This IP address has been reported a total of
671
times from
282 distinct
sources.
80.94.92.21 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Port Scan
Hacking
SQL Injection
Brute-Force
Bad Web Bot
Exploited Host
Anonymous
2026-08-19 22:16:16.722 [2255603] no MAIL in SMTP connection from [80.94.92.21]:39270 I=[217.197.86. ...
show more2026-08-19 22:16:16.722 [2255603] no MAIL in SMTP connection from [80.94.92.21]:39270 I=[217.197.86.168]:25 Ci=2255603 D=7s
2026-08-19 22:16:18.478 [2255604] SMTP protocol error in "STARTTLS" H=[80.94.92.21]:39254 I=[217.197.86.168]:25 Ci=2255604 STARTTLS command used when not advertised
2026-08-19 22:16:20.696 [2255608] no MAIL in SMTP connection from [80.94.92.21]:35634 I=[217.197.86.168]:465 Ci=2255608 D=11s X=TLS1.2:ECDHE_SECP256R1__ECDSA_SHA256__AES_128_GCM:128 CV=no
...
show less
2026-08-18T09:57:34.667182+02:00 ieyasu.moretrix.com postfix/postscreen[714721]: HANGUP after 5.1 fr ...
show more2026-08-18T09:57:34.667182+02:00 ieyasu.moretrix.com postfix/postscreen[714721]: HANGUP after 5.1 from [80.94.92.21]:40762 in tests after SMTP handshake
2026-08-18T09:57:40.502536+02:00 ieyasu.moretrix.com postfix/postscreen[714721]: HANGUP after 11 from [80.94.92.21]:40750 in tests after SMTP handshake
2026-08-18T11:10:05.349437+02:00 ieyasu.moretrix.com postfix/submission/smtpd[719498]: improper command pipelining after CONNECT from unknown[80.94.92.21]: \026\003\001\000{\001\000\000w\003\003\021\235\024\006\036\265e;7\216\317\r8\035#\025\225\340i\020\374\302\223\206\353au;\204\334\244\374\000\000\032\300/\300+\300\021\300\a\300\023\300\t\300\024\300\n\000\005\000/\0005\300\022\000\n\001\000\0004\000\005\000\005\001\000\000\000\000\000\n\000\b\000\006\000\027\000\030\000\031\000\v\000
...
show less
postfix Server DDoS - AUTH drops, early HANGUPs, other DDoS attacks, etc. Might contain brute-force ...
show morepostfix Server DDoS - AUTH drops, early HANGUPs, other DDoS attacks, etc. Might contain brute-force dictionary attack sightings on IMAP and SMTP.
show less