This IP address has been reported a total of
59
times from
50 distinct
sources.
38.180.157.25 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
2026-06-29T21:40:57.053468+02:00 router03.eag-fpi.de sshd-session[1197484]: Disconnected from authen ...
show more2026-06-29T21:40:57.053468+02:00 router03.eag-fpi.de sshd-session[1197484]: Disconnected from authenticating user root 38.180.157.25 port 39530 [preauth]
2026-06-29T21:47:04.720634+02:00 router03.eag-fpi.de sshd-session[1199170]: Disconnected from authenticating user root 38.180.157.25 port 32970 [preauth]
2026-06-29T21:48:48.650227+02:00 router03.eag-fpi.de sshd-session[1199545]: Disconnected from authenticating user root 38.180.157.25 port 50770 [preauth]
2026-06-29T21:50:36.819403+02:00 router03.eag-fpi.de sshd-session[1200091]: Disconnected from authenticating user root 38.180.157.25 port 45908 [preauth]
2026-06-29T21:52:22.133352+02:00 router03.eag-fpi.de sshd-session[1200569]: Disconnected from authenticating user root 38.180.157.25 port 43704 [preauth]
show less
2026-06-29T20:25:04.790284+01:00 debianserver sshd-session[98256]: Invalid user ftp from 38.180.157. ...
show more2026-06-29T20:25:04.790284+01:00 debianserver sshd-session[98256]: Invalid user ftp from 38.180.157.25 port 55594
2026-06-29T20:25:04.800773+01:00 debianserver sshd-session[98256]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=38.180.157.25
2026-06-29T20:25:07.044832+01:00 debianserver sshd-session[98256]: Failed password for invalid user ftp from 38.180.157.25 port 55594 ssh2
...
show less
(sshd) Failed SSH login from 38.180.157.25 (NL/The Netherlands/-): 5 in the last 3600 secs; Ports: * ...
show more(sshd) Failed SSH login from 38.180.157.25 (NL/The Netherlands/-): 5 in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_SSHD; Logs: Jun 29 13:52:04 15219 sshd[14852]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=38.180.157.25 user=root
Jun 29 13:52:06 15219 sshd[14852]: Failed password for root from 38.180.157.25 port 37600 ssh2
Jun 29 14:03:39 15219 sshd[21374]: Invalid user test from 38.180.157.25 port 50314
Jun 29 14:03:41 15219 sshd[21374]: Failed password for invalid user test from 38.180.157.25 port 50314 ssh2
Jun 29 14:05:44 15219 sshd[22505]: Invalid user ansible from 38.180.157.25 port 60034
show less
Jun 29 12:03:34 spidey sshd-session[2842423]: pam_unix(sshd:auth): authentication failure; logname= ...
show moreJun 29 12:03:34 spidey sshd-session[2842423]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=38.180.157.25
Jun 29 12:03:36 spidey sshd-session[2842423]: Failed password for invalid user test from 38.180.157.25 port 34818 ssh2
Jun 29 12:05:39 spidey sshd-session[2842552]: Invalid user ansible from 38.180.157.25 port 48686
...
show less
2026-06-29T20:04:59.747022+01:00 debianserver sshd-session[97899]: Invalid user test from 38.180.157 ...
show more2026-06-29T20:04:59.747022+01:00 debianserver sshd-session[97899]: Invalid user test from 38.180.157.25 port 56818
2026-06-29T20:04:59.760584+01:00 debianserver sshd-session[97899]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=38.180.157.25
2026-06-29T20:05:01.276657+01:00 debianserver sshd-session[97899]: Failed password for invalid user test from 38.180.157.25 port 56818 ssh2
...
show less
2026-06-29T18:41:34.174162+00:00 sg-jumphost-server sshd[1739368]: Invalid user admin from 38.180.15 ...
show more2026-06-29T18:41:34.174162+00:00 sg-jumphost-server sshd[1739368]: Invalid user admin from 38.180.157.25 port 59802
2026-06-29T18:41:34.484361+00:00 sg-jumphost-server sshd[1739368]: Disconnected from invalid user admin 38.180.157.25 port 59802 [preauth]
...
show less
2026-06-29T18:19:27.973256+00:00 sg-jumphost-server sshd[1738691]: Disconnected from authenticating ...
show more2026-06-29T18:19:27.973256+00:00 sg-jumphost-server sshd[1738691]: Disconnected from authenticating user root 38.180.157.25 port 41390 [preauth]
2026-06-29T18:26:22.060844+00:00 sg-jumphost-server sshd[1738889]: Invalid user admin from 38.180.157.25 port 39132
2026-06-29T18:26:22.365281+00:00 sg-jumphost-server sshd[1738889]: Disconnected from invalid user admin 38.180.157.25 port 39132 [preauth]
...
show less
2026-06-29T20:26:15.191572milloweb sshd[2202]: Invalid user admin from 38.180.157.25 port 51142
2026 ...
show more2026-06-29T20:26:15.191572milloweb sshd[2202]: Invalid user admin from 38.180.157.25 port 51142
2026-06-29T20:26:15.195363milloweb sshd[2202]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=38.180.157.25
2026-06-29T20:26:17.205105milloweb sshd[2202]: Failed password for invalid user admin from 38.180.157.25 port 51142 ssh2
...
show less
Jun 29 17:44:17 antti-vps2 sshd[2621873]: Invalid user test from 38.180.157.25 port 48200
Jun 29 17: ...
show moreJun 29 17:44:17 antti-vps2 sshd[2621873]: Invalid user test from 38.180.157.25 port 48200
Jun 29 17:46:22 antti-vps2 sshd[2622080]: Connection from 38.180.157.25 port 41898 on 10.0.0.124 port 22 rdomain ""
Jun 29 17:46:24 antti-vps2 sshd[2622080]: User root from 38.180.157.25 not allowed because none of user's groups are listed in AllowGroups
Jun 29 17:48:52 antti-vps2 sshd[2622324]: Connection from 38.180.157.25 port 54330 on 10.0.0.124 port 22 rdomain ""
Jun 29 17:48:52 antti-vps2 sshd[2622324]: User ubuntu not allowed because account is locked
...
show less