This IP address has been reported a total of
24
times from
18 distinct
sources.
34.66.145.119 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
ModSecurity OWASP CRS (Anomaly Score: 10): Attempt to access a backup or working file;Restricted Fil ...
show moreModSecurity OWASP CRS (Anomaly Score: 10): Attempt to access a backup or working file;Restricted File Access Attempt;URL file extension is restricted by policy;
show less
JKweb Security: Severe and dangerous web attack detected. Vulnerability Wordpress Scanning, Director ...
show moreJKweb Security: Severe and dangerous web attack detected. Vulnerability Wordpress Scanning, Directory Brute-Forcing / Content Discovery, Predictable Resource Location / Forced Browsing, Scan for administration and debugging interfaces of modern frameworks, Scan for Spring Boot Actuator Leaks, Scan for Cloud & Infrastructure Credentials, Scan for Database & Backup Dumps, Scan for IDE- und Editor-Configurations, Scan for CI/CD Pipelines & GitHub Workflows etc. The Attacker is permanently banned by Fail2Ban, configurate by JKweb Security a brand of JKweb Service.
show less
[FriAug2818:49:30.8022962026][security2:error][pid2903477:tid2903651][client34.66.145.119:0]ModSecur ...
show more[FriAug2818:49:30.8022962026][security2:error][pid2903477:tid2903651][client34.66.145.119:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(\?:/\(\?:\^\|/\)\\\\\\\\.\(env\|git\|svn\|hg\|DS_Store\)\|/\(\?:wp-config\|\\\\\\\\.htaccess\|\\\\\\\\.htpasswd\)\|\\\\\\\\.\(\?:sql\|bak\|old\|log\)\$\)\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"156\"][id\"960720\"][msg\"Forbiddenfileaccessattempt\"][severity\"CRITICAL\"][hostname\"autodiscover.assistenza-pc-mac-ticino.ch\"][uri\"/storage/logs/laravel.log\"][unique_id\"apG8Gi3O8otnxmeBgP9WcAAAAFM\"]
show less
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show moreProbing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /wp-config.php.bak (+9 more) | 2026-08-28 14:59 UTC
show less
Hacking
Web App Attack
Anonymous
Bot / scanning and/or hacking attempts: GET /.env.production HTTP/1.1, GET /wp-config.php.bak HTTP/1 ...
show moreBot / scanning and/or hacking attempts: GET /.env.production HTTP/1.1, GET /wp-config.php.bak HTTP/1.1, GET /.env.local HTTP/1.1
show less
Hacking
Web App Attack
Anonymous
[da.kdns.gr] httpd-config-scan: sites=www.e-stiatorio.gr; logs=/var/log/httpd/domains/e-stiatorio.gr ...
show more[da.kdns.gr] httpd-config-scan: sites=www.e-stiatorio.gr; logs=/var/log/httpd/domains/e-stiatorio.gr.log; samples=/.env.save | /.env.old | /.env
show less
[FriAug2815:28:29.6037252026][security2:error][pid1549255:tid1549482][client34.66.145.119:0]ModSecur ...
show more[FriAug2815:28:29.6037252026][security2:error][pid1549255:tid1549482][client34.66.145.119:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".env\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"smservizi.ch.81-17-25-250.cpanel.site\"][uri\"/.env.prod\"][unique_id\"apGM_fm5tnyqJsXOe2qC5wAAAYU\"]
show less