This IP address has been reported a total of
915
times from
461 distinct
sources.
58.220.39.200 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
2026-05-25T02:49:24.447476+02:00 hera sshd[2658703]: Failed password for invalid user hacker from 58 ...
show more2026-05-25T02:49:24.447476+02:00 hera sshd[2658703]: Failed password for invalid user hacker from 58.220.39.200 port 34786 ssh2
2026-05-25T02:53:32.672374+02:00 hera sshd[2659482]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=58.220.39.200 user=root
2026-05-25T02:53:34.969663+02:00 hera sshd[2659482]: Failed password for root from 58.220.39.200 port 38400 ssh2
2026-05-25T02:57:43.099143+02:00 hera sshd[2660284]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=58.220.39.200 user=root
2026-05-25T02:57:44.855074+02:00 hera sshd[2660284]: Failed password for root from 58.220.39.200 port 47596 ssh2
...
show less
May 25 02:48:21 mcb-it sshd[2705345]: Failed password for invalid user hacker from 58.220.39.200 por ...
show moreMay 25 02:48:21 mcb-it sshd[2705345]: Failed password for invalid user hacker from 58.220.39.200 port 60294 ssh2
May 25 02:52:30 mcb-it sshd[2705558]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=58.220.39.200 user=root
May 25 02:52:32 mcb-it sshd[2705558]: Failed password for root from 58.220.39.200 port 35940 ssh2
May 25 02:56:36 mcb-it sshd[2705742]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=58.220.39.200 user=root
May 25 02:56:39 mcb-it sshd[2705742]: Failed password for root from 58.220.39.200 port 51060 ssh2
...
show less
(sshd) Failed SSH login from 58.220.39.200 (CN/China/-): 5 in the last 3600 secs; Ports: *; Directio ...
show more(sshd) Failed SSH login from 58.220.39.200 (CN/China/-): 5 in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_SSHD; Logs: May 24 19:41:59 15299 sshd[21742]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=58.220.39.200 user=root
May 24 19:42:02 15299 sshd[21742]: Failed password for root from 58.220.39.200 port 60082 ssh2
May 24 19:50:03 15299 sshd[23853]: Invalid user hacker from 58.220.39.200 port 58116
May 24 19:50:05 15299 sshd[23853]: Failed password for invalid user hacker from 58.220.39.200 port 58116 ssh2
May 24 19:54:12 15299 sshd[24853]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=58.220.39.200 user=root
show less
Brute-Force
SSH
Anonymous
2026-05-25T00:50:33.161164+00:00 cheese sshd[3608708]: Invalid user hacker from 58.220.39.200 port 3 ...
show more2026-05-25T00:50:33.161164+00:00 cheese sshd[3608708]: Invalid user hacker from 58.220.39.200 port 38732
...
show less
Brute-Force
SSH
Anonymous
SSH brute force attempt. User: root, Pass: [REDACTED]
Cowrie Honeypot: 5 unauthorised SSH/Telnet login attempts between 2026-05-24T23:39:17Z and 2026-05-2 ...
show moreCowrie Honeypot: 5 unauthorised SSH/Telnet login attempts between 2026-05-24T23:39:17Z and 2026-05-25T00:40:04Z
show less
2026-05-24T20:31:37.682068-04:00 debian sshd[3472062]: Failed password for root from 58.220.39.200 p ...
show more2026-05-24T20:31:37.682068-04:00 debian sshd[3472062]: Failed password for root from 58.220.39.200 port 38796 ssh2
2026-05-24T20:34:46.432375-04:00 debian sshd[3475175]: Invalid user a from 58.220.39.200 port 44444
2026-05-24T20:34:46.435737-04:00 debian sshd[3475175]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=58.220.39.200
2026-05-24T20:34:48.487438-04:00 debian sshd[3475175]: Failed password for invalid user a from 58.220.39.200 port 44444 ssh2
2026-05-24T20:35:13.041748-04:00 debian sshd[3475585]: Invalid user a from 58.220.39.200 port 39608
...
show less
2026-05-24T20:15:47.705711-04:00 debian sshd[3456545]: Failed password for root from 58.220.39.200 p ...
show more2026-05-24T20:15:47.705711-04:00 debian sshd[3456545]: Failed password for root from 58.220.39.200 port 56060 ssh2
2026-05-24T20:19:00.498403-04:00 debian sshd[3459493]: Invalid user odoo17 from 58.220.39.200 port 60728
2026-05-24T20:19:00.502569-04:00 debian sshd[3459493]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=58.220.39.200
2026-05-24T20:19:03.019826-04:00 debian sshd[3459493]: Failed password for invalid user odoo17 from 58.220.39.200 port 60728 ssh2
2026-05-24T20:19:36.260782-04:00 debian sshd[3460075]: Invalid user odoo17 from 58.220.39.200 port 53662
...
show less
SSH Brute force: 8 attempts were recorded from 58.220.39.200
2026-05-25T01:36:25+02:00 Disconnected ...
show moreSSH Brute force: 8 attempts were recorded from 58.220.39.200
2026-05-25T01:36:25+02:00 Disconnected from authenticating user root 58.220.39.200 port 44664 [preauth]
2026-05-25T01:46:37+02:00 Invalid user deploy from 58.220.39.200 port 55108
2026-05-25T01:50:35+02:00 Invalid user santana from 58.220.39.200 port 50900
2026-05-25T01:54:36+02:00 Invalid user curl from 58.220.39.200 port 49936
2026-05-25T01:58:20+02:00 Invalid user user1 from 58.220.39.200 port 55942
2026-05-25T02:02:07+02:00 Invalid user cloud from 58.220.39.200 port 45320
2026-05-25T02:05:57+02:00 Invalid user alfresco from 58.220.39.200 port 51216
2026-05-25T02:09:47+02:00 Disconnected from authenticating user root 58.220.39.200 port 42482 [preauth]
show less
2026-05-24T19:59:46.871925-04:00 debian sshd[3441373]: Failed password for invalid user user1 from 5 ...
show more2026-05-24T19:59:46.871925-04:00 debian sshd[3441373]: Failed password for invalid user user1 from 58.220.39.200 port 52778 ssh2
2026-05-24T20:00:21.687289-04:00 debian sshd[3441874]: Invalid user user1 from 58.220.39.200 port 49462
2026-05-24T20:00:21.690557-04:00 debian sshd[3441874]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=58.220.39.200
2026-05-24T20:00:23.585231-04:00 debian sshd[3441874]: Failed password for invalid user user1 from 58.220.39.200 port 49462 ssh2
2026-05-24T20:03:27.408717-04:00 debian sshd[3444677]: Invalid user cloud from 58.220.39.200 port 56306
...
show less
2026-05-25T01:47:06.148478+02:00 router01.properson.de sshd[2581388]: Disconnected from invalid user ...
show more2026-05-25T01:47:06.148478+02:00 router01.properson.de sshd[2581388]: Disconnected from invalid user deploy 58.220.39.200 port 45090 [preauth]
2026-05-25T01:51:01.387017+02:00 router01.properson.de sshd[2581857]: Invalid user santana from 58.220.39.200 port 47460
2026-05-25T01:51:01.609093+02:00 router01.properson.de sshd[2581857]: Disconnected from invalid user santana 58.220.39.200 port 47460 [preauth]
2026-05-25T01:55:03.436550+02:00 router01.properson.de sshd[2582436]: Invalid user curl from 58.220.39.200 port 42442
2026-05-25T01:55:03.650252+02:00 router01.properson.de sshd[2582436]: Disconnected from invalid user curl 58.220.39.200 port 42442 [preauth]
show less
2026-05-24T23:48:58.559720 upload sshd[1066199]: Invalid user deploy from 58.220.39.200 port 53302
2 ...
show more2026-05-24T23:48:58.559720 upload sshd[1066199]: Invalid user deploy from 58.220.39.200 port 53302
2026-05-24T23:48:58.561725 upload sshd[1066199]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=58.220.39.200
2026-05-24T23:49:00.362517 upload sshd[1066199]: Failed password for invalid user deploy from 58.220.39.200 port 53302 ssh2
...
show less
2026-05-25T06:28:18.355251+08:00 self-dedi-wyse-5070-tna sshd-session[2217707]: Invalid user julian ...
show more2026-05-25T06:28:18.355251+08:00 self-dedi-wyse-5070-tna sshd-session[2217707]: Invalid user julian from 58.220.39.200 port 49822
2026-05-25T06:32:23.009295+08:00 self-dedi-wyse-5070-tna sshd-session[2218083]: Invalid user kobo from 58.220.39.200 port 60292
2026-05-25T06:36:17.984940+08:00 self-dedi-wyse-5070-tna sshd-session[2218432]: Invalid user minecraft from 58.220.39.200 port 51194
...
show less
Brute-Force
SSH
Showing 886 to
900
of 915 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ