This IP address has been reported a total of
277
times from
102 distinct
sources.
59.97.138.72 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
2026-06-23T11:53:52.204048-03:00 vmi1230637 sshd[1854300]: Invalid user solr from 59.97.138.72 port ...
show more2026-06-23T11:53:52.204048-03:00 vmi1230637 sshd[1854300]: Invalid user solr from 59.97.138.72 port 51112
...
show less
Brute-Force
SSH
Anonymous
Jun 23 14:29:19 server21 sshd-session[5354]: User root from 59.97.138.72 not allowed because not lis ...
show moreJun 23 14:29:19 server21 sshd-session[5354]: User root from 59.97.138.72 not allowed because not listed in AllowUsers
Jun 23 14:29:45 server21 sshd-session[5363]: User root from 59.97.138.72 not allowed because not listed in AllowUsers
Jun 23 14:30:09 server21 sshd-session[5798]: User root from 59.97.138.72 not allowed because not listed in AllowUsers
Jun 23 14:30:35 server21 sshd-session[5816]: Invalid user bird from 59.97.138.72 port 37938
Jun 23 14:30:58 server21 sshd-session[5846]: Invalid user lim from 59.97.138.72 port 39400
...
show less
Jun 23 10:47:05 server0 sshd[1275369]: Invalid user magento from 59.97.138.72 port 33130
Jun 23 10:4 ...
show moreJun 23 10:47:05 server0 sshd[1275369]: Invalid user magento from 59.97.138.72 port 33130
Jun 23 10:47:26 server0 sshd[1275371]: Invalid user code87 from 59.97.138.72 port 50430
Jun 23 10:47:45 server0 sshd[1275373]: Invalid user zhy from 59.97.138.72 port 60676
...
show less
2026-06-22T04:45:28.889375+02:00 mainserver sshd[2581696]: Invalid user haproxy from 59.97.138.72 po ...
show more2026-06-22T04:45:28.889375+02:00 mainserver sshd[2581696]: Invalid user haproxy from 59.97.138.72 port 59960
2026-06-22T04:45:29.074208+02:00 mainserver sshd[2581696]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=59.97.138.72
2026-06-22T04:45:31.525926+02:00 mainserver sshd[2581696]: Failed password for invalid user haproxy from 59.97.138.72 port 59960 ssh2
2026-06-22T04:45:50.807551+02:00 mainserver sshd[2581932]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=59.97.138.72 user=root
2026-06-22T04:45:52.476576+02:00 mainserver sshd[2581932]: Failed password for root from 59.97.138.72 port 51344 ssh2
...
show less
Jun 18 19:30:30 vmi854568 sshd[1483183]: pam_unix(sshd:auth): authentication failure; logname= uid=0 ...
show moreJun 18 19:30:30 vmi854568 sshd[1483183]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=59.97.138.72 user=root
Jun 18 19:30:33 vmi854568 sshd[1483183]: Failed password for root from 59.97.138.72 port 49262 ssh2
Jun 18 19:30:51 vmi854568 sshd[1483610]: Invalid user ts from 59.97.138.72 port 52600
Jun 18 19:30:51 vmi854568 sshd[1483610]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=59.97.138.72
Jun 18 19:30:53 vmi854568 sshd[1483610]: Failed password for invalid user ts from 59.97.138.72 port 52600 ssh2
...
show less
Brute-Force
SSH
Anonymous
[email.tmg.gr] ssh-invalid-user: logs=/var/log/secure; samples=Jun 18 10:35:50 email sshd[12286]: Fa ...
show more[email.tmg.gr] ssh-invalid-user: logs=/var/log/secure; samples=Jun 18 10:35:50 email sshd[12286]: Failed password for root from 59.97.138.72 port 39628 ssh2 | Jun 18 10:36:04 email sshd[12292]: Invalid user zxin from 59.97.138.72 port 50972 | Jun 18 10:36:06 email sshd[12292]: Failed password for invalid user zxin from 59.97.138.72 port 50972 ssh2
show less
2026-06-18T08:36:12.736740+01:00 kakarott sshd[3300215]: Invalid user zxin from 59.97.138.72 port 37 ...
show more2026-06-18T08:36:12.736740+01:00 kakarott sshd[3300215]: Invalid user zxin from 59.97.138.72 port 37172
2026-06-18T08:36:47.820851+01:00 kakarott sshd[3300224]: Invalid user wuxingui from 59.97.138.72 port 47872
show less
2026-06-17T23:40:55.072103+03:00 ns1 sshd-session[1101362]: Connection closed by invalid user root 5 ...
show more2026-06-17T23:40:55.072103+03:00 ns1 sshd-session[1101362]: Connection closed by invalid user root 59.97.138.72 port 50902 [preauth]
2026-06-17T23:41:14.044235+03:00 ns1 sshd-session[1101405]: Invalid user vdo from 59.97.138.72 port 41698
2026-06-17T23:41:32.794664+03:00 ns1 sshd-session[1101409]: Invalid user jhadmin from 59.97.138.72 port 44590
2026-06-17T23:41:51.212127+03:00 ns1 sshd-session[1101411]: Invalid user perry from 59.97.138.72 port 51468
2026-06-17T23:42:11.791947+03:00 ns1 sshd-session[1101456]: Invalid user user2 from 59.97.138.72 port 41374
...
show less