This IP address has been reported a total of
33
times from
27 distinct
sources.
34.39.224.42 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
(mod_security) mod_security (id:210492) triggered by 34.39.224.42 (BR/Brazil/42.224.39.34.bc.googleu ...
show more(mod_security) mod_security (id:210492) triggered by 34.39.224.42 (BR/Brazil/42.224.39.34.bc.googleusercontent.com): 5 in the last 300 secs (CF_ENABLE)
show less
Confirmed malicious by STILWaters CTI platform (score=100, sources=1)
Hacking
Brute-Force
SSH
Anonymous
scanning for potential vulnerable apps (wordpress etc.) and database accesses (ISR). Requested URI: ...
show morescanning for potential vulnerable apps (wordpress etc.) and database accesses (ISR). Requested URI: /.env.dev
show less
[ThuAug2704:55:29.8321392026][security2:error][pid587524:tid587612][client34.39.224.42:0]ModSecurity ...
show more[ThuAug2704:55:29.8321392026][security2:error][pid587524:tid587612][client34.39.224.42:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(\?:/\(\?:\^\|/\)\\\\\\\\.\(env\|git\|svn\|hg\|DS_Store\)\|/\(\?:wp-config\|\\\\\\\\.htaccess\|\\\\\\\\.htpasswd\)\|\\\\\\\\.\(\?:sql\|bak\|old\|log\)\$\)\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"156\"][id\"960720\"][msg\"Forbiddenfileaccessattempt\"][severity\"CRITICAL\"][hostname\"centrocrescendo.ch.136-243-54-122.cpanel.site\"][uri\"/wp-config.php~\"][unique_id\"ao-nIVkS20lpnVi5oGwqYAAAAMI\"]
show less
Aggressive web search of vulnerable pages: /.env.backup /.env.save /.env.dev /.env.local /.env.prod ...
show moreAggressive web search of vulnerable pages: /.env.backup /.env.save /.env.dev /.env.local /.env.prod /.env.example /.env.bak /.env.old /.env.pro ...
show less