
...
show less
2026-08-27T15:01:58.001733-06:00 freightliner sshd[554857]: pam_unix(sshd:auth): authentication fail ...
show more2026-08-27T15:01:58.001733-06:00 freightliner sshd[554857]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=209.38.69.12 user=root
2026-08-27T15:02:00.007474-06:00 freightliner sshd[554857]: Failed password for invalid user root from 209.38.69.12 port 51718 ssh2
2026-08-27T15:06:51.873510-06:00 freightliner sshd[554957]: User root from 209.38.69.12 not allowed because none of user's groups are listed in AllowGroups
...
show less
2026-08-27T13:08:56.139965-06:00 b146-66 sshd[560781]: pam_sss(sshd:auth): authentication failure; l ...
show more2026-08-27T13:08:56.139965-06:00 b146-66 sshd[560781]: pam_sss(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=209.38.69.12 user=www
2026-08-27T13:08:57.759947-06:00 b146-66 sshd[560781]: Failed password for invalid user www from 209.38.69.12 port 39062 ssh2
2026-08-27T13:14:29.581541-06:00 b146-66 sshd[561204]: Invalid user ubuntu from 209.38.69.12 port 44226
...
show less
Cluster member (Omitted) (FR/France/-) said, DENY 209.38.69.12, Reason:[(sshd) Failed SSH login from ...
show moreCluster member (Omitted) (FR/France/-) said, DENY 209.38.69.12, Reason:[(sshd) Failed SSH login from 209.38.69.12 (US/United States/-): 3 in the last (Omitted)]
show less
Aug 27 21:09:50 centrum sshd-session[10174]: Invalid user www from 209.38.69.12 port 57060
Aug 27 21 ...
show moreAug 27 21:09:50 centrum sshd-session[10174]: Invalid user www from 209.38.69.12 port 57060
Aug 27 21:09:51 centrum sshd-session[10174]: Disconnected from invalid user www 209.38.69.12 port 57060 [preauth]
...
show less
Aug 27 20:58:54 srv-ubuntu-dev3 sshd[838015]: Disconnected from authenticating user root 209.38.69.1 ...
show moreAug 27 20:58:54 srv-ubuntu-dev3 sshd[838015]: Disconnected from authenticating user root 209.38.69.12 port 43886 [preauth]
Aug 27 20:59:56 srv-ubuntu-dev3 sshd[838155]: Invalid user cso from 209.38.69.12 port 41360
Aug 27 20:59:56 srv-ubuntu-dev3 sshd[838155]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=209.38.69.12
Aug 27 20:59:58 srv-ubuntu-dev3 sshd[838155]: Failed password for invalid user cso from 209.38.69.12 port 41360 ssh2
Aug 27 20:59:59 srv-ubuntu-dev3 sshd[838155]: Disconnected from invalid user cso 209.38.69.12 port 41360 [preauth]
...
show less
Aug 27 20:36:30 srv-ubuntu-dev3 sshd[835085]: Failed password for invalid user jackson from 209.38.6 ...
show moreAug 27 20:36:30 srv-ubuntu-dev3 sshd[835085]: Failed password for invalid user jackson from 209.38.69.12 port 43414 ssh2
Aug 27 20:36:32 srv-ubuntu-dev3 sshd[835085]: Disconnected from invalid user jackson 209.38.69.12 port 43414 [preauth]
Aug 27 20:37:34 srv-ubuntu-dev3 sshd[835200]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=209.38.69.12 user=root
Aug 27 20:37:37 srv-ubuntu-dev3 sshd[835200]: Failed password for root from 209.38.69.12 port 39254 ssh2
Aug 27 20:37:38 srv-ubuntu-dev3 sshd[835200]: Disconnected from authenticating user root 209.38.69.12 port 39254 [preauth]
...
show less
SSH Brute force: 50 attempts were recorded from 209.38.69.12
2026-08-27T19:01:40+02:00 Invalid user ...
show moreSSH Brute force: 50 attempts were recorded from 209.38.69.12
2026-08-27T19:01:40+02:00 Invalid user user from 209.38.69.12 port 48066
2026-08-27T19:09:14+02:00 Disconnected from authenticating user root 209.38.69.12 port 33906 [preauth]
2026-08-27T19:10:19+02:00 Disconnected from authenticating user root 209.38.69.12 port 60690 [preauth]
2026-08-27T19:11:28+02:00 Disconnected from authenticating user root 209.38.69.12 port 59320 [preauth]
2026-08-27T19:12:37+02:00 Invalid user fox from 209.38.69.12 port 39690
2026-08-27T19:13:42+02:00 Disconnected from authenticating user root 209.38.69.12 port 56992 [preauth]
2026-08-27T19:14:45+02:00 Invalid user customer from 209.38.69.12 port 54654
2026-08-27T19:15:48+02:00 Invalid user gitlab-runner from 209.38.69.12 port 34280
2026-08-27T19:16:49+02:00 Invalid user erpnext from 209.38.69.12 port 43224
2026-08-27T19:17:52+02:00 Invalid user linux fr
show less
Brute-Force
SSH
Showing 1 to
15
of 46 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ