This IP address has been reported a total of
14
times from
12 distinct
sources.
34.21.193.225 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Triggered Cloudflare WAF (firewallManaged) from SG.
Action taken: BLOCK
Protocol: HTTP/2 (POST metho ...
show moreTriggered Cloudflare WAF (firewallManaged) from SG.
Action taken: BLOCK
Protocol: HTTP/2 (POST method)
Endpoint: /api
UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36; compatible; OAI-SearchBot/1.4; +https://openai.com/searchbot
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
{"level":"info","ts":1790772052.0066762,"logger":"http.log.access.log1","msg":"handled request","req ...
show more{"level":"info","ts":1790772052.0066762,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"34.21.193.225","remote_port":"47416","client_ip":"34.21.193.225","proto":"HTTP/2.0","method":"GET","host":"status.ubikabrasil.com.br","uri":"/key.pem","headers":{"Cookie":["REDACTED"],"Accept-Encoding":["gzip"],"X-Middleware-Subrequest":["src/middleware:nowaf:src/middleware:src/middleware:src/middleware:src/middleware:middleware:middleware:nowaf:middleware:middleware:middleware:pages/_middleware"],"X-Nextjs-Data":["1"],"User-Agent":["Mozilla/5.0 (compatible; Meta-ExternalAgent/1.0; +https://developers.facebook.com/docs/sharing/webmasters/crawler)"],"Accept":["*/*"]},"tls":{"resumed":false,"version":772,"cipher_suite":4865,"proto":"h2","server_name":"status.ubikabrasil.com.br","ech":false}},"bytes_read":0,"user_id":"","duration":0.000855201,"size":0,"status":429,"resp_headers":{"Server":["Caddy"],"Alt-Svc":["h3=\":443\"; ma=2592000"],"Retry-After":["1"]}}
{"level":"inf
...
show less
Web vulnerability scanning: requests to known exploit/probe paths; requests blocked by WAF (ModSecur ...
show moreWeb vulnerability scanning: requests to known exploit/probe paths; requests blocked by WAF (ModSecurity) rules. Blocked by firewall on 5 different hosting servers. Protocol TCP, port 80, 443 (HTTP/HTTPS). Requested paths: /firebase-config.json, /graphql, /_profiler/open, /api/env, /config.json. Automated report.
show less
*Port Scan* detected from 34.21.193.225 (SG/Singapore/225.193.21.34.bc.googleusercontent.com). 11 hi ...
show more*Port Scan* detected from 34.21.193.225 (SG/Singapore/225.193.21.34.bc.googleusercontent.com). 11 hits in the last 260 seconds [SIGMA]
show less
Brute-Force
Port Scan
Showing 1 to
14
of 14 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ