This IP address has been reported a total of
20
times from
19 distinct
sources.
34.168.142.161 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Automated report: Unauthorized vulnerability scanning detected on 2026-08-21. 545 requests from this ...
show moreAutomated report: Unauthorized vulnerability scanning detected on 2026-08-21. 545 requests from this IP.
show less
3.744 requests with url.path */xmlrpc.php
3.742 requests with url.path //xmlrpc.php
255 requests ...
show more3.744 requests with url.path */xmlrpc.php
3.742 requests with url.path //xmlrpc.php
255 requests with url.path */wp-includes/wlwmanifest.xml
show less
{"time":"2026-08-21T13:21:32+00:00","ip":"34.168.142.161","method":"GET","uri":"//xmlrpc.php?rsd","u ...
show more{"time":"2026-08-21T13:21:32+00:00","ip":"34.168.142.161","method":"GET","uri":"//xmlrpc.php?rsd","ua":"Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36","referer":""}
...
show less
Cluster member 148.251.176.225 (DE/Germany/antares.webyouridea.ro) said, DENY 34.168.142.161, Reason ...
show moreCluster member 148.251.176.225 (DE/Germany/antares.webyouridea.ro) said, DENY 34.168.142.161, Reason:[(manifest) WordPress wlwmanifest.xml Attack 34.168.142.161 (US/United States/161.142.168.34.bc.googleusercontent.com): 10 in the last 3600 secs]; Ports: *; Direction: inout; Trigger: LF_CLUSTER; Logs:
show less
(mod_security) mod_security (id:225170) triggered by 34.168.142.161 (161.142.168.34.bc.googleusercon ...
show more(mod_security) mod_security (id:225170) triggered by 34.168.142.161 (161.142.168.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Aug 21 09:03:36.936781 2026] [security2:error] [pid 24105:tid 24105] [client 34.168.142.161:63882] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||www.oakglenhouse.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "www.oakglenhouse.com"] [uri "/wp-json/wp/v2/users/"] [unique_id "aohMqCShuJH6TsuKs6yj7QAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-21T14:59:06.441632+02:00 aion wordpress[262715]: Blocked user enumeration attempt from 34.16 ...
show more2026-08-21T14:59:06.441632+02:00 aion wordpress[262715]: Blocked user enumeration attempt from 34.168.142.161
...
show less
Bot / scanning and/or hacking attempts: GET //feed/ HTTP/1.1, POST //xmlrpc.php HTTP/1.1, GET //wp-j ...
show moreBot / scanning and/or hacking attempts: GET //feed/ HTTP/1.1, POST //xmlrpc.php HTTP/1.1, GET //wp-json/wp/v2/users/ HTTP/1.1, GET //?author=1 HTTP/1.1, GET //cms/wp-includes/wlwmanifest.xml HTTP/1.1, GET //wp1/wp-includes/wlwmanifest.xml HTTP/1.1, GET //shop/wp-includes/wlwmanifest.xml HTTP/1.1, GET //test/wp-includes/wlwmanifest.xml HTTP/1.1, GET //site/wp-includes/wlwmanifest.xml HTTP/1.1
show less