This IP address has been reported a total of
208
times from
114 distinct
sources.
158.94.208.55 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Auto-report via Fail2Ban aggregation. IP observed in jails: abuseipdb.
Events: 1. First: 2026-06-04T ...
show moreAuto-report via Fail2Ban aggregation. IP observed in jails: abuseipdb.
Events: 1. First: 2026-06-04T21:07:02+0200. Last: 2026-06-04T21:07:02+0200.
Samples:
- 2026-05-31 03:44:48,873 fail2ban.actions [1405153]: NOTICE [abuseipdb] Ban 158.94.208.55
show less
2026-06-04T18:27:17.075591+02:00 X postfix/smtpd[3713421]: lost connection after CONNECT from unknow ...
show more2026-06-04T18:27:17.075591+02:00 X postfix/smtpd[3713421]: lost connection after CONNECT from unknown[158.94.208.55]
2026-06-04T18:27:18.071444+02:00 X postfix/smtpd[3713421]: NOQUEUE: reject: RCPT from unknown[158.94.208.55]: 550 5.1.0 <X>: Sender address rejected: User unknown in virtual mailbox table; from=<X> to=<X> proto=SMTP helo=<X>
2026-06-04T18:27:18.792144+02:00 X postfix/smtpd[3713421]: lost connection after RCPT from unknown[158.94.208.55]
show less
Auto-report via Fail2Ban aggregation. IP observed in jails: abuseipdb.
Events: 1. First: 2026-06-04T ...
show moreAuto-report via Fail2Ban aggregation. IP observed in jails: abuseipdb.
Events: 1. First: 2026-06-04T16:07:02+0200. Last: 2026-06-04T16:07:02+0200.
Samples:
- 2026-05-31 03:44:48,873 fail2ban.actions [1405153]: NOTICE [abuseipdb] Ban 158.94.208.55
show less
Auto-report via Fail2Ban aggregation. IP observed in jails: abuseipdb.
Events: 1. First: 2026-06-04T ...
show moreAuto-report via Fail2Ban aggregation. IP observed in jails: abuseipdb.
Events: 1. First: 2026-06-04T11:07:02+0200. Last: 2026-06-04T11:07:02+0200.
Samples:
- 2026-05-31 03:44:48,873 fail2ban.actions [1405153]: NOTICE [abuseipdb] Ban 158.94.208.55
show less
Unsolicited TCP connection from 158.94.208.55 to port 0 at 2026-06-04T05:47:16Z. Source IP completed ...
show moreUnsolicited TCP connection from 158.94.208.55 to port 0 at 2026-06-04T05:47:16Z. Source IP completed three-way handshake to non-public service on this host. Detected by automated intrusion monitoring.
show less
Port Scan
Hacking
Anonymous
2026-06-04T01:35:54.476507-04:00 mail postfix/smtpd[576763]: lost connection after CONNECT from unkn ...
show more2026-06-04T01:35:54.476507-04:00 mail postfix/smtpd[576763]: lost connection after CONNECT from unknown[158.94.208.55]
2026-06-04T01:35:54.910577-04:00 mail postfix/smtpd[576763]: NOQUEUE: reject: RCPT from unknown[158.94.208.55]: 554 5.7.1 <[email protected]>: Relay access denied; from=<[email protected]> to=<[email protected]> proto=SMTP helo=<158-94-208-55.domain>
2026-06-04T01:35:57.078366-04:00 mail postfix/smtpd[783867]: warning: unknown[158.94.208.55]: SASL PLAIN authentication failed: (reason unavailable), sasl_username=info
...
show less
(smtpauth) Failed SMTP AUTH login from 158.94.208.55 (DE/Germany/-): 5 in the last 3600 secs; Ports: ...
show more(smtpauth) Failed SMTP AUTH login from 158.94.208.55 (DE/Germany/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_SMTPAUTH; Logs: 2026-06-03 23:05:45 login authenticator failed for (158-94-208-55.domain) [158.94.208.55]: 535 Incorrect authentication data (set_id=info)
2026-06-03 23:05:45 login authenticator failed for (158-94-208-55.domain) [158.94.208.55]: 535 Incorrect authentication data (set_id=info)
2026-06-03 23:05:45 login authenticator failed for (158-94-208-55.domain) [158.94.208.55]: 535 Incorrect authentication data (set_id=info)
2026-06-03 23:05:45 login authenticator failed for (158-94-208-55.domain) [158.94.208.55]: 535 Incorrect authentication data (set_id=info)
2026-06-03 23:05:45 login authenticator failed for (158-94-208-55.domain) [158.94.208.55]: 535 Incorrect authentication data (set_id=info)
show less
Port Scan
Showing 1 to
15
of 208 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ