Suspicious activity detected from IP 66.56.81.41 based on mailserver logs.
Sample logs:
2026-04-23 0 ...
show moreSuspicious activity detected from IP 66.56.81.41 based on mailserver logs.
Sample logs:
2026-04-23 06:01:57,148 INFO [qtp1106043431-123490] [name=**@*.id;ip=172.16.0.182;oip=66.56.81.41;oport=35250;oproto=smtp;port=41390;soapId=10c16ffe;] soap - AuthRequest elapsed=1
2026-04-23 06:02:10,000 INFO [qtp1106043431-123504] [name=**@*.id;ip=172.16.0.182;oip=66.56.81.41;oport=15014;oproto=smtp;port=53570;soapId=10c16fff;] SoapEngine - handler exception: authentication failed for [**], LDAP error: - unable to ldap authenticate: invalid credentials
2026-04-23 06:02:10,000 INFO [qtp1106043431-123504] [name=**@*.id;ip=172.16.0.182;oip=66.56.81.41;oport=15014;oproto=smtp;port=53570;soapId=10c16fff;] soap - AuthRequest elapsed=1
2026-04-23 06:02:10,443 INFO [qtp1106043431-123485] [name=**@*.id;ip=172.16.0.182;oip=66.56.81.41;oport=15014;oproto=smtp;port=53572;soapId=10c17000;] SoapEngine - handler exception: authentication failed for [**], LDAP error: - unable to ldap authenticate: invalid cr
show less
Blocked by UFW (TCP on 9050)
Source port: 1999
TTL: 116
Packet length: 52
TOS: 0x08
This report (fo ...
show moreBlocked by UFW (TCP on 9050)
Source port: 1999
TTL: 116
Packet length: 52
TOS: 0x08
This report (for 66.56.81.41) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Port Scan
Anonymous
Unauthorized connection attempt detected in the last 24 hours
Hacking
Anonymous
Unauthorized connection attempt detected in the last 24 hours
Hacking
Anonymous
Unauthorized connection attempt detected in the last 24 hours
Dec 15 08:11:11 66.56.81.41 TCP SPT=18016 DPT=2095 SYN
Dec 15 08:11:12 66.56.81.41 TCP SPT=18016 DPT ...
show moreDec 15 08:11:11 66.56.81.41 TCP SPT=18016 DPT=2095 SYN
Dec 15 08:11:12 66.56.81.41 TCP SPT=18016 DPT=2095 SYN
Dec 15 08:11:14 66.56.81.41 TCP SPT=18016 DPT=2095
...
show less
Port Scan
Showing 1 to
15
of 18 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ