This IP address has been reported a total of
30
times from
25 distinct
sources.
34.41.220.214 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
(mod_security) mod_security (id:949110) triggered by 34.41.220.214 (US/United States/214.220.41.34.b ...
show more(mod_security) mod_security (id:949110) triggered by 34.41.220.214 (US/United States/214.220.41.34.bc.googleusercontent.com): N in the last X secs
show less
Web App Attack
Anonymous
Bot / scanning and/or hacking attempts: GET /actuator/configprops HTTP/1.1, GET /wp-config.php.bak H ...
show moreBot / scanning and/or hacking attempts: GET /actuator/configprops HTTP/1.1, GET /wp-config.php.bak HTTP/1.1, GET /.env.bak HTTP/1.1, GET /.env.prod HTTP/1.1, GET /.env.production HTTP/1.1, GET /actuator/env HTTP/1.1, GET /_ignition/health-check HTTP/1.1, GET /.env.backup HTTP/1.1
show less
CrowdSec local HTTP alert
scenario: crowdsecurity/http-probing
alert_id: 5470
events: 11
created_at: ...
show moreCrowdSec local HTTP alert
scenario: crowdsecurity/http-probing
alert_id: 5470
events: 11
created_at: 2026-08-28T16:52:27Z
message: Ip 34.41.220.214 performed 'crowdsecurity/http-probing' (11 events over 137.856588ms) at 2026-08-28 16:52:27.36804209 +0000 UTC
target_uri: ["/.env.bak","/_ignition/health-check","/actuator/env","/.env.save","/wp-config.php~","/.env.backup","/crusader-404-probe","/.env.prod","/storage/logs/laravel.log","/.env.local","/.env"]
method: ["GET"]
status: ["404"]
user_agent: ["crusader-worker/1.0"]
show less
Aggressive web search of vulnerable pages: /.env.dev /.env.save /.env.example /.env.prod /.env.bak / ...
show moreAggressive web search of vulnerable pages: /.env.dev /.env.save /.env.example /.env.prod /.env.bak /.env /.env.local /.env.old /.env.production ...
show less
ModSecurity OWASP CRS (Anomaly Score: 10): Attempt to access a backup or working file;Restricted Fil ...
show moreModSecurity OWASP CRS (Anomaly Score: 10): Attempt to access a backup or working file;Restricted File Access Attempt;URL file extension is restricted by policy;
show less
(mod_security) mod_security triggered on hostname [redacted] 34.41.220.214 (US/United States/214.220 ...
show more(mod_security) mod_security triggered on hostname [redacted] 34.41.220.214 (US/United States/214.220.41.34.bc.googleusercontent.com)
show less
[28/Aug/2026:17:56:06 +0300] -- 34.41.220.214 Ban reason: Scanner [SENSITIVE_FILES] | Request: GET / ...
show more[28/Aug/2026:17:56:06 +0300] -- 34.41.220.214 Ban reason: Scanner [SENSITIVE_FILES] | Request: GET /storage/logs/laravel.log HTTP/1.1
show less