AbuseIPDB » 34.12.144.85
34.12.144.85 was found in our database!
This IP was reported 7 times. Confidence of
Abuse
is 0% : ?
ISP
Google LLC
Usage Type
Data Center/Web Hosting/Transit
ASN
AS396982
Hostname(s)
85.144.12.34.bc.googleusercontent.com
Domain Name
google.com
Country
๐ณ๐ฑ
Netherlands
City
Groningen, Groningen
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 34.12.144.85 :
This IP address has been reported a total of
7
times from
7 distinct
sources.
34.12.144.85 was first reported on
May 10th 2026 , and the most recent report was
3 months ago .
Old Reports:
The most recent abuse report for this IP address is from
3 months ago
. It is possible that this IP is no longer involved in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ซ๐ท
zulzeen
2026-05-19 11:57:04
(3 months ago)
[incypit-web] Banned by Fail2ban (Jail: syswarden-secretshunter)
Hacking
Web App Attack
Bad Web Bot
Port Scan
๐ณ๐ฑ
ParaBug
2026-05-19 11:26:50
(3 months ago)
34.12.144.85 - - [19/May/2026:13:26:49 +0200] "GET /.git/config HTTP/1.1" 403 3020 "-" "Mozilla/5.0 ...
show more
34.12.144.85 - - [19/May/2026:13:26:49 +0200] "GET /.git/config HTTP/1.1" 403 3020 "-" "Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/71.0.3578.98 Safari/537.36"
...
show less
Phishing
Brute-Force
Web App Attack
๐ซ๐ท
geeek
2026-05-19 11:26:13
(3 months ago)
Port scanning: 8080 TCP Blocked
Port Scan
๐ฌ๐ง
findlab
2026-05-15 03:45:02
(4 months ago)
Backdrop CMS module - malicious activity detected
Bad Web Bot
Web App Attack
๐ฉ๐ช
4server
2026-05-11 02:13:46
(4 months ago)
[MonMay1104:13:43.4205592026][security2:error][pid1839413:tid1839522][client34.12.144.85:0]ModSecuri ...
show more
[MonMay1104:13:43.4205592026][security2:error][pid1839413:tid1839522][client34.12.144.85:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:5\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"www.centrocrescendo.ch.136-243-54-122.cpanel.site\"][uri\"/actuator/heapdump\"][unique_id\"agE7V50R4p6taRoFiZ-okQAAANM\"]
show less
Port Scan
Brute-Force
Web App Attack
Anonymous
2026-05-11 00:37:03
(4 months ago)
(caddyscan) Scanner path probe from 34.12.144.85 (NL/The Netherlands/85.144.12.34.bc.googleuserconte ...
show more
(caddyscan) Scanner path probe from 34.12.144.85 (NL/The Netherlands/85.144.12.34.bc.googleusercontent.com): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [REDACTED] 200 2627 34.12.144.85 - - [11/May/2026:00:03:59 +0000] "GET /actuator/configprops HTTP/1.1"
[REDACTED] 200 2627 34.12.144.85 - - [11/May/2026:00:04:00 +0000] "GET /actuator/heapdump HTTP/1.1"
[REDACTED] 200 2627 34.12.144.85 - - [11/May/2026:00:04:00 +0000] "GET /actuator/env HTTP/1.1"
[REDACTED] 200 2627 34.12.144.85 - - [11/May/2026:00:36:59 +0000] "GET /actuator/configprops HTTP/1.1"
[REDACTED] 200 2627 34.12.144.85 - - [11/May/2026:00:36:59 +0000] "GET /actuator/heapdump HTTP/1.1"
show less
Port Scan
๐บ๐ธ
markawes
2026-05-10 23:25:56
(4 months ago)
[markis] Auto banned by Fail2Ban. Reason: Malicious web scan / attempted access to sensitive paths. ...
show more
[markis] Auto banned by Fail2Ban. Reason: Malicious web scan / attempted access to sensitive paths. Evidence:
34.12.144.85 - - [11/May/2026:00:25:54 +0100] "GET /actuator/env HTTP/1.1" 404 3057 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_13_6; rv:57.0) Gecko/20100101 Firefox/57.0"
34.12.144.85 - - [11/May/2026:00:25:55 +0100] "GET /actuator/heapdump HTTP/1.1" 404 3057 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.4 (KHTML like Gecko) Chrome/22.0.1229.56 Safari/537.4"
34.12.144.85 - - [11/May/2026:00:25:55 +0100] "GET /actuator/configprops HTTP/1.1" 404 3056 "-" "Mozilla/5.0 (Symbian/3; Series60/5.2 NokiaC6-01/011.010; Profile/MIDP-2.1 Configuration/CLDC-1.1 ) AppleWebKit/525 (KHTML, like Gecko) Version/3.0 BrowserNG/7.2.7.2 3gpp-gba"
show less
Port Scan
Hacking
Web App Attack
Showing 1 to
7
of 7 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: