This IP address has been reported a total of
48
times from
23 distinct
sources.
34.166.179.207 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Triggered Cloudflare WAF (linkMaze) from SA.
Action taken: LINK_MAZE_INJECTED
Protocol: HTTP/1.1 (GE ...
show moreTriggered Cloudflare WAF (linkMaze) from SA.
Action taken: LINK_MAZE_INJECTED
Protocol: HTTP/1.1 (GET method)
Endpoint: /
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
time="2026-09-20T18:52:01Z" level=info msg="Access to https://dash.sw0ok.dev/dashboard/ (method POST ...
show moretime="2026-09-20T18:52:01Z" level=info msg="Access to https://dash.sw0ok.dev/dashboard/ (method POST) is not authorized to user <anonymous>, responding with status code 303 with location redirect to https://auth.sw0ok.dev/?rd=https%3A%2F%2Fdash.sw0ok.dev%2Fdashboard%2F&rm=POST" method=GET path=/api/authz/forward-auth remote_ip=34.166.179.207
time="2026-09-20T18:52:01Z" level=info msg="Access to https://dash.sw0ok.dev/dashboard/ (method POST) is not authorized to user <anonymous>, responding with status code 303 with location redirect to https://auth.sw0ok.dev/?rd=https%3A%2F%2Fdash.sw0ok.dev%2Fdashboard%2F&rm=POST" method=GET path=/api/authz/forward-auth remote_ip=34.166.179.207
time="2026-09-20T18:52:01Z" level=info msg="Access to https://dash.sw0ok.dev/dashboard/ (method POST) is not authorized to user <anonymous>, responding with status code 303 with location redirect to https://auth.sw0ok.dev/?rd=https%3A%2F%2Fdash.sw0ok.dev%2Fdashboard%2F&rm=POST" method=GET path=/api/authz/forwar
...
show less
Triggered Cloudflare WAF from SA.
Action taken: BLOCK
ASN: 396982 (Google LLC)
Protocol: HTTP/1.1 (G ...
show moreTriggered Cloudflare WAF from SA.
Action taken: BLOCK
ASN: 396982 (Google LLC)
Protocol: HTTP/1.1 (GET method)
Endpoint: /firebase-adminsdk.json
Timestamp: 2026-09-20T17:41:43Z
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36
show less
Bad Web Bot
Anonymous
Fail2Ban: 2026/09/20 16:59:33 [info] 6597#6597: *11752 client sent no required SSL certificate while ...
show moreFail2Ban: 2026/09/20 16:59:33 [info] 6597#6597: *11752 client sent no required SSL certificate while reading client request headers, client: 34.166.179.207, server: dash.ddns.schauwecker.eu, request: "GET / HTTP/1.1", host: "dash.ddns.schauwecker.eu"
2026/09/20 16:59:33 [info] 6598#6598: *11753 client sent no required SSL certificate while reading client request headers, client: 34.166.179.207, server: dash.ddns.schauwecker.eu, request: "POST / HTTP/1.1", host: "dash.ddns.schauwecker.eu"
2026/09/20 16:59:33 [info] 6598#6598: *11754 client sent no required SSL certificate while reading client request headers, client: 34.166.179.207, server: dash.ddns.schauwecker.eu, request: "POST / HTTP/1.1", host: "dash.ddns.schauwecker.eu"
show less
threat-feed-sync observed repeated abuse from this IP after local filtering. scenarios=crowdsecurity ...
show morethreat-feed-sync observed repeated abuse from this IP after local filtering. scenarios=crowdsecurity/appsec-vpatch,crowdsecurity/vpatch-CVE-2025-55182,crowdsecurity/vpatch-env-access,crowdsecurity/vpatch-git-config,custom/traefik-sensitive-path-probe observed_by=1_hosts hit_count=69 first_seen=2026-09-20T16:59:08Z last_seen=2026-09-20T16:59:17Z
show less
Malicious activity in general-malicious. Evidence: (apache_probe) Failed Access (403/404) 34.166.179 ...
show moreMalicious activity in general-malicious. Evidence: (apache_probe) Failed Access (403/404) 34.166.179.207 (SA/Saudi Arabia/[REDACTED_DOMAIN]): 20 in the last 3600 secs | UA: (apache_probe) Failed Access (403/404) 34.166.179.207 (SA/Saudi Arabia/207.179.166.34.bc.googleusercontent.com): 20 in the last 3600 secs
show less
Brute-Force
Web App Attack
Anonymous
| [Dangerous/Saudi Arabia] Aggressive IP 34.166.179.207 (~30 hits). Type: DoS Defender- Web server 4 ...
show more| [Dangerous/Saudi Arabia] Aggressive IP 34.166.179.207 (~30 hits). Type: DoS Defender- Web server 400 error code
show less