This IP address has been reported a total of
40
times from
40 distinct
sources.
34.140.107.214 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
United States of America
with 8
reports;
Germany
with 5
reports;
Netherlands
with 4
reports.
The most common categories in these recent reports were:
Brute-Force
22
times;
Port Scan
18
times;
Hacking
12
times;
Email Spam
10
times;
SSH
5
times;
Other
10
times.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
2026-10-03T14:09:14.394218+07:00 rapi postfix/smtpd[3660892]: lost connection after EHLO from 214.10 ...
show more2026-10-03T14:09:14.394218+07:00 rapi postfix/smtpd[3660892]: lost connection after EHLO from 214.107.140.34.bc.googleusercontent.com[34.140.107.214]
2026-10-03T14:09:14.582879+07:00 rapi postfix/smtpd[3660823]: improper command pipelining after CONNECT from 214.107.140.34.bc.googleusercontent.com[34.140.107.214]: HELP\r\n
show less
Honeypot hit: Brute-force attack detected on 23/TELNET
โข Credentials: GET / HTTP/1.1:Host: [SOME-IP] ...
show moreHoneypot hit: Brute-force attack detected on 23/TELNET
โข Credentials: GET / HTTP/1.1:Host: [SOME-IP]:23, User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/127.0.0.0 Safari/537.36:Accept-Encoding: gzip, *1:$4, OPTIONS rtsp://example.com RTSP/1.0:Cseq: 7394
โข Number of login attempts: 4
โข 1 command(s) were executed during the session
Reported by: https://github.com/sefinek/T-Pot-To-AbuseIPDB
show less
2026-10-03T08:41:36.067943+02:00 mail postfix/smtpd[31146]: lost connection after EHLO from 214.107. ...
show more2026-10-03T08:41:36.067943+02:00 mail postfix/smtpd[31146]: lost connection after EHLO from 214.107.140.34.bc.googleusercontent.com[34.140.107.214]
2026-10-03T08:41:43.579426+02:00 mail postfix/smtpd[31146]: lost connection after UNKNOWN from 214.107.140.34.bc.googleusercontent.com[34.140.107.214]
...
show less
Oct 2 23:19:11 smtp.dgsmailer.cc postfix/postscreen/postscreen[207862]: PREGREET 18 after 0.09 from ...
show moreOct 2 23:19:11 smtp.dgsmailer.cc postfix/postscreen/postscreen[207862]: PREGREET 18 after 0.09 from [34.140.107.214]:36612: EHLO example.com\r\n
Oct 2 23:19:11 smtp.dgsmailer.cc postfix/dnsblog[207863]: addr 34.140.107.214 listed by domain zen.spamhaus.org as 127.0.0.4
Oct 2 23:19:11 smtp.dgsmailer.cc postfix/dnsblog[207863]: addr 34.140.107.214 listed by domain zen.spamhaus.org as 127.0.0.3
...
show less
Telnet honeypot observed an automated Telnet credential spray, and an Nmap-style service-detection s ...
show moreTelnet honeypot observed an automated Telnet credential spray, and an Nmap-style service-detection scan against TCP/23. sessions=9.
show less
Fail2Ban report from jail 'pregreet': 2026-10-03T08:08:36.833784+02:00 mail postfix/postscreen[25122 ...
show moreFail2Ban report from jail 'pregreet': 2026-10-03T08:08:36.833784+02:00 mail postfix/postscreen[2512248]: PREGREET 18 after 0.02 from [34.140.107.214]:27264: EHLO example.com\r\n
...
show less
Honeypot Finding: Telnet intrusion activity on TCP/23; successful login, command, or download activi ...
show moreHoneypot Finding: Telnet intrusion activity on TCP/23; successful login, command, or download activity observed.
show less