scan port : 23 from Belgique at Sat May 30 11:15:48 2026
Port Scan
Anonymous
May 30 15:43:00 mail postfix/postscreen[16839]: PREGREET 18 after 0.3 from [104.199.8.134]:38324: EH ...
show moreMay 30 15:43:00 mail postfix/postscreen[16839]: PREGREET 18 after 0.3 from [104.199.8.134]:38324: EHLO example.com\r\n
show less
2026-05-30T09:12:07.592943+02:00 mx postfix/dnsblog[1934948]: addr 104.199.8.134 listed by domain ze ...
show more2026-05-30T09:12:07.592943+02:00 mx postfix/dnsblog[1934948]: addr 104.199.8.134 listed by domain zen.spamhaus.org as 127.0.0.4
2026-05-30T09:12:07.666873+02:00 mx postfix/dnsblog[1934949]: addr 104.199.8.134 listed by domain zen.spamhaus.org as 127.0.0.4
2026-05-30T09:12:07.738561+02:00 mx postfix/dnsblog[1934952]: addr 104.199.8.134 listed by domain zen.spamhaus.org as 127.0.0.4
...
show less
Unwanted traffic detected by honeypot on May 29, 2026: port scans (30 port 23 scans), and brute forc ...
show moreUnwanted traffic detected by honeypot on May 29, 2026: port scans (30 port 23 scans), and brute force and hacking attacks (4 over telnet).
show less
May 30 07:31:55 - postfix/smtpd[133814]: lost connection after EHLO from 134.8.199.104.bc.googleuser ...
show moreMay 30 07:31:55 - postfix/smtpd[133814]: lost connection after EHLO from 134.8.199.104.bc.googleusercontent.com[104.199.8.134]
May 30 07:31:55 - postfix/smtpd[133814]: improper command pipelining after CONNECT from 134.8.199.104.bc.googleusercontent.com[104.199.8.134]: HELP\r\n
May 30 07:32:03 - postfix/smtpd[133814]: lost connection after UNKNOWN from 134.8.199.104.bc.googleusercontent.com[104.199.8.134]
show less
May 30 08:07:26 mail postfix/smtpd[1926942]: improper command pipelining after CONNECT from 134.8.19 ...
show moreMay 30 08:07:26 mail postfix/smtpd[1926942]: improper command pipelining after CONNECT from 134.8.199.104.bc.googleusercontent.com[104.199.8.134]: \026\003\001\005\304\001\000\005\300\003\003f\336R\212\020L?\230\314\267\031\033\234\346\r\237\373.\360\237+\242\354\030\340D~\0176}\344~ R\247\000\253\354\204\020\351\366Di\266\357\023\346\320Ax\217=\003\231P\224\207\233\217\220\317M_0\0002\300+\300/\300,\3000\314\251\314\250\300\t\300\023\300\n\300\024\000\234
May 30 08:07:26 mail postfix/smtpd[1934710]: improper command pipelining after CONNECT from 134.8.199.104.bc.googleusercontent.com[104.199.8.134]: ;\000\000\000\001\000\000\000\000\000\000\000\324\a\000\000\000\000\000\000admin.$cmd\000\000\000\000\000\377\377\377\377\024\000\000\000\001hello\000\000\000\000\000\000\000\360?\000
May 30 08:07:35 mail postfix/smtpd[1930964]: improper command pipelining after CONNECT from 134.8.199.104.bc.googleusercontent.com[104.199.8.134]: GET / HTTP/1.1\r\nHost: 194.36.88.23:25\r\nUser-Agent: Mozill
...
show less
Unsolicited TCP connection from 104.199.8.134 to port 0 at 2026-05-30T04:51:32Z. Source IP completed ...
show moreUnsolicited TCP connection from 104.199.8.134 to port 0 at 2026-05-30T04:51:32Z. Source IP completed three-way handshake to non-public service on this host. Detected by automated intrusion monitoring.
show less