This IP address has been reported a total of
16
times from
14 distinct
sources.
34.253.93.147 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
Reported from Nginx log analysis 6. Log: 34.253.93.147 - - [12/Jun/2026:xx:xx:xx 0200] "GET / HTTP/ ...
show moreReported from Nginx log analysis 6. Log: 34.253.93.147 - - [12/Jun/2026:xx:xx:xx 0200] "GET / HTTP/1.0" xxx xxx "-" "Mozilla/5.0 (compatible; NetcraftSurveyAgent/1.0; [email protected])" "-" "IE Ireland Dublin" "AS16509" "Amazon.com, Inc."
show less
(apache-useragents) Failed apache-useragents trigger with match [redacted] from 34.253.93.147 (IE/Ir ...
show more(apache-useragents) Failed apache-useragents trigger with match [redacted] from 34.253.93.147 (IE/Ireland/ec2-34-253-93-147.eu-west-1.compute.amazonaws.com)
show less
[FriJun1211:21:37.0125462026][security2:error][pid3477580:tid3477668][client34.253.93.147:0]ModSecur ...
show more[FriJun1211:21:37.0125462026][security2:error][pid3477580:tid3477668][client34.253.93.147:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"\(\?:\\\\\\\\bshodan\\\\\\\\b\|\\\\\\\\bcensysinspect\\\\\\\\b\|\\\\\\\\bcensys\\\\\\\\b\|\\\\\\\\bexpanse\\\\\\\\b\|\\\\\\\\bnetsystemsresearch\\\\\\\\b\|\\\\\\\\bnetcraftsurveyagent\\\\\\\\b\)\"atREQUEST_HEADERS:User-Agent.[file\"/etc/apache2/conf.d/modsec_rules/20_asl_useragents.conf\"][line\"73\"][id\"338801\"][rev\"1\"][msg\"Atomicorp.comWAFRules:Blockedinternet-widesurveyorUA\"][severity\"ERROR\"][hostname\"craniosacraltherapy.ch.136-243-54-122.cpanel.site\"][uri\"/\"][unique_id\"aivPoeNDrM_xZsYG7G43QAAAAJc\"]
show less
[FriJun1209:59:55.6037902026][security2:error][pid3333364:tid3333611][client34.253.93.147:0]ModSecur ...
show more[FriJun1209:59:55.6037902026][security2:error][pid3333364:tid3333611][client34.253.93.147:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"\(\?:\\\\\\\\bshodan\\\\\\\\b\|\\\\\\\\bcensysinspect\\\\\\\\b\|\\\\\\\\bcensys\\\\\\\\b\|\\\\\\\\bexpanse\\\\\\\\b\|\\\\\\\\bnetsystemsresearch\\\\\\\\b\|\\\\\\\\bnetcraftsurveyagent\\\\\\\\b\)\"atREQUEST_HEADERS:User-Agent.[file\"/etc/apache2/conf.d/modsec_rules/20_asl_useragents.conf\"][line\"73\"][id\"338801\"][rev\"1\"][msg\"Atomicorp.comWAFRules:Blockedinternet-widesurveyorUA\"][severity\"ERROR\"][hostname\"server-privato.ch\"][uri\"/\"][unique_id\"aiu8e9wHgJFILDt6MtZNOgAAARE\"]
show less
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.253.93.147 (IE/Ireland/ec2-34-253- ...
show more(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.253.93.147 (IE/Ireland/ec2-34-253-93-147.eu-west-1.compute.amazonaws.com): 2 in the last 3600 secs (0-196)
show less