This IP address has been reported a total of
5
times from
4 distinct
sources.
85.137.57.159 was first reported on
September 12th 2026 , and the most recent report was
2 days ago .
In the last 60 days, the top reporter locations were:
Denmark
with 2
reports;
Brazil
with 1
report;
Canada
with 1
report.
The most common categories in these recent reports were:
Brute-Force
5
times;
Port Scan
1
time;
Exploited Host
1
time;
Hacking
1
time.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ฉ๐ฐ
powerhostingdk
2026-10-01 04:25:05
(2 days ago)
[mailserver] CrowdSec detected mailscanner/global-spam-aggregate (31 events). Automated abuse report ...
show more
[mailserver] CrowdSec detected mailscanner/global-spam-aggregate (31 events). Automated abuse report.
show less
Brute-Force
๐ฎ๐ฉ
xveil
2026-09-29 05:45:36
(4 days ago)
2026-09-29T12:45:34.110605 mail-honeypot postfix/submission/smtpd[27747]: warning: unknown[85.137.57 ...
show more
2026-09-29T12:45:34.110605 mail-honeypot postfix/submission/smtpd[27747]: warning: unknown[85.137.57.159]: SASL PLAIN authentication failed: authentication failure
...
show less
Brute-Force
๐ฉ๐ฐ
powerhostingdk
2026-09-28 16:51:16
(4 days ago)
[mailserver] CrowdSec detected mailscanner/global-spam-aggregate (31 events). Automated abuse report ...
show more
[mailserver] CrowdSec detected mailscanner/global-spam-aggregate (31 events). Automated abuse report.
show less
Brute-Force
๐ง๐ท
SvrAdmin
2026-09-12 19:22:07
(2 weeks ago)
[315] (smtpauth) Failed SMTP AUTH login from 85.137.57.159 (UA/Ukraine/core159.mail.elncharm.us.com) ...
show more
[315] (smtpauth) Failed SMTP AUTH login from 85.137.57.159 (UA/Ukraine/core159.mail.elncharm.us.com): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_SMTPAUTH; Logs: Sep 12 15:30:35 cwp01 postfix/smtpd[9401]: warning: unknown[85.137.57.159]: SASL LOGIN authentication failed: UGFzc3dvcmQ6
Sep 12 15:34:35 cwp01 postfix/smtpd[9735]: warning: unknown[85.137.57.159]: SASL LOGIN authentication failed: UGFzc3dvcmQ6
Sep 12 15:41:41 cwp01 postfix/smtpd[10435]: warning: unknown[85.137.57.159]: SASL LOGIN authentication failed: UGFzc3dvcmQ6
Sep 12 15:52:24 cwp01 postfix/smtpd[11135]: warning: unknown[85.137.57.159]: SASL LOGIN authentication failed: UGFzc3dvcmQ6
Sep 12 16:22:05 cwp01 postfix/smtpd[13955]: warning: unknown[85.137.57.159]: SASL LOGIN authentication failed: UGFzc3dvcmQ6
show less
Port Scan
Hacking
Brute-Force
Exploited Host
๐จ๐ฆ
Julio Covolato
2026-09-12 15:55:02
(2 weeks ago)
Imap or Submission login brute-force attacks.
Brute-Force
Showing 1 to
5
of 5 reports