This IP address has been reported a total of
247
times from
109 distinct
sources.
34.52.137.61 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Connection to port 5801 with data transfer.
Data preview: GET / HTTP/1.1
Host: 87.229.95.155:5801
...
show moreConnection to port 5801 with data transfer.
Data preview: GET / HTTP/1.1
Host: 87.229.95.155:5801
User-Agent: python-requests/2.32.5
Accept-Encoding: gzip,
show less
05/29/2026-09:05:47.708095 34.52.137.61 Protocol: 6 ET SCAN Suspicious inbound to PostgreSQL port 54 ...
show more05/29/2026-09:05:47.708095 34.52.137.61 Protocol: 6 ET SCAN Suspicious inbound to PostgreSQL port 5432
show less
Honeypot detection: FTP brute-force or anonymous access attempt on port 21. Severity: MEDIUM. Aaran. ...
show moreHoneypot detection: FTP brute-force or anonymous access attempt on port 21. Severity: MEDIUM. Aaran.cloud
show less
Connection to port 1400 with data transfer.
Data preview: GET / HTTP/1.1
Host: 67.215.244.172:1400
...
show moreConnection to port 1400 with data transfer.
Data preview: GET / HTTP/1.1
Host: 67.215.244.172:1400
User-Agent: python-requests/2.32.5
Accept-Encoding: gzip
show less
[ThuMay2812:23:19.7257282026][security2:error][pid465933:tid466042][client34.52.137.61:0]ModSecurity ...
show more[ThuMay2812:23:19.7257282026][security2:error][pid465933:tid466042][client34.52.137.61:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(curl\|wget\|python\|nikto\|sqlmap\|acunetix\|fimap\|dirbuster\|cmsmap\)\"atREQUEST_HEADERS:User-Agent.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"217\"][id\"990210\"][msg\"Suspicioususer-agentblocked\"][hostname\"www.modularss.com\"][uri\"/\"][unique_id\"ahgXl7QquzUqRqCKEG15ZgAAAQU\"]
show less
Honeypot detection: Elasticsearch unauthorized access / data leak attempt on port 9200. Severity: ME ...
show moreHoneypot detection: Elasticsearch unauthorized access / data leak attempt on port 9200. Severity: MEDIUM. Aaran.cloud
show less
Hacking
Exploited Host
Showing 16 to
30
of 247 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ