This IP address has been reported a total of
71
times from
43 distinct
sources.
34.21.81.1 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
United States of America
with 23
reports;
Germany
with 10
reports;
Netherlands
with 7
reports.
The most common categories in these recent reports were:
Web App Attack
53
times;
Bad Web Bot
32
times;
Brute-Force
30
times;
Hacking
9
times;
Port Scan
4
times;
Other
8
times.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
34.21.81.1 - - [05/Oct/2026:05:00:13 +0200] "GET / HTTP/1.1" 403 183 "-" "Mozilla/5.0 (Macintosh; In ...
show more34.21.81.1 - - [05/Oct/2026:05:00:13 +0200] "GET / HTTP/1.1" 403 183 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Safari/537.36"
34.21.81.1 - - [05/Oct/2026:05:00:13 +0200] "GET /sign-in HTTP/1.1" 403 183 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Safari/537.36"
34.21.81.1 - - [05/Oct/2026:05:00:13 +0200] "GET /users/login HTTP/1.1" 403 183 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Safari/537.36"
34.21.81.1 - - [05/Oct/2026:05:00:13 +0200] "GET /user/login HTTP/1.1" 403 183 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Safari/537.36"
34.21.81.1 - - [05/Oct/2026:05:00:13 +0200] "GET /login HTTP/1.1" 403 183 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/151.0.0.0 Safari/537.36"
34
...
show less
Bad Web Bot
Web App Attack
Anonymous
Bot / scanning and/or hacking attempts: GET /actuator/gateway/routes HTTP/2.0, GET /api/v1/configs H ...
show moreBot / scanning and/or hacking attempts: GET /actuator/gateway/routes HTTP/2.0, GET /api/v1/configs HTTP/2.0, POST /index.php?-d+allow_url_include%3don+-d+auto_prepend_file%, GET /api/datasources HTTP/2.0, POST /v1/graphql HTTP/2.0, POST /cgi-bin/php?-d+allow_url_include%3don+-d+auto_prepend_fil, GET /api/v1/loginmethod?organizationId=default HTTP/2.0, GET /_security/_authenticate HTTP/2.0, GET /api/providers HTTP/2.0
show less
(mod_security) mod_security triggered on hostname [redacted] 34.21.81.1 (US/United States/1.81.21.34 ...
show more(mod_security) mod_security triggered on hostname [redacted] 34.21.81.1 (US/United States/1.81.21.34.bc.googleusercontent.com): (CF_ENABLE)
show less
Automated malicious activity (Honeypot Trap) detected and blocked at the CDN edge by NordicCDN Shiel ...
show moreAutomated malicious activity (Honeypot Trap) detected and blocked at the CDN edge by NordicCDN Shield. Offenses: 7. First blocked: 2026-10-04.
show less
{"level":"info","ts":1791117153.9335945,"logger":"http.log.access.log1","msg":"handled request","req ...
show more{"level":"info","ts":1791117153.9335945,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"34.21.81.1","remote_port":"36746","client_ip":"34.21.81.1","proto":"HTTP/2.0","method":"GET","host":"status.oktonine.com","uri":"/server.key","headers":{"X-Middleware-Subrequest":["src/middleware:nowaf:src/middleware:src/middleware:src/middleware:src/middleware:middleware:middleware:nowaf:middleware:middleware:middleware:pages/_middleware"],"X-Nextjs-Data":["1"],"User-Agent":["Mozilla/5.0 (compatible; KimiBot/1.0; +https://kimi.ai/)"],"Accept":["*/*"],"Cookie":["REDACTED"],"Accept-Encoding":["gzip"]},"tls":{"resumed":false,"version":772,"cipher_suite":4865,"proto":"h2","server_name":"status.oktonine.com","ech":false}},"bytes_read":0,"user_id":"","duration":0.000119308,"size":0,"status":429,"resp_headers":{"Server":["Caddy"],"Alt-Svc":["h3=\":443\"; ma=2592000"],"Retry-After":["1"]}}
{"level":"info","ts":1791117153.9348037,"logger":"http.log.access.log1","msg":"handled
...
show less