This IP address has been reported a total of
43
times from
35 distinct
sources.
34.75.132.82 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
(mod_security) mod_security (id:930100) triggered by 34.75.132.82 (US/United States/82.132.75.34.bc. ...
show more(mod_security) mod_security (id:930100) triggered by 34.75.132.82 (US/United States/82.132.75.34.bc.googleusercontent.com): 5 in the last 300 secs (CF_ENABLE)
show less
Automated scan detected: GET /@fs/home/debian/.aws/credentials โ UA: Mozilla/5.0 (compatible; Google ...
show moreAutomated scan detected: GET /@fs/home/debian/.aws/credentials โ UA: Mozilla/5.0 (compatible; Google-Extended/1.0; +http://www.google.com/bot.html)
show less
{"level":"info","ts":1787911633.8949096,"logger":"http.log.access.log1","msg":"handled request","req ...
show more{"level":"info","ts":1787911633.8949096,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"34.75.132.82","remote_port":"22542","client_ip":"34.75.132.82","proto":"HTTP/1.1","method":"GET","host":"status.comparelifeplans.com","uri":"/","headers":{"User-Agent":["Mozilla/5.0 (iPhone; CPU iPhone OS 15_2 like Mac OS X) AppleWebKit/537.36 (KHTML, like Gecko) Version/15.0 EdgiOS/111.0.1661.76 Mobile/15E148 Safari/537.36"],"Accept":["*/*"],"Accept-Encoding":["gzip"]}},"bytes_read":0,"user_id":"","duration":0.000071346,"size":0,"status":308,"resp_headers":{"Location":["https://status.comparelifeplans.com/"],"Content-Type":[],"Server":["Caddy"],"Connection":["close"]}}
{"level":"info","ts":1787911637.805841,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"34.75.132.82","remote_port":"45234","client_ip":"34.75.132.82","proto":"HTTP/1.1","method":"GET","host":"status.comparelifeplans.com","uri":"/@fs/etc/passwd?raw??","headers":{"User-Age
...
show less
(mod_security) mod_security triggered on hostname [redacted] 34.75.132.82 (US/United States/82.132.7 ...
show more(mod_security) mod_security triggered on hostname [redacted] 34.75.132.82 (US/United States/82.132.75.34.bc.googleusercontent.com)
show less
[FriAug2810:01:53.2217612026][security2:error][pid2352926:tid2352963][client34.75.132.82:0]ModSecuri ...
show more[FriAug2810:01:53.2217612026][security2:error][pid2352926:tid2352963][client34.75.132.82:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"\(\?:\\\\\\\\b\(\?:\\\\\\\\.\(\?:ht\(\?:access\|passwd\|group\)\|www_\?acl\)\|global\\\\\\\\.asa\|httpd\\\\\\\\.conf\|boot\\\\\\\\.ini\|web.config\)\\\\\\\\b\|\(\|\^\|\\\\\\\\.\\\\\\\\.\)/etc/\|/\\\\\\\\.\(\?:history\|bash_history\|sh_history\|env\)\$\)\"atREQUEST_FILENAME.[file\"/etc/apache2/conf.d/modsec_rules/10_asl_rules.conf\"][line\"204\"][id\"390709\"][rev\"30\"][msg\"Atomicorp.comWAFRules:Attempttoaccessprotectedfileremotely\"][data\"/.env\"][severity\"CRITICAL\"][hostname\"vg13.ch\"][uri\"/@fs/.env\"][unique_id\"apFAcWw_ukbVyB5cHCz3gwAAABM\"]
show less