This IP address has been reported a total of
44
times from
34 distinct
sources.
34.24.19.33 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
{"level":"info","ts":1787925007.6687813,"logger":"http.log.access.log0","msg":"handled request","req ...
show more{"level":"info","ts":1787925007.6687813,"logger":"http.log.access.log0","msg":"handled request","request":{"remote_ip":"34.24.19.33","remote_port":"15668","client_ip":"34.24.19.33","proto":"HTTP/1.1","method":"GET","host":"q4mq.status.updown.io","uri":"/","headers":{"Accept-Encoding":["gzip"],"User-Agent":["Mozilla/5.0 (Macintosh; Intel Mac OS X 14_5) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.5 Safari/605.1.15"],"Accept":["*/*"]}},"bytes_read":0,"user_id":"","duration":0.000129307,"size":0,"status":308,"resp_headers":{"Server":["Caddy"],"Connection":["close"],"Location":["https://q4mq.status.updown.io/"],"Content-Type":[]}}
{"level":"info","ts":1787925012.629852,"logger":"http.log.access.log0","msg":"handled request","request":{"remote_ip":"34.24.19.33","remote_port":"14208","client_ip":"34.24.19.33","proto":"HTTP/1.1","method":"GET","host":"q4mq.status.updown.io","uri":"/@fs/app/.env?raw??","headers":{"User-Agent":["Mozilla/5.0 (compatible; GrokBot/1.0; +https://x.ai/grokbot
...
show less
2026-08-28 13:26:32 GET /@fs/app/.env?raw?? [301] && 2026-08-28 13:26:32 GET /@fs/.env?raw?? [301] & ...
show more2026-08-28 13:26:32 GET /@fs/app/.env?raw?? [301] && 2026-08-28 13:26:32 GET /@fs/.env?raw?? [301] && 2026-08-28 13:26:32 GET /@fs/src/.env?raw?? [301] && 126 more within 20 minutes
show less
Aggressive web search of vulnerable pages: /uploads../.env /images../.env /.docker/.env /assets../.e ...
show moreAggressive web search of vulnerable pages: /uploads../.env /images../.env /.docker/.env /assets../.env /.env.local ...
show less
[FriAug2811:13:41.3631642026][security2:error][pid2436851:tid2436884][client34.24.19.33:0]ModSecurit ...
show more[FriAug2811:13:41.3631642026][security2:error][pid2436851:tid2436884][client34.24.19.33:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"\(\?:\\\\\\\\b\(\?:\\\\\\\\.\(\?:ht\(\?:access\|passwd\|group\)\|www_\?acl\)\|global\\\\\\\\.asa\|httpd\\\\\\\\.conf\|boot\\\\\\\\.ini\|web.config\)\\\\\\\\b\|\(\|\^\|\\\\\\\\.\\\\\\\\.\)/etc/\|/\\\\\\\\.\(\?:history\|bash_history\|sh_history\|env\)\$\)\"atREQUEST_FILENAME.[file\"/etc/apache2/conf.d/modsec_rules/10_asl_rules.conf\"][line\"204\"][id\"390709\"][rev\"30\"][msg\"Atomicorp.comWAFRules:Attempttoaccessprotectedfileremotely\"][data\"/.env\"][severity\"CRITICAL\"][hostname\"spazi-web-hosting.ch\"][uri\"/@fs/root/.env\"][unique_id\"apFRRXVG_2lP3OSblcxU-AAAABQ\"]
show less
(mod_security) mod_security triggered on hostname [redacted] 34.24.19.33 (US/United States/33.19.24. ...
show more(mod_security) mod_security triggered on hostname [redacted] 34.24.19.33 (US/United States/33.19.24.34.bc.googleusercontent.com)
show less
(modsecurity) srv101 ModSecurity 34.24.19.33 (US/United States/33.19.24.34.bc.googleusercontent.com) ...
show more(modsecurity) srv101 ModSecurity 34.24.19.33 (US/United States/33.19.24.34.bc.googleusercontent.com): 30 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
Anonymous
(mod_security) mod_security triggered on hostname [redacted] 34.24.19.33 (US/United States/33.19.24. ...
show more(mod_security) mod_security triggered on hostname [redacted] 34.24.19.33 (US/United States/33.19.24.34.bc.googleusercontent.com)
show less
Scanning for config [GET /config.json.js] [Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebK ...
show moreScanning for config [GET /config.json.js] [Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko; compatible; Perplexity-User/1.0; +https://perplexity.ai/perplexity-user) Chrome/114.0.3223.114 Safari/537.36 Edg/114.0.3223.114]
show less
(y3) Failed access -byebye- from 34.24.19.33 (US/United States/33.19.24.34.bc.googleusercontent.com) ...
show more(y3) Failed access -byebye- from 34.24.19.33 (US/United States/33.19.24.34.bc.googleusercontent.com): (CF_ENABLE)
show less