This IP address has been reported a total of
2,181
times from
478 distinct
sources.
66.132.186.173 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Suricata Detected 6 attacks from 66.132.186.173.; ET DROP Dshield Block Listed Source group 1; IP: 6 ...
show moreSuricata Detected 6 attacks from 66.132.186.173.; ET DROP Dshield Block Listed Source group 1; IP: 66.132.186.173; Ports: 21602; Direction: to_server; Trigger: DROP; Category: Misc Attack; Severity: 2
show less
2026-06-30T12:43:21.601759-05:00 lab dovecot: imap-login: Disconnected: Connection closed (no auth a ...
show more2026-06-30T12:43:21.601759-05:00 lab dovecot: imap-login: Disconnected: Connection closed (no auth attempts in 1 secs): user=<>, rip=66.132.186.173, lip=199.181.238.151, TLS: Connection closed, session=<j+tuHHxVoJRChLqt>
2026-06-30T12:43:26.341816-05:00 lab dovecot: imap-login: Disconnected: Too many invalid commands (no auth attempts in 0 secs): user=<>, rip=66.132.186.173, lip=199.181.238.151, session=<LUC3HHxVjk5ChLqt>
2026-06-30T12:43:27.813124-05:00 lab dovecot: imap-login: Disconnected: Too many invalid commands (no auth attempts in 0 secs): user=<>, rip=66.132.186.173, lip=199.181.238.151, session=<RLPNHHxVlk5ChLqt>
2026-06-30T12:43:28.886372-05:00 lab dovecot: imap-login: Disconnected: Too many invalid commands (no auth attempts in 0 secs): user=<>, rip=66.132.186.173, lip=199.181.238.151, session=<gBPeHHxVmk5ChLqt>
2026-06-30T12:43:30.534143-05:00 lab dovecot: imap-login: Disconnected: Too many invalid commands (no auth attempts in 0 secs): user=<>, rip=66.132.186.173, lip=199
...
show less
Honeypot [fra-de-honeypot]: Empty payload (likely service probe); 50268 [1] TCP
Reported by DisPaisy ...
show moreHoneypot [fra-de-honeypot]: Empty payload (likely service probe); 50268 [1] TCP
Reported by DisPaisy Enterprises (dispaisy.systems) using: https://github.com/sefinek/T-Pot-To-AbuseIPDB
show less
Blocked by UFW on amperetwo [25/tcp]
Source port: 57514
TTL: 59
Packet length: 60
TOS: 0x00
This re ...
show moreBlocked by UFW on amperetwo [25/tcp]
Source port: 57514
TTL: 59
Packet length: 60
TOS: 0x00
This report was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Suricata Detected 4 attacks from 66.132.186.173.; ET DROP Dshield Block Listed Source group 1; IP: 6 ...
show moreSuricata Detected 4 attacks from 66.132.186.173.; ET DROP Dshield Block Listed Source group 1; IP: 66.132.186.173; Ports: 60394; Direction: to_server; Trigger: DROP; Category: Misc Attack; Severity: 2
show less
[rede-168-134] 06/30/2026-12:51:28.639500, 66.132.186.173, Protocol: 6, ET DROP Dshield Block Listed ...
show more[rede-168-134] 06/30/2026-12:51:28.639500, 66.132.186.173, Protocol: 6, ET DROP Dshield Block Listed Source group 1
show less