This IP address has been reported a total of
125
times from
87 distinct
sources.
45.70.216.232 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
This IP address carried out 212 port scanning attempts on 23-05-2026. For more information or to rep ...
show moreThis IP address carried out 212 port scanning attempts on 23-05-2026. For more information or to report interesting / incorrect findings, give me a shoutout @parthmaniar on Twitter.
show less
This IP address carried out 34 SSH credential attack (attempts) on 23-05-2026. For more information ...
show moreThis IP address carried out 34 SSH credential attack (attempts) on 23-05-2026. For more information or to report interesting / incorrect findings, give me a shoutout @parthmaniar on Twitter.
show less
(sshd) Failed SSH login from 45.70.216.232 (BR/Brazil/-): 5 in the last 3600 secs; Ports: *; Directi ...
show more(sshd) Failed SSH login from 45.70.216.232 (BR/Brazil/-): 5 in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_SSHD; Logs: May 23 16:53:08 14279 sshd[7426]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=45.70.216.232 user=root
May 23 16:53:11 14279 sshd[7426]: Failed password for root from 45.70.216.232 port 40293 ssh2
May 23 16:57:48 14279 sshd[8107]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=45.70.216.232 user=root
May 23 16:57:50 14279 sshd[8107]: Failed password for root from 45.70.216.232 port 40093 ssh2
May 23 17:01:48 14279 sshd[8763]: Invalid user botuser from 45.70.216.232 port 39591
show less
Brute-Force
SSH
Anonymous
2026-05-23T23:52:16.474233v22019037947384217 sshd[16603]: Disconnected from 45.70.216.232 port 39528 ...
show more2026-05-23T23:52:16.474233v22019037947384217 sshd[16603]: Disconnected from 45.70.216.232 port 39528 [preauth]
2026-05-23T23:57:29.332417v22019037947384217 sshd[16634]: Disconnected from 45.70.216.232 port 39473 [preauth]
2026-05-24T00:01:28.639381v22019037947384217 sshd[16732]: Invalid user botuser from 45.70.216.232 port 39654
...
show less
2026-05-23T21:57:25.616667+02:00 host1 sshd[1955076]: Failed password for invalid user test from 45. ...
show more2026-05-23T21:57:25.616667+02:00 host1 sshd[1955076]: Failed password for invalid user test from 45.70.216.232 port 39648 ssh2
2026-05-23T21:57:23.908479+02:00 host1 sshd[1955076]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=45.70.216.232
2026-05-23T21:57:25.616667+02:00 host1 sshd[1955076]: Failed password for invalid user test from 45.70.216.232 port 39648 ssh2
2026-05-23T22:01:13.223427+02:00 host1 sshd[1956011]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=45.70.216.232 user=root
2026-05-23T22:01:15.508038+02:00 host1 sshd[1956011]: Failed password for root from 45.70.216.232 port 39888 ssh2
...
show less
2026-05-23T21:41:29.040542+02:00 gw-de40-01.guestgw.net sshd[2289263]: Disconnected from authenticat ...
show more2026-05-23T21:41:29.040542+02:00 gw-de40-01.guestgw.net sshd[2289263]: Disconnected from authenticating user root 45.70.216.232 port 39667 [preauth]
2026-05-23T21:45:25.461782+02:00 gw-de40-01.guestgw.net sshd[2290447]: Invalid user tmp from 45.70.216.232 port 39561
2026-05-23T21:45:25.718021+02:00 gw-de40-01.guestgw.net sshd[2290447]: Disconnected from invalid user tmp 45.70.216.232 port 39561 [preauth]
2026-05-23T21:49:25.934333+02:00 gw-de40-01.guestgw.net sshd[2291588]: Invalid user ubuntu from 45.70.216.232 port 40121
2026-05-23T21:49:26.147760+02:00 gw-de40-01.guestgw.net sshd[2291588]: Disconnected from invalid user ubuntu 45.70.216.232 port 40121 [preauth]
show less
45.70.216.232 (BR/Brazil/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; Por ...
show more45.70.216.232 (BR/Brazil/-), 5 distributed sshd attacks on account [root] in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_DISTATTACK; Logs: May 23 14:14:55 13860 sshd[20448]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=58.11.120.180 user=root
May 23 14:14:58 13860 sshd[20448]: Failed password for root from 58.11.120.180 port 50926 ssh2
May 23 14:28:46 13860 sshd[22053]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=45.70.216.232 user=root
May 23 14:28:47 13860 sshd[22053]: Failed password for root from 45.70.216.232 port 39405 ssh2
May 23 14:19:02 13860 sshd[20933]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=58.11.120.180 user=root
IP Addresses Blocked:
58.11.120.180 (TH/Thailand/ppp-58-11-120-180.revip2.asianet.co.th)
show less
Malicious activity detected from this IP during SSH attempts. VPN: No, Datacenter: No, Organization: ...
show moreMalicious activity detected from this IP during SSH attempts. VPN: No, Datacenter: No, Organization: AS267588 MaxWeb Telecom, Region: Pernambuco, Log: 2026-05-23T21:12:43.112440 02:00 Administracion sshd[609539]: Disconnected from invalid user ts3server 45.70.216.232 port 39600 [preauth], Abuse Score: 100, Total Reports: 109
show less
(sshd) Failed SSH login from 45.70.216.232 (BR/Brazil/-): 5 in the last 3600 secs; Ports: *; Directi ...
show more(sshd) Failed SSH login from 45.70.216.232 (BR/Brazil/-): 5 in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_SSHD; Logs: May 23 13:42:33 18125 sshd[27901]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=45.70.216.232 user=root
May 23 13:42:35 18125 sshd[27901]: Failed password for root from 45.70.216.232 port 39734 ssh2
May 23 13:48:36 18125 sshd[29026]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=45.70.216.232 user=root
May 23 13:48:38 18125 sshd[29026]: Failed password for root from 45.70.216.232 port 39350 ssh2
May 23 13:52:40 18125 sshd[29869]: Invalid user admin from 45.70.216.232 port 39394
show less
2026-05-23T18:40:34.969049235Z User root from 45.70.216.232 not allowed because not listed in AllowU ...
show more2026-05-23T18:40:34.969049235Z User root from 45.70.216.232 not allowed because not listed in AllowUsers
2026-05-23T18:40:35.364565604Z Disconnected from invalid user root 45.70.216.232 port 39655 [preauth]
2026-05-23T18:47:50.017780221Z User root from 45.70.216.232 not allowed because not listed in AllowUsers
...
show less