This IP address has been reported a total of
39
times from
31 distinct
sources.
34.80.173.160 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
(mod_security) mod_security triggered on hostname [redacted] 34.80.173.160 (TW/Taiwan/160.173.80.34. ...
show more(mod_security) mod_security triggered on hostname [redacted] 34.80.173.160 (TW/Taiwan/160.173.80.34.bc.googleusercontent.com): (CF_ENABLE)
show less
[ThuJun1100:16:57.4132252026][security2:error][pid1011669:tid1011802][client34.80.173.160:0]ModSecur ...
show more[ThuJun1100:16:57.4132252026][security2:error][pid1011669:tid1011802][client34.80.173.160:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"\(\?:\\\\\\\\b\(\?:\\\\\\\\.\(\?:ht\(\?:access\|passwd\|group\)\|www_\?acl\)\|global\\\\\\\\.asa\|httpd\\\\\\\\.conf\|boot\\\\\\\\.ini\|web.config\)\\\\\\\\b\|\(\|\^\|\\\\\\\\.\\\\\\\\.\)/etc/\|/\\\\\\\\.\(\?:history\|bash_history\|sh_history\|env\)\$\)\"atREQUEST_FILENAME.[file\"/etc/apache2/conf.d/modsec_rules/10_asl_rules.conf\"][line\"204\"][id\"390709\"][rev\"30\"][msg\"Atomicorp.comWAFRules:Attempttoaccessprotectedfileremotely\"][data\"/.env\"][severity\"CRITICAL\"][hostname\"mail.bicycleambulance.ch\"][uri\"/uploads/.env\"][unique_id\"ainiWWufBcAsK1WqmpEyEQAAAQ4\"]
show less
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show moreAuto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-06-09.
show less
Jun 10 17:19:46 34.80.173.160 TCP SPT=47126 DPT=443 SYN
Jun 10 17:19:46 34.80.173.160 TCP SPT=47132 ...
show moreJun 10 17:19:46 34.80.173.160 TCP SPT=47126 DPT=443 SYN
Jun 10 17:19:46 34.80.173.160 TCP SPT=47132 DPT=443 SYN
Jun 10 17:19:46 34.80.173.160 TCP SPT=47142 DPT=443 SYN
...
show less
DDoS Attack
Anonymous
Bot / scanning and/or hacking attempts: GET /uploads/.env HTTP/1.1, GET /internal/.env HTTP/1.1, GET ...
show moreBot / scanning and/or hacking attempts: GET /uploads/.env HTTP/1.1, GET /internal/.env HTTP/1.1, GET /app/.env.staging HTTP/1.1, GET /admin/.env.production HTTP/1.1, GET /services/.env.local HTTP/1.1, GET /.env.staging HTTP/1.1, GET /api/.env.local HTTP/1.1, GET /.env.txt HTTP/1.1, GET /admin/.env.backup HTTP/1.1, GET /.env HTTP/1.1, GET /app/.env.bak HTTP/1.1, GET /.env.backup HTTP/1.1, GET /src/.env.production HTTP/1.1
show less
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.80.173.160 (TW/Taiwan/160.173.80.3 ...
show more(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.80.173.160 (TW/Taiwan/160.173.80.34.bc.googleusercontent.com): 2 in the last 3600 secs (0-196)
show less