This IP address has been reported a total of
55
times from
25 distinct
sources.
216.48.191.19 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
Blocked by UFW (TCP on 2022)
Source port: 54270
TTL: 230
Packet length: 40
TOS: 0x14
This report (f ...
show moreBlocked by UFW (TCP on 2022)
Source port: 54270
TTL: 230
Packet length: 40
TOS: 0x14
This report (for 216.48.191.19) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Blocked by UFW on hk [1048/tcp]
Source port: 51908
TTL: 239
Packet length: 40
TOS: 0x00
This report ...
show moreBlocked by UFW on hk [1048/tcp]
Source port: 51908
TTL: 239
Packet length: 40
TOS: 0x00
This report was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
This IP address carried out 45 port scanning attempts on 29-05-2026. For more information or to repo ...
show moreThis IP address carried out 45 port scanning attempts on 29-05-2026. For more information or to report interesting / incorrect findings, give me a shoutout @parthmaniar on Twitter.
show less
2026-05-29T09:29:49.618691+00:00 edge-con-bom01.int.pdx.net.uk sshd[1704103]: Failed password for ro ...
show more2026-05-29T09:29:49.618691+00:00 edge-con-bom01.int.pdx.net.uk sshd[1704103]: Failed password for root from 216.48.191.19 port 20646 ssh2
2026-05-29T09:32:04.675938+00:00 edge-con-bom01.int.pdx.net.uk sshd[1704292]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=216.48.191.19 user=root
2026-05-29T09:32:07.304373+00:00 edge-con-bom01.int.pdx.net.uk sshd[1704292]: Failed password for root from 216.48.191.19 port 40716 ssh2
...
show less
IN04-DRDP-RYZ-STOR: Blocked by Fail2Ban for SSH Brute Force from 216.48.191.19 at 2026-05-29 05:27:5 ...
show moreIN04-DRDP-RYZ-STOR: Blocked by Fail2Ban for SSH Brute Force from 216.48.191.19 at 2026-05-29 05:27:55 EDT
show less
2026-05-29T09:23:28.880461+00:00 ktj-nc sshd[181324]: Connection closed by authenticating user root ...
show more2026-05-29T09:23:28.880461+00:00 ktj-nc sshd[181324]: Connection closed by authenticating user root 216.48.191.19 port 51888 [preauth]
2026-05-29T09:25:35.836108+00:00 ktj-nc sshd[181343]: Connection closed by authenticating user root 216.48.191.19 port 31820 [preauth]
...
show less
Brute-Force
SSH
Anonymous
216.48.191.19 (IN/India/e2e-108-19.ssdcloudindia.net), 5 distributed sshd attacks on account [REDACT ...
show more216.48.191.19 (IN/India/e2e-108-19.ssdcloudindia.net), 5 distributed sshd attacks on account [REDACTED] in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_DISTATTACK; Logs: May 29 05:23:30 sshd[30857]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=216.48.191.19 user=[USERNAME]
show less
This IP address carried out 2 port scanning attempts on 28-05-2026. For more information or to repor ...
show moreThis IP address carried out 2 port scanning attempts on 28-05-2026. For more information or to report interesting / incorrect findings, give me a shoutout @parthmaniar on Twitter.
show less