root@mail:/etc# cat /var/log/mail.log | grep 209.85.166.43
2024-04-01T03:41:18.533515+10:00 mail postfix/postscreen[68002]: CONNECT from [209.85.166.43]:58839 to [192.168.10.153]:25
2024-04-01T03:41:18.596108+10:00 mail postfix/dnsblog[68003]: addr 209.85.166.43 listed by domain zen.spamhaus.org as 127.255.255.254
2024-04-01T03:41:24.596247+10:00 mail postfix/postscreen[68002]: DNSBL rank 1 for [209.85.166.43]:58839
2024-04-01T03:41:25.041584+10:00 mail postfix/tlsproxy[68005]: CONNECT from [209.85.166.43]:58839
2024-04-01T03:41:25.506584+10:00 mail postfix/tlsproxy[68005]: Anonymous TLS connection established from [209.85.166.43]:58839: TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256
2024-04-01T03:41:26.140002+10:00 mail postfix/postscreen[68002]: NOQUEUE: reject: RCPT from [209.85.166.43]:58839: 550 5.7.1 Service unavailable; client [209.85.166.43] blocked using zen.spamhaus.org; from=<redacted@gmail.com>, to=<postmaster@redacted>, proto=ESMTP, helo=<mail-io1-f43.google.com>
2024-04-01T03:41:26.352055+10:00 mail postfix/tlsproxy[68005]: DISCONNECT [209.85.166.43]:58839
2024-04-01T03:41:26.352124+10:00 mail postfix/postscreen[68002]: DISCONNECT [209.85.166.43]:58839
root@mail:/etc# nslookup 209.85.166.43
43.166.85.209.in-addr.arpa name = mail-io1-f43.google.com.
Authoritative answers can be found from:
root@mail:/etc#