This IP address has been reported a total of
221
times from
166 distinct
sources.
59.38.131.149 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Honeypot [fra-de-honeypot]: Unauthorized connection attempt detected on 22/SSH
Reported by DisPaisy ...
show moreHoneypot [fra-de-honeypot]: Unauthorized connection attempt detected on 22/SSH
Reported by DisPaisy Enterprises (dispaisy.systems) using: https://github.com/sefinek/T-Pot-To-AbuseIPDB
show less
2026-05-31T01:51:08.673839+02:00 mail.srvfarm.net sshd-session[1248039]: Invalid user adminsys from ...
show more2026-05-31T01:51:08.673839+02:00 mail.srvfarm.net sshd-session[1248039]: Invalid user adminsys from 59.38.131.149 port 35558
2026-05-31T01:51:08.924826+02:00 mail.srvfarm.net sshd-session[1248039]: Disconnected from invalid user adminsys 59.38.131.149 port 35558 [preauth]
2026-05-31T01:54:40.069801+02:00 mail.srvfarm.net sshd-session[1249932]: Invalid user raj from 59.38.131.149 port 39700
2026-05-31T01:54:40.292095+02:00 mail.srvfarm.net sshd-session[1249932]: Disconnected from invalid user raj 59.38.131.149 port 39700 [preauth]
2026-05-31T01:58:16.118595+02:00 mail.srvfarm.net sshd-session[1252354]: Invalid user steam from 59.38.131.149 port 51466
show less
May 31 06:16:48 rapi sshd[2950992]: Invalid user xmr from 59.38.131.149 port 50778
May 31 06:16:48 r ...
show moreMay 31 06:16:48 rapi sshd[2950992]: Invalid user xmr from 59.38.131.149 port 50778
May 31 06:16:48 rapi sshd[2950992]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=59.38.131.149
May 31 06:16:50 rapi sshd[2950992]: Failed password for invalid user xmr from 59.38.131.149 port 50778 ssh2
May 31 06:16:52 rapi sshd[2950992]: Disconnected from invalid user xmr 59.38.131.149 port 50778 [preauth]
show less
May 31 01:16:31 centrum sshd-session[7011]: Invalid user xmr from 59.38.131.149 port 48738
May 31 01 ...
show moreMay 31 01:16:31 centrum sshd-session[7011]: Invalid user xmr from 59.38.131.149 port 48738
May 31 01:16:32 centrum sshd-session[7011]: Disconnected from invalid user xmr 59.38.131.149 port 48738 [preauth]
...
show less
2026-05-30T11:40:13.564409-06:00 oracle7 sshd[2480417]: Invalid user user1 from 59.38.131.149 port 5 ...
show more2026-05-30T11:40:13.564409-06:00 oracle7 sshd[2480417]: Invalid user user1 from 59.38.131.149 port 56326
2026-05-30T11:54:04.625382-06:00 oracle7 sshd[2489790]: Invalid user geoserver from 59.38.131.149 port 55502
2026-05-30T11:57:08.697037-06:00 oracle7 sshd[2491792]: Invalid user sms from 59.38.131.149 port 42796
...
show less
2026-05-30T19:04:00.152300+02:00 ubuntu-iqw sshd[2642526]: Invalid user smp from 59.38.131.149 port ...
show more2026-05-30T19:04:00.152300+02:00 ubuntu-iqw sshd[2642526]: Invalid user smp from 59.38.131.149 port 39684
2026-05-30T19:04:00.362423+02:00 ubuntu-iqw sshd[2642526]: Disconnected from invalid user smp 59.38.131.149 port 39684 [preauth]
2026-05-30T19:13:36.874056+02:00 ubuntu-iqw sshd[2651527]: Disconnected from authenticating user root 59.38.131.149 port 42536 [preauth]
...
show less
SSH Brute force: 2 attempts were recorded from 59.38.131.149
2026-05-30T14:32:16+02:00 Disconnected ...
show moreSSH Brute force: 2 attempts were recorded from 59.38.131.149
2026-05-30T14:32:16+02:00 Disconnected from authenticating user root 59.38.131.149 port 36286 [preauth]
2026-05-30T14:46:53+02:00 Disconnected from authenticating user root 59.38.131.149 port 59928 [preauth]
show less
Brute-Force
SSH
Anonymous
sshd: Invalid user rahul from 59.38.131.149 port 34528
sshd: Invalid user ubuntu from 59.38.131.149 ...
show moresshd: Invalid user rahul from 59.38.131.149 port 34528
sshd: Invalid user ubuntu from 59.38.131.149 port 57490
show less