This IP address has been reported a total of
49
times from
21 distinct
sources.
213.222.61.207 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
213.222.61.207 (BG/Bulgaria/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; ...
show more213.222.61.207 (BG/Bulgaria/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_DISTATTACK; Logs: Oct 31 05:15:01 14338 sshd[16912]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=213.222.61.207 user=root
Oct 31 05:15:03 14338 sshd[16912]: Failed password for root from 213.222.61.207 port 38928 ssh2
Oct 31 05:24:50 14338 sshd[17690]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=91.223.199.62 user=root
Oct 31 05:10:41 14338 sshd[16666]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=213.222.61.205 user=root
Oct 31 05:10:43 14338 sshd[16666]: Failed password for root from 213.222.61.205 port 54404 ssh2
IP Addresses Blocked:
show less
213.222.61.207 (BG/Bulgaria/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; ...
show more213.222.61.207 (BG/Bulgaria/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_DISTATTACK; Logs: Oct 31 05:10:43 12558 sshd[19641]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=213.222.61.207 user=root
Oct 31 05:10:45 12558 sshd[19641]: Failed password for root from 213.222.61.207 port 56938 ssh2
Oct 31 05:13:36 12558 sshd[19817]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=213.222.61.197 user=root
Oct 31 05:13:38 12558 sshd[19817]: Failed password for root from 213.222.61.197 port 36126 ssh2
Oct 31 05:22:12 12558 sshd[20345]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=213.222.61.195 user=root
IP Addresses Blocked:
show less
Cowrie Honeypot: 10 unauthorised SSH/Telnet login attempts between 2023-10-31T09:02:22Z and 2023-10- ...
show moreCowrie Honeypot: 10 unauthorised SSH/Telnet login attempts between 2023-10-31T09:02:22Z and 2023-10-31T09:21:43Z
show less
213.222.61.207 (BG/Bulgaria/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; ...
show more213.222.61.207 (BG/Bulgaria/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_DISTATTACK; Logs: Oct 31 01:24:30 14506 sshd[28020]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=213.222.61.207 user=root
Oct 31 01:24:32 14506 sshd[28020]: Failed password for root from 213.222.61.207 port 43536 ssh2
Oct 31 01:30:08 14506 sshd[29188]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=213.222.61.198 user=root
Oct 31 01:05:56 14506 sshd[24536]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=213.222.61.199 user=root
Oct 31 01:05:58 14506 sshd[24536]: Failed password for root from 213.222.61.199 port 46232 ssh2
IP Addresses Blocked:
show less
213.222.61.207 (BG/Bulgaria/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; ...
show more213.222.61.207 (BG/Bulgaria/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_DISTATTACK; Logs: Oct 30 20:17:39 13437 sshd[12888]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=213.222.61.199 user=root
Oct 30 20:17:41 13437 sshd[12888]: Failed password for root from 213.222.61.199 port 55694 ssh2
Oct 30 20:30:11 13437 sshd[16076]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=213.222.61.207 user=root
Oct 30 20:30:14 13437 sshd[16076]: Failed password for root from 213.222.61.207 port 50130 ssh2
Oct 30 20:16:46 13437 sshd[12617]: Failed password for root from 170.106.81.174 port 43336 ssh2
IP Addresses Blocked:
213.222.61.199 (BG/Bulgaria/-)
show less
SSH Brute force: 1 attempts were recorded from 213.222.61.207
2023-10-30T18:55:48+01:00 User root fr ...
show moreSSH Brute force: 1 attempts were recorded from 213.222.61.207
2023-10-30T18:55:48+01:00 User root from 213.222.61.207 not allowed because not listed in AllowUsers
show less
Oct 30 16:58:16 server1 sshd[3362966]: Failed password for invalid user admin from 213.222.61.207 po ...
show moreOct 30 16:58:16 server1 sshd[3362966]: Failed password for invalid user admin from 213.222.61.207 port 54958 ssh2
Oct 30 17:34:20 server1 sshd[3369883]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=213.222.61.207 user=root
Oct 30 17:34:23 server1 sshd[3369883]: Failed password for root from 213.222.61.207 port 43366 ssh2
...
show less
Oct 30 13:49:11 Server sshd[1520178]: Failed password for root from 213.222.61.207 port 43828 ssh2
O ...
show moreOct 30 13:49:11 Server sshd[1520178]: Failed password for root from 213.222.61.207 port 43828 ssh2
Oct 30 13:53:38 Server sshd[1522630]: Invalid user kafka from 213.222.61.207 port 37822
Oct 30 13:53:38 Server sshd[1522630]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=213.222.61.207
Oct 30 13:53:40 Server sshd[1522630]: Failed password for invalid user kafka from 213.222.61.207 port 37822 ssh2
Oct 30 13:55:09 Server sshd[1523485]: Invalid user test from 213.222.61.207 port 56388
...
show less
Brute-Force
SSH
Showing 1 to
15
of 49 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ