This IP address has been reported a total of
97
times from
64 distinct
sources.
34.2.16.59 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
Germany
with 41
reports;
France
with 12
reports;
Netherlands
with 10
reports.
The most common categories in these recent reports were:
Brute-Force
57
times;
Web App Attack
52
times;
SSH
32
times;
Hacking
11
times;
Bad Web Bot
5
times;
Other
10
times.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Oct 1 07:27:52 canopus postfix/smtpd[3007882]: NOQUEUE: reject: RCPT from 59.16.2.34.bc.googleuserc ...
show moreOct 1 07:27:52 canopus postfix/smtpd[3007882]: NOQUEUE: reject: RCPT from 59.16.2.34.bc.googleusercontent.com[34.2.16.59]: 554 5.7.1 Service unavailable; Client host [34.2.16.59] blocked using zen.spamhaus.org; Listed by CSS, see https://check.spamhaus.org/query/ip/34.2.16.59 / Listed by PBL, see https://check.spamhaus.org/query/ip/34.2.16.59 / Listed by XBL, see https://check.spamhaus.org/query/ip/34.2.16.59; from=<[email protected]> to=<[email protected]> proto=ESMTP helo=<45.74.31.40>
Oct 1 12:29:42 canopus postfix/smtpd[3034562]: NOQUEUE: reject: RCPT from 59.16.2.34.bc.googleusercontent.com[34.2.16.59]: 554 5.7.1 Service unavailable; Client host [34.2.16.59] blocked using zen.spamhaus.org; Listed by CSS, see https://check.spamhaus.org/query/ip/34.2.16.59 / Listed by PBL, see https://check.spamhaus.org/query/ip/34.2.16.59 / Listed by XBL, see https://check.spamhaus.org/query/ip/34.2.16.59; from=<[email protected]> to=<[email protected]> proto=ESMTP helo=<45.74.31.4
...
show less
[ThuOct0109:25:56.7975342026][security2:error][pid638829:tid638929][client34.2.16.59:0]ModSecurity:A ...
show more[ThuOct0109:25:56.7975342026][security2:error][pid638829:tid638929][client34.2.16.59:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Stringmatch\"/xmlrpc.php\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"170\"][id\"960024\"][msg\"XML-RPCdisabled\"][hostname\"feldenkraisticino.ch\"][uri\"/xmlrpc.php\"][unique_id\"ar4LBEH5iWhJ-H7F5YaovQAAAMk\"]
show less
[ti-14al] WordPress login brute-force: 4 suspicious requests detected by fail2ban jail <name>. Examp ...
show more[ti-14al] WordPress login brute-force: 4 suspicious requests detected by fail2ban jail <name>. Example: 34.2.16.59 - - \[01/Oct/2026:08:04:11 +0200\] "POST /wp-login.php HTTP/1.1" 503 25483 "https://agro-ecolum.com/wp-login.php" "Mozilla/5.0 \(Macintosh\; Intel Mac OS X 10_15_7\) AppleWebKit/537.36 \(KHTML, like Gecko\) Chrome/146.0.0.0 Safari/537.36"
34.2.16.59 - - \[01/Oct/2026:08:04:14 +0200\] "POST /wp-login.php HTTP/1.1" 503 18928 "https://agro-ecolum.com/wp-login.php" "Mozilla/5.0 \(Macintosh\; Intel Mac OS X 10_15_7\) AppleWebKit/537.36 \(KHTML, like Gecko\) Chrome/146.0.0.0 Safari/537.36"
34.2.16.59 - - \[01/Oct/2026:08:04:16 +0200\] "POST /wp-login.php HTTP/1.1" 503 18928 "https://agro-ecolum.com/wp-login.php" "Mozilla/5.0 \(Macintosh\; Intel Mac OS X 10_15_7\) AppleWebKit/537.36 \(KHTML, like Gecko\) Chrome/146.0.0.0 Safari/5
...
show less
Brute-Force
Web App Attack
Anonymous
(wordpress) Failed wordpress login from 34.2.16.59 (SG/Singapore/59.16.2.34.bc.googleusercontent.com ...
show more(wordpress) Failed wordpress login from 34.2.16.59 (SG/Singapore/59.16.2.34.bc.googleusercontent.com)
show less
[ThuOct0107:38:55.9841322026][security2:error][pid3316934:tid3317062][client34.2.16.59:0]ModSecurity ...
show more[ThuOct0107:38:55.9841322026][security2:error][pid3316934:tid3317062][client34.2.16.59:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Stringmatch\"/xmlrpc.php\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"714\"][id\"960024\"][msg\"XML-RPCdisabled\"][hostname\"pmprogettazione.ch\"][uri\"/xmlrpc.php\"][unique_id\"ar3x7y6lOLPMQSdW29fp0wAAARM\"]
show less