This IP address has been reported a total of
36
times from
30 distinct
sources.
52.15.61.48 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Connection to port 465 with data transfer.
Data preview: GET / HTTP/1.1
Host: 107.175.212.44:465
U ...
show moreConnection to port 465 with data transfer.
Data preview: GET / HTTP/1.1
Host: 107.175.212.44:465
User-Agent: visionheight.com/scan Mozilla/5.0 (Macintosh;
show less
Jun 8 08:35:10 isp postfix/smtps/smtpd[2494685]: lost connection after CONNECT from ec2-52-15-61-48 ...
show moreJun 8 08:35:10 isp postfix/smtps/smtpd[2494685]: lost connection after CONNECT from ec2-52-15-61-48.us-east-2.compute.amazonaws.com[52.15.61.48]
Jun 8 08:35:14 isp postfix/smtps/smtpd[2493222]: lost connection after CONNECT from ec2-52-15-61-48.us-east-2.compute.amazonaws.com[52.15.61.48]
Jun 8 08:37:37 isp postfix/smtps/smtpd[2495480]: lost connection after CONNECT from ec2-52-15-61-48.us-east-2.compute.amazonaws.com[52.15.61.48]
...
show less
2026-06-08T06:34:34.370706+00:00 aws postfix/smtps/smtpd[297444]: lost connection after CONNECT from ...
show more2026-06-08T06:34:34.370706+00:00 aws postfix/smtps/smtpd[297444]: lost connection after CONNECT from ec2-52-15-61-48.us-east-2.compute.amazonaws.com[52.15.61.48]
2026-06-08T06:34:48.971870+00:00 aws postfix/smtps/smtpd[297441]: lost connection after CONNECT from ec2-52-15-61-48.us-east-2.compute.amazonaws.com[52.15.61.48]
2026-06-08T06:37:16.365651+00:00 aws postfix/smtps/smtpd[297444]: lost connection after CONNECT from ec2-52-15-61-48.us-east-2.compute.amazonaws.com[52.15.61.48]
...
show less
(TLS,failure,Dovecot,handshake) Login failure/trigger from 52.15.61.48 (US/United States/ec2-52-15-6 ...
show more(TLS,failure,Dovecot,handshake) Login failure/trigger from 52.15.61.48 (US/United States/ec2-52-15-61-48.us-east-2.compute.amazonaws.com): 3 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_TRIGGER; Logs: Jun 8 09:26:20 dovecot: imap-login: Disconnected (no auth attempts in 0 secs): user=[USERNAME] rip=52.15.61.48, lip=0.0.0.x, TLS handshaking: SSL_accept() failed: error:1408F09C:SSL routines:ssl3_get_record:http request, session=<qhS2FrhT1I80Dz0w>
Jun 8 09:26:20 dovecot: imap-login: Disconnected (no auth attempts in 0 secs): user=[USERNAME] rip=52.15.61.48, lip=0.0.0.x, TLS handshaking: SSL_accept() failed: error:1408F09C:SSL routines:ssl3_get_record:http request, session=<0vO7FrhT1o80Dz0w>
Ju
show less
Port Scan
Anonymous
Honeypot hit: HTTP/1.1 request on 2082
GET /
User-Agent: visionheight.com/scan Mozilla/5.0 (Macinto ...
show moreHoneypot hit: HTTP/1.1 request on 2082
GET /
User-Agent: visionheight.com/scan Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) Chrome/126.0.0.0 Safari/537.36
Accept: */*
Accept-Encoding: gzip; 2082 [11] TCP
Reported by: https://github.com/sefinek/T-Pot-To-AbuseIPDB
show less