This IP address has been reported a total of
37
times from
28 distinct
sources.
34.65.40.161 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show moreProbing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.env (+18 more) | 2026-09-17 18:13 UTC
show less
Hacking
Web App Attack
Anonymous
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: CH, Attack patterns: Word ...
show moreBlocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: CH, Attack patterns: WordPress scanning, Backup file probing, Cloud secrets probing
show less
34.65.40.161 - - [17/Sep/2026:04:46:15 +0200] "GET /.git/config HTTP/1.1" 403 5663 "-" "Mozilla/5.0 ...
show more34.65.40.161 - - [17/Sep/2026:04:46:15 +0200] "GET /.git/config HTTP/1.1" 403 5663 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.65.40.161 - - [17/Sep/2026:04:46:16 +0200] "GET /.env HTTP/1.1" 403 5663 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.65.40.161 - - [17/Sep/2026:04:46:16 +0200] "GET /.env.local HTTP/1.1" 403 5663 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.65.40.161 - - [17/Sep/2026:04:46:16 +0200] "GET /.env.production HTTP/1.1" 403 5663 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
Anonymous
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: CH, Attack patterns: Word ...
show moreBlocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: CH, Attack patterns: WordPress scanning, Backup file probing, Cloud secrets probing
show less
(mod_security) mod_security (id:949110) triggered by 34.65.40.161 (CH/Switzerland/161.40.65.34.bc.go ...
show more(mod_security) mod_security (id:949110) triggered by 34.65.40.161 (CH/Switzerland/161.40.65.34.bc.googleusercontent.com): N in the last X secs
show less
[16/Sep/2026:12:18:21 +0300] -- 34.65.40.161 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/ ...
show more[16/Sep/2026:12:18:21 +0300] -- 34.65.40.161 Ban reason: Scanner [CMS_GENERIC] | Request: GET /.git/config HTTP/1.1
show less
Bad Web Bot
Web App Attack
Showing 1 to
15
of 37 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ