This IP address has been reported a total of
33
times from
29 distinct
sources.
34.152.17.53 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
Germany
with 7
reports;
Spain
with 5
reports;
Netherlands
with 4
reports.
The most common categories in these recent reports were:
Web App Attack
25
times;
Brute-Force
9
times;
Bad Web Bot
9
times;
Hacking
7
times;
SSH
4
times;
Other
9
times.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
โ [02/10/26] This IP has been detected performing multiple attacks on websites (1616 attempts blocke ...
show moreโ [02/10/26] This IP has been detected performing multiple attacks on websites (1616 attempts blocked). Potential malicious activity.
show less
โ [01/10/26] This IP has been detected performing multiple attacks on websites (1616 attempts blocke ...
show moreโ [01/10/26] This IP has been detected performing multiple attacks on websites (1616 attempts blocked). Potential malicious activity.
show less
{"level":"info","ts":1790866163.164595,"logger":"http.log.access.log1","msg":"handled request","requ ...
show more{"level":"info","ts":1790866163.164595,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"34.152.17.53","remote_port":"56336","client_ip":"34.152.17.53","proto":"HTTP/2.0","method":"GET","host":"status.narscosmetics.com","uri":"/api/v1/models","headers":{"Accept":["*/*"],"Cookie":["REDACTED"],"Accept-Encoding":["gzip"],"X-Middleware-Subrequest":["src/middleware:nowaf:src/middleware:src/middleware:src/middleware:src/middleware:middleware:middleware:nowaf:middleware:middleware:middleware:pages/_middleware"],"X-Nextjs-Data":["1"],"User-Agent":["Mozilla/5.0 (compatible; Google-Extended; +http://www.google.com/bot.html)"]},"tls":{"resumed":false,"version":772,"cipher_suite":4865,"proto":"h2","server_name":"status.narscosmetics.com","ech":false}},"bytes_read":0,"user_id":"","duration":0.000380947,"size":0,"status":429,"resp_headers":{"Server":["Caddy"],"Alt-Svc":["h3=\":443\"; ma=2592000"],"Retry-After":["1"]}}
{"level":"info","ts":1790866163.1665964,"logger":"ht
...
show less
[ThuOct0115:11:39.2382842026][security2:error][pid3699936:tid3699953][client34.152.17.53:0]ModSecuri ...
show more[ThuOct0115:11:39.2382842026][security2:error][pid3699936:tid3699953][client34.152.17.53:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Matchedphrase\"proc/self/\"atARGS:0.[file\"/etc/apache2/conf.d/modsec_rules/10_asl_rules.conf\"][line\"135\"][id\"344360\"][rev\"5\"][msg\"Atomicorp.comWAFRules:UnauthorizedOperatingSystemFileAccessAttempt\"][data\"MatchedData:proc/self/foundwithinARGS:0:{\\\\x22then\\\\x22:\\\\x22\$1:__proto__:then\\\\x22\,\\\\x22status\\\\x22:\\\\x22resolved_model\\\\x22\,\\\\x22reason\\\\x22:-1\,\\\\x22value\\\\x22:\\\\x22{/\\\\x22then/\\\\x22:/\\\\x22\$b1337/\\\\x22}\\\\x22\,\\\\x22_response\\\\x22:{\\\\x22_prefix\\\\x22:\\\\x22process.mainmodule.require\(\'child_process\'\).execsync\(\'env2\>/dev/null\|\|cat/proc/self/environ2\>/dev/null\'\)\;\\\\x22\,\\\\x22_formdata\\\\x22:{\\\\x22get\\\\x22:\\\\x22\$1:constructor:constructor\\\\x22}}}\"][severity\"CRITICAL\"][tag\"attack-lfi\"][hostname\"viaggi-marocco-lugano.ch\"][uri\"/\"][unique_id\"ar5cC7wYqc93QjMjPixT9wAAAM8\"]
show less
BAD BOT - Detected and Blocked.. Matched phrase "OAI-SearchBot" at REQUEST_HEADERS:user-agent. (1100 ...
show moreBAD BOT - Detected and Blocked.. Matched phrase "OAI-SearchBot" at REQUEST_HEADERS:user-agent. (1100000-135)
show less