This IP address has been reported a total of
37
times from
28 distinct
sources.
34.47.139.198 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show moreAuto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-14.
show less
[MonJun1506:27:39.8427162026][security2:error][pid3364310:tid3364333][client34.47.139.198:0]ModSecur ...
show more[MonJun1506:27:39.8427162026][security2:error][pid3364310:tid3364333][client34.47.139.198:0]ModSecurity:Accessdeniedwithcode403\(phase2\).OperatorGEmatched5atTX:anomaly_score.[file\"/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf\"][line\"94\"][id\"949110\"][msg\"InboundAnomalyScoreExceeded\(TotalScore:10\)\"][severity\"CRITICAL\"][ver\"OWASP_CRS/3.3.9\"][tag\"application-multi\"][tag\"language-multi\"][tag\"platform-multi\"][tag\"attack-generic\"][hostname\"hosting-royal.ch.136-243-54-122.cpanel.site\"][uri\"/v1/.git/config\"][unique_id\"ai9_O8timeK0es7A4q7xNQAAAFQ\"]
show less
CrowdSec: Ip 34.47.139.198 performed 'crowdsecurity/http-sensitive-files' (5 events over 42.94728ms) ...
show moreCrowdSec: Ip 34.47.139.198 performed 'crowdsecurity/http-sensitive-files' (5 events over 42.94728ms) at 2026-06-15 04:10:50.622969599 +0000 UTC (scenario: crowdsecurity/http-sensitive-files)
show less
Triggered Cloudflare WAF (firewallCustom) from IN.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show moreTriggered Cloudflare WAF (firewallCustom) from IN.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /symfony/.git/config
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/72.0.3626.81 Safari/537.36
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less