This IP address has been reported a total of
28
times from
27 distinct
sources.
34.79.243.239 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
United States of America
with 11
reports;
Germany
with 4
reports;
Brazil
with 2
reports.
The most common categories in these recent reports were:
Web App Attack
13
times;
Hacking
11
times;
Port Scan
9
times;
Bad Web Bot
7
times;
Brute-Force
4
times;
Other
4
times.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Probed HTTPS/443 with a burst of malformed HTTP requests (GET/HEAD/OPTIONS/POST/WNIP on / and /favic ...
show moreProbed HTTPS/443 with a burst of malformed HTTP requests (GET/HEAD/OPTIONS/POST/WNIP on / and /favicon.ico) using a generic 'Mozilla/5.0 (compatible)' user-agent; all requests were rejected with HTTP 400. Known-abuse data-center IP.
Target: HTTPS 443 โ GET/HEAD/OPTIONS/POST/WNIP /, GET /favicon.ico, generic user-agent "Mozilla/5.0 (compatible)"
Seen: 2026-09-28 07:56 EDT
- 2026-09-28 07:56:16 EDT โ POST / HTTP/1.1, UA 'Mozilla/5.0 (compatible)', returned 400
- 2026-09-28 07:56:16 EDT โ WNIP / HTTP/1.1, UA 'Mozilla/5.0 (compatible)', returned 400
- 2026-09-28 07:56:17 EDT โ HEAD / and GET / HTTP/1.1, UA 'Mozilla/5.0 (compatible)', both returned 400
- 2026-09-28 07:56:18-19 EDT โ GET /favicon.ico, OPTIONS / and additional GET / requests, UA 'Mozilla/5.0 (compatible)', all returned 400
show less
Web App Attack
Bad Web Bot
Port Scan
Anonymous
2026-09-28 07:43:47 34.79.243.239:6898 WARNING: Bad encapsulated packet length from peer (5635), whi ...
show more2026-09-28 07:43:47 34.79.243.239:6898 WARNING: Bad encapsulated packet length from peer (5635), which must be > 0 and <= 1768 -- please ensure that --tun-mtu or --link-mtu is equal on both peers -- this condition could also indicate a possible active attack on the TCP link -- [Attempting restart...]
2026-09-28 07:43:48 34.79.243.239:6902 WARNING: Bad encapsulated packet length from peer (15104), which must be > 0 and <= 1768 -- please ensure that --tun-mtu or --link-mtu is equal on both peers -- this condition could also indicate a possible active attack on the TCP link -- [Attempting restart...]
2026-09-28 07:43:48 34.79.243.239:6908 WARNING: Bad encapsulated packet length from peer (18245), which must be > 0 and <= 1768 -- please ensure that --tun-mtu or --link-mtu is equal on both peers -- this condition could also indicate a possible active attack on the TCP link -- [Attempting restart...]
...
show less
[Zorvexus edge-defense] Edge-block (probe URI / bad UA / hostile vhost)
Trigger: 2ร edge-block in 10 ...
show more[Zorvexus edge-defense] Edge-block (probe URI / bad UA / hostile vhost)
Trigger: 2ร edge-block in 10m window.
Origin: BE / AS396982 Google LLC
Active: 09:07:57โ09:08:34 UTC
Volume: 3 HTTP req
Probed: /, Explorer
Status mix: 444ร2 400ร1
Vhost fishing: 67.217.240.72
UA: "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/127.0.0.0 Safari/537.36"
Auto-banned 30d. zorvexus-banner.
show less
Attack detected by Fortinet - misc: Java.Debug.Wire.Protocol.Insecure.Configuration - 2026-09-27 23: ...
show moreAttack detected by Fortinet - misc: Java.Debug.Wire.Protocol.Insecure.Configuration - 2026-09-27 23:48:05 - Source Port 29468
show less
Multiple (2) times attack on https port 443: Illegal http header (DHTL /)
09:05:56 Illegal http h ...
show moreMultiple (2) times attack on https port 443: Illegal http header (DHTL /)
09:05:56 Illegal http header rejected by modsecurity (GET /)
show less
Hacking
Web App Attack
Anonymous
34.79.243.239 - - [28/Sep/2026:08:26:25 +0200] "GET / HTTP/1.1" 403 5692 "-" "Mozilla/5.0 (Windows N ...
show more34.79.243.239 - - [28/Sep/2026:08:26:25 +0200] "GET / HTTP/1.1" 403 5692 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/127.0.0.0 Safari/537.36" ...
show less