This IP address has been reported a total of
117
times from
77 distinct
sources.
211.149.216.91 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Cowrie Honeypot: 5 unauthorised SSH/Telnet login attempts between 2026-06-16T15:52:13Z and 2026-06-1 ...
show moreCowrie Honeypot: 5 unauthorised SSH/Telnet login attempts between 2026-06-16T15:52:13Z and 2026-06-16T15:57:38Z
show less
(sshd) Failed SSH login from 211.149.216.91 (CN/China/-): 5 in the last 3600 secs; Ports: *; Directi ...
show more(sshd) Failed SSH login from 211.149.216.91 (CN/China/-): 5 in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_SSHD; Logs: Jun 16 08:26:24 14072 sshd[16255]: Invalid user neuro from 211.149.216.91 port 55386
Jun 16 08:26:26 14072 sshd[16255]: Failed password for invalid user neuro from 211.149.216.91 port 55386 ssh2
Jun 16 08:36:14 14072 sshd[21616]: Invalid user fedora from 211.149.216.91 port 46168
Jun 16 08:36:16 14072 sshd[21616]: Failed password for invalid user fedora from 211.149.216.91 port 46168 ssh2
Jun 16 08:44:25 14072 sshd[25989]: Invalid user planck from 211.149.216.91 port 36326
show less
Brute-Force
SSH
Anonymous
2026-06-16T13:31:19.734233+00:00 de-fra2-nc2 sshd[216083]: Invalid user neuro from 211.149.216.91 po ...
show more2026-06-16T13:31:19.734233+00:00 de-fra2-nc2 sshd[216083]: Invalid user neuro from 211.149.216.91 port 36478
2026-06-16T13:36:48.730766+00:00 de-fra2-nc2 sshd[216099]: Invalid user fedora from 211.149.216.91 port 47130
2026-06-16T13:38:22.065112+00:00 de-fra2-nc2 sshd[216569]: Invalid user domino2 from 211.149.216.91 port 40056
...
show less
2026-06-17T00:26:54.377376+12:00 localhost sshd[3488444]: Invalid user studios from 211.149.216.91 p ...
show more2026-06-17T00:26:54.377376+12:00 localhost sshd[3488444]: Invalid user studios from 211.149.216.91 port 54616
2026-06-17T00:29:13.851908+12:00 localhost sshd[3491181]: Invalid user rent from 211.149.216.91 port 42684
2026-06-17T00:31:31.526537+12:00 localhost sshd[3493458]: Invalid user egw from 211.149.216.91 port 34630
2026-06-17T00:33:45.323689+12:00 localhost sshd[3495622]: Invalid user belgorod from 211.149.216.91 port 60654
2026-06-17T00:35:58.396853+12:00 localhost sshd[3498213]: Invalid user assistenza from 211.149.216.91 port 43842
show less
2026-06-16T17:57:03.218648ns1.parkmydns.com sshd[532879]: Invalid user studios from 211.149.216.91 p ...
show more2026-06-16T17:57:03.218648ns1.parkmydns.com sshd[532879]: Invalid user studios from 211.149.216.91 port 43354
2026-06-16T17:59:17.909883ns1.parkmydns.com sshd[532923]: Invalid user rent from 211.149.216.91 port 34090
2026-06-16T18:00:29.650508ns1.parkmydns.com sshd[532952]: Invalid user course from 211.149.216.91 port 52466
2026-06-16T18:01:37.670302ns1.parkmydns.com sshd[532968]: Invalid user egw from 211.149.216.91 port 58950
2026-06-16T18:03:49.804388ns1.parkmydns.com sshd[533011]: Invalid user belgorod from 211.149.216.91 port 49434
...
show less
(sshd) Failed SSH login from 211.149.216.91 (CN/China/-): 5 in the last 3600 secs; Ports: *; Directi ...
show more(sshd) Failed SSH login from 211.149.216.91 (CN/China/-): 5 in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_SSHD; Logs: Jun 16 07:16:34 15106 sshd[8333]: Invalid user studios from 211.149.216.91 port 35916
Jun 16 07:16:36 15106 sshd[8333]: Failed password for invalid user studios from 211.149.216.91 port 35916 ssh2
Jun 16 07:28:46 15106 sshd[14844]: Invalid user rent from 211.149.216.91 port 51378
Jun 16 07:28:47 15106 sshd[14844]: Failed password for invalid user rent from 211.149.216.91 port 51378 ssh2
Jun 16 07:29:59 15106 sshd[15473]: Invalid user course from 211.149.216.91 port 48906
show less
Brute-Force
SSH
Anonymous
ez: Invalid user studios from 211.149.216.91 port 49744 ez: Invalid user rent from 211.149.216.91 po ...
show moreez: Invalid user studios from 211.149.216.91 port 49744 ez: Invalid user rent from 211.149.216.91 port 48160
show less
Brute-Force
SSH
Anonymous
2026-06-16T12:01:15.137166+02:00 smvps001 sshd-session[499472]: Invalid user mongodb from 211.149.21 ...
show more2026-06-16T12:01:15.137166+02:00 smvps001 sshd-session[499472]: Invalid user mongodb from 211.149.216.91 port 51830
2026-06-16T12:01:15.388572+02:00 smvps001 sshd-session[499472]: Disconnected from invalid user mongodb 211.149.216.91 port 51830 [preauth]
2026-06-16T12:23:46.479878+02:00 smvps001 sshd-session[501460]: Invalid user freeman from 211.149.216.91 port 54114
...
show less
2026-06-16T08:28:14.998883+02:00 netcup-de sshd[344521]: Invalid user git from 211.149.216.91 port 3 ...
show more2026-06-16T08:28:14.998883+02:00 netcup-de sshd[344521]: Invalid user git from 211.149.216.91 port 34490
2026-06-16T08:46:44.482780+02:00 netcup-de sshd[347694]: Invalid user elasticsearch from 211.149.216.91 port 48718
...
show less
(sshd) Failed SSH login from 211.149.216.91 (CN/China/-): 5 in the last 3600 secs; Ports: *; Directi ...
show more(sshd) Failed SSH login from 211.149.216.91 (CN/China/-): 5 in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_SSHD; Logs: Jun 15 22:05:16 15216 sshd[3507]: Invalid user tk from 211.149.216.91 port 40326
Jun 15 22:05:19 15216 sshd[3507]: Failed password for invalid user tk from 211.149.216.91 port 40326 ssh2
Jun 15 22:23:17 15216 sshd[6666]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=211.149.216.91 user=root
Jun 15 22:23:19 15216 sshd[6666]: Failed password for root from 211.149.216.91 port 33752 ssh2
Jun 15 22:32:20 15216 sshd[8263]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=211.149.216.91 user=root
show less
Blocked by UFW on hk [2222/tcp]
Source port: 46676
TTL: 48
Packet length: 60
TOS: 0x00
This report ...
show moreBlocked by UFW on hk [2222/tcp]
Source port: 46676
TTL: 48
Packet length: 60
TOS: 0x00
This report was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
Anonymous
2026-06-15T23:51:01.287931+00:00 de-fra2-dns3 sshd[1959887]: Invalid user user123 from 211.149.216.9 ...
show more2026-06-15T23:51:01.287931+00:00 de-fra2-dns3 sshd[1959887]: Invalid user user123 from 211.149.216.91 port 37666
2026-06-16T00:04:46.442528+00:00 de-fra2-dns3 sshd[1960310]: Invalid user lc from 211.149.216.91 port 48512
2026-06-16T00:10:42.868822+00:00 de-fra2-dns3 sshd[1961047]: Invalid user user from 211.149.216.91 port 33216
...
show less
2026-06-16T06:33:13.751822+08:00 [HOSTNAME] sshd[94999]: Invalid user leon from 211.149.216.91 port ...
show more2026-06-16T06:33:13.751822+08:00 [HOSTNAME] sshd[94999]: Invalid user leon from 211.149.216.91 port 33260
2026-06-16T06:33:13.754528+08:00 [HOSTNAME] sshd[94999]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=211.149.216.91
2026-06-16T06:33:16.005687+08:00 [HOSTNAME] sshd[94999]: Failed password for invalid user leon from 211.149.216.91 port 33260 ssh2
2026-06-16T06:34:32.652232+08:00 [HOSTNAME] sshd[95005]: Invalid user admin from 211.149.216.91 port 47696
show less
2026-06-15T21:30:16.528685+00:00 cap.updn.io sshd[3102123]: Failed password for invalid user hotline ...
show more2026-06-15T21:30:16.528685+00:00 cap.updn.io sshd[3102123]: Failed password for invalid user hotline from 211.149.216.91 port 35156 ssh2
2026-06-15T21:36:25.297564+00:00 cap.updn.io sshd[3115611]: Invalid user certificates from 211.149.216.91 port 60146
2026-06-15T21:36:25.301083+00:00 cap.updn.io sshd[3115611]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=211.149.216.91
2026-06-15T21:36:27.025846+00:00 cap.updn.io sshd[3115611]: Failed password for invalid user certificates from 211.149.216.91 port 60146 ssh2
2026-06-15T21:39:34.711743+00:00 cap.updn.io sshd[3122191]: Invalid user aud from 211.149.216.91 port 36838
...
show less
Brute-Force
SSH
Showing 1 to
15
of 117 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ