This IP address has been reported a total of
23
times from
15 distinct
sources.
61.159.197.216 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
2025-05-10T06:34:16.652770+02:00 mail sshd-session[126714]: Failed password for root from 61.159.197 ...
show more2025-05-10T06:34:16.652770+02:00 mail sshd-session[126714]: Failed password for root from 61.159.197.216 port 34622 ssh2
2025-05-10T06:34:20.146671+02:00 mail sshd-session[126724]: Failed password for root from 61.159.197.216 port 56886 ssh2
2025-05-10T06:34:24.586998+02:00 mail sshd-session[126726]: Failed password for root from 61.159.197.216 port 56890 ssh2
2025-05-10T06:34:31.517174+02:00 mail sshd-session[126738]: Failed password for root from 61.159.197.216 port 35474 ssh2
2025-05-10T06:34:36.677448+02:00 mail sshd-session[126752]: Failed password for root from 61.159.197.216 port 35490 ssh2
...
show less
Blocked by UFW on ns01 [22/tcp]
Source port: 55164
TTL: 50
Packet length: 60
TOS: 0x00
This report ...
show moreBlocked by UFW on ns01 [22/tcp]
Source port: 55164
TTL: 50
Packet length: 60
TOS: 0x00
This report was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
SSH Brute force: 230 attempts were recorded from 61.159.197.216
2025-05-10T03:54:05+02:00 Connection ...
show moreSSH Brute force: 230 attempts were recorded from 61.159.197.216
2025-05-10T03:54:05+02:00 Connection closed by authenticating user root 61.159.197.216 port 43326 [preauth]
2025-05-10T03:54:07+02:00 Connection closed by authenticating user root 61.159.197.216 port 43332 [preauth]
2025-05-10T03:54:08+02:00 Connection closed by authenticating user root 61.159.197.216 port 43348 [preauth]
2025-05-10T03:54:09+02:00 Connection closed by authenticating user root 61.159.197.216 port 43356 [preauth]
2025-05-10T03:54:10+02:00 Connection closed by authenticating user root 61.159.197.216 port 43368 [preauth]
2025-05-10T03:54:12+02:00 Connection closed by authenticating user root 61.159.197.216 port 43380 [preauth]
2025-05-10T03:54:13+02:00 Connection closed by authenticating user root 61.159.197.216 port 35560 [preauth]
2025-05-10T03:54:14+02:00 Connection closed by authenticating user root 61.159.1
show less
2025-05-10T06:18:58.960789ns2 sshd[920705]: Failed password for root from 61.159.197.216 port 50192 ...
show more2025-05-10T06:18:58.960789ns2 sshd[920705]: Failed password for root from 61.159.197.216 port 50192 ssh2
2025-05-10T06:19:01.237357ns2 sshd[920707]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=61.159.197.216 user=root
2025-05-10T06:19:03.768978ns2 sshd[920707]: Failed password for root from 61.159.197.216 port 50206 ssh2
...
show less
2025-05-10T06:03:43.773965ns2 sshd[920629]: Failed password for root from 61.159.197.216 port 44006 ...
show more2025-05-10T06:03:43.773965ns2 sshd[920629]: Failed password for root from 61.159.197.216 port 44006 ssh2
2025-05-10T06:03:47.538411ns2 sshd[920631]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=61.159.197.216 user=root
2025-05-10T06:03:49.257510ns2 sshd[920631]: Failed password for root from 61.159.197.216 port 52884 ssh2
...
show less
Brute-Force
SSH
Showing 1 to
15
of 23 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ