This IP address has been reported a total of
30
times from
28 distinct
sources.
5.253.38.130 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
SSH brute-force / unauthorized login attempts observed against sovereign infrastructure.
Hits: 2. Co ...
show moreSSH brute-force / unauthorized login attempts observed against sovereign infrastructure.
Hits: 2. Confidence: 75.
Recent sample:
2026-06-26T02:35:04.630Z:
2026-06-26T02:35:03.410Z:
show less
Jun 26 03:26:33 fastdl sshd[2879295]: Failed password for root from 5.253.38.130 port 51866 ssh2
Jun ...
show moreJun 26 03:26:33 fastdl sshd[2879295]: Failed password for root from 5.253.38.130 port 51866 ssh2
Jun 26 03:41:46 fastdl sshd[2896141]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=5.253.38.130 user=root
Jun 26 03:41:49 fastdl sshd[2896141]: Failed password for root from 5.253.38.130 port 53968 ssh2
Jun 26 03:41:58 fastdl sshd[2896392]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=5.253.38.130 user=root
Jun 26 03:42:00 fastdl sshd[2896392]: Failed password for root from 5.253.38.130 port 54016 ssh2
Jun 26 03:42:12 fastdl sshd[2896532]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=5.253.38.130 user=root
Jun 26 03:42:14 fastdl sshd[2896532]: Failed password for root from 5.253.38.130 port 54048 ssh2
...
show less
2026-06-25T16:27:21.122788-07:00 onion sshd-session[295368]: Invalid user user from 5.253.38.130 por ...
show more2026-06-25T16:27:21.122788-07:00 onion sshd-session[295368]: Invalid user user from 5.253.38.130 port 42274
2026-06-25T16:27:32.246676-07:00 onion sshd-session[295370]: Invalid user user from 5.253.38.130 port 42304
2026-06-25T16:27:35.276627-07:00 onion sshd-session[295372]: Invalid user user from 5.253.38.130 port 42332
2026-06-25T16:27:45.419887-07:00 onion sshd-session[295374]: Invalid user user from 5.253.38.130 port 42340
2026-06-25T16:27:51.594519-07:00 onion sshd-session[295379]: Invalid user user from 5.253.38.130 port 42358
...
show less
2026-06-25T23:03:48.101041+02:00 ct1.cipherdns.tld sshd-session[1800405]: Failed password for root f ...
show more2026-06-25T23:03:48.101041+02:00 ct1.cipherdns.tld sshd-session[1800405]: Failed password for root from 5.253.38.130 port 52326 ssh2
2026-06-25T23:06:12.402138+02:00 ct1.cipherdns.tld sshd-session[1800492]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=5.253.38.130 user=root
2026-06-25T23:06:14.851989+02:00 ct1.cipherdns.tld sshd-session[1800492]: Failed password for root from 5.253.38.130 port 52692 ssh2
...
show less
Jun 25 17:08:45 proxy-03 sshd[2278981]: Failed password for root from 5.253.38.130 port 55638 ssh2
J ...
show moreJun 25 17:08:45 proxy-03 sshd[2278981]: Failed password for root from 5.253.38.130 port 55638 ssh2
Jun 25 17:09:08 proxy-03 sshd[2279413]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=5.253.38.130 user=root
Jun 25 17:09:09 proxy-03 sshd[2279413]: Failed password for root from 5.253.38.130 port 55692 ssh2
Jun 25 17:09:53 proxy-03 sshd[2280015]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=5.253.38.130 user=root
Jun 25 17:09:55 proxy-03 sshd[2280015]: Failed password for root from 5.253.38.130 port 55760 ssh2
...
show less
Brute-Force
SSH
Anonymous
Jun 25 16:26:24 f2b auth.info sshd[40251]: Failed password for root from 5.253.38.130 port 59484 ssh ...
show moreJun 25 16:26:24 f2b auth.info sshd[40251]: Failed password for root from 5.253.38.130 port 59484 ssh2
Jun 25 16:26:31 f2b auth.info sshd[40253]: Failed password for root from 5.253.38.130 port 59550 ssh2
Jun 25 16:26:37 f2b auth.info sshd[40255]: Failed password for root from 5.253.38.130 port 59564 ssh2
...
show less
Jun 25 10:45:24 LuxCars sshd[276444]: Failed password for root from 5.253.38.130 port 48060 ssh2
Jun ...
show moreJun 25 10:45:24 LuxCars sshd[276444]: Failed password for root from 5.253.38.130 port 48060 ssh2
Jun 25 10:45:25 LuxCars sshd[276446]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=5.253.38.130 user=root
Jun 25 10:45:27 LuxCars sshd[276446]: Failed password for root from 5.253.38.130 port 48072 ssh2
Jun 25 10:45:29 LuxCars sshd[276448]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=5.253.38.130 user=root
Jun 25 10:45:30 LuxCars sshd[276448]: Failed password for root from 5.253.38.130 port 48106 ssh2
Jun 25 10:45:32 LuxCars sshd[276450]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=5.253.38.130 user=root
Jun 25 10:45:33 LuxCars sshd[276450]: Failed password for root from 5.253.38.130 port 48128 ssh2
...
show less
SSH Brute force: 404 attempts were recorded from 5.253.38.130
2026-06-25T07:47:14+02:00 Connection c ...
show moreSSH Brute force: 404 attempts were recorded from 5.253.38.130
2026-06-25T07:47:14+02:00 Connection closed by authenticating user root 5.253.38.130 port 47906 [preauth]
2026-06-25T07:47:15+02:00 Connection closed by authenticating user root 5.253.38.130 port 47914 [preauth]
2026-06-25T07:47:16+02:00 Connection closed by authenticating user root 5.253.38.130 port 47920 [preauth]
2026-06-25T07:47:17+02:00 Connection closed by authenticating user root 5.253.38.130 port 47930 [preauth]
2026-06-25T07:47:17+02:00 Connection closed by authenticating user root 5.253.38.130 port 47948 [preauth]
2026-06-25T07:47:18+02:00 Connection closed by authenticating user root 5.253.38.130 port 47956 [preauth]
2026-06-25T07:47:19+02:00 Connection closed by authenticating user root 5.253.38.130 port 47966 [preauth]
2026-06-25T07:47:20+02:00 Connection closed by authenticating user root 5.253.38.130 port 47972
show less
Brute-Force
SSH
Showing 1 to
15
of 30 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ