This IP address has been reported a total of
15
times from
15 distinct
sources.
34.21.56.124 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
Germany
with 3
reports;
Canada
with 2
reports;
Switzerland
with 2
reports.
The most common categories in these recent reports were:
Web App Attack
11
times;
Brute-Force
7
times;
Bad Web Bot
6
times;
Hacking
3
times.
Old Reports
The most recent abuse report for this IP address is from
. It is possible that this IP is no
longer involved in abusive activities.
This address is trying passwords on WordPress logins we host โ through the login page or xmlrpc.php, ...
show moreThis address is trying passwords on WordPress logins we host โ through the login page or xmlrpc.php, often across several sites โ for accounts it does not own. This is credential brute force or credential stuffing, the way sites get hijacked to spread malware and spam; blocked. Please check the machine for malware or an attack tool. | path: //xmlrpc.php | 2026-09-25 14:15 UTC
show less
http-probing - IP: 34.21.56.124 - time="2026-09-25T15:38:39+02:00" level=info msg="(555f66b4f6a7455 ...
show morehttp-probing - IP: 34.21.56.124 - time="2026-09-25T15:38:39+02:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-probing by ip 34.21.56.124 (US/396982) : 4h ban on Ip 34.21.56.124" module=db
show less
Honeypot: 15 request(s) in 0 min. Paths: //2019/wp-includes/wlwmanifest.xml, //2020/wp-includes/wlwm ...
show moreHoneypot: 15 request(s) in 0 min. Paths: //2019/wp-includes/wlwmanifest.xml, //2020/wp-includes/wlwmanifest.xml, //2021/wp-includes/wlwmanifest.xml, //blog/wp-includes/wlwmanifest.xml, //cms/wp-includes/wlwmanifest.xml. Method(s): GET. UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko). ASN: 396982 (Google LLC).
show less