Suspicious activity detected from IP 140.228.24.74 based on mailserver logs.
Sample logs:
2026-04-15 ...
show moreSuspicious activity detected from IP 140.228.24.74 based on mailserver logs.
Sample logs:
2026-04-15 22:31:13,659 INFO [qtp1106043431-102200] [name=**@*.id;ip=172.16.0.182;oip=140.228.24.74;oport=17260;oproto=smtp;port=33690;soapId=10c15d74;] soap - AuthRequest elapsed=1
2026-04-15 22:31:15,207 INFO [qtp1106043431-102225] [name=**@*.id;ip=172.16.0.182;oip=140.228.24.74;oport=17260;oproto=smtp;port=33706;soapId=10c15d75;] SoapEngine - handler exception: authentication failed for [**], LDAP error: - unable to ldap authenticate: invalid credentials
2026-04-15 22:31:15,207 INFO [qtp1106043431-102225] [name=**@*.id;ip=172.16.0.182;oip=140.228.24.74;oport=17260;oproto=smtp;port=33706;soapId=10c15d75;] soap - AuthRequest elapsed=1
2026-04-15 22:31:31,936 INFO [qtp1106043431-102225] [name=**@*.id;ip=172.16.0.182;oip=140.228.24.74;oport=10250;oproto=smtp;port=37222;soapId=10c15d76;] SoapEngine - handler exception: authentication failed for [**], LDAP error: - unable to ldap authenticate:
show less
Blocked by UFW (TCP on 1)
Source port: 26225
TTL: 51
Packet length: 60
TOS: 0x08
This report (for 1 ...
show moreBlocked by UFW (TCP on 1)
Source port: 26225
TTL: 51
Packet length: 60
TOS: 0x08
This report (for 140.228.24.74) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Fail2Ban (11cc81a08e1b): 3 attempts from 140.228.24.74 triggered postfix-sasl jail. Ban time: 3600s. ...
show moreFail2Ban (11cc81a08e1b): 3 attempts from 140.228.24.74 triggered postfix-sasl jail. Ban time: 3600s. Attack patterns detected in mail server logs.
show less
Suspicious activity detected from IP 140.228.24.74 based on mailserver logs.
Sample logs:
2026-01-31 ...
show moreSuspicious activity detected from IP 140.228.24.74 based on mailserver logs.
Sample logs:
2026-01-31 07:03:33,528 INFO [qtp2102534528-19546] [name=**@*.id;ip=172.16.0.182;oip=140.228.24.74;oport=24651;oproto=smtp;port=55478;soapId=4adffe07;] soap - AuthRequest elapsed=98
2026-01-31 07:03:34,727 INFO [qtp2102534528-19555] [name=**@*.id;ip=172.16.0.182;oip=140.228.24.74;oport=24651;oproto=smtp;port=48250;soapId=4adffe08;] SoapEngine - handler exception: authentication failed for [**], LDAP error: - unable to ldap authenticate: invalid credentials
2026-01-31 07:03:34,727 INFO [qtp2102534528-19555] [name=**@*.id;ip=172.16.0.182;oip=140.228.24.74;oport=24651;oproto=smtp;port=48250;soapId=4adffe08;] soap - AuthRequest elapsed=73
2026-01-31 07:03:52,223 INFO [qtp2102534528-19564] [name=**@*.id;ip=172.16.0.182;oip=140.228.24.74;oport=10756;oproto=smtp;port=34226;soapId=4adffe09;] SoapEngine - handler exception: authentication failed for [**], LDAP error: - unable to ldap authenticate: in
show less
(smtpauth) Failed SMTP AUTH login from 140.228.24.74 (CA/Canada/-): 5 in the last 3600 secs; Ports: ...
show more(smtpauth) Failed SMTP AUTH login from 140.228.24.74 (CA/Canada/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_SMTPAUTH; Logs:
show less