This IP address has been reported a total of
30
times from
21 distinct
sources.
34.80.21.84 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.80.21.84 (TW/Taiwan/84.21.80.34.bc ...
show more(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.80.21.84 (TW/Taiwan/84.21.80.34.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less
caddy probes: env-probe: GET /.env.copy(DROP), GET /.env.default(DROP), GET /.env.demo(DROP), GET /. ...
show morecaddy probes: env-probe: GET /.env.copy(DROP), GET /.env.default(DROP), GET /.env.demo(DROP), GET /.env.development.local(DROP), GET /.env.example(DROP), GET /.env.live(DROP), GET /.env.pre-production(DROP), GET /.env.prod(DROP), GET /.env.production.bak(DROP), GET /.env.qa(DROP), GET /.env.sample(DROP), GET /.env.stage(DROP), GET /.env.test(DROP), GET /.env.uat(DROP), GET /.env~(DROP), GET /api/.env(DROP), GET /api/.env.dev(DROP), GET /api/v1/.env(DROP), GET /api/v3/.env(DROP), GET /app/.env.local(DROP), GET /prod/.env(DROP), GET /stage/.env(DROP), GET /staging/.env(DROP), GET /v3/.env(DROP) | web: GET /env(DROP)
show less
(PERMBLOCK) 34.80.21.84 (TW/Taiwan/84.21.80.34.bc.googleusercontent.com) has had more than 4 temp bl ...
show more(PERMBLOCK) 34.80.21.84 (TW/Taiwan/84.21.80.34.bc.googleusercontent.com) has had more than 4 temp blocks in the last 86400 secs; Ports: *; Direction: 1; Trigger: LF_PERMBLOCK_COUNT; Logs:
show less
{"level":"info","ts":1780997470.505287,"logger":"http.log.access.log1","msg":"handled request","requ ...
show more{"level":"info","ts":1780997470.505287,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"34.80.21.84","remote_port":"48602","client_ip":"34.80.21.84","proto":"HTTP/1.1","method":"GET","host":"bupdate.zyxwvuupdate.mlknmlkjihgjihgc7402a95-6fc9-4756-b4e6-fa6c7eeb29c6.random.159.89.98.98.nip.io","uri":"/.env.orig","headers":{"Accept-Charset":["utf-8"],"Accept-Encoding":["gzip"],"Connection":["close"],"User-Agent":["Mozilla/5.0 (Windows NT 6.1; rv:21.0) Gecko/20130401 Firefox/21.0"]}},"bytes_read":0,"user_id":"","duration":0.000091574,"size":0,"status":308,"resp_headers":{"Server":["Caddy"],"Connection":["close"],"Location":["https://bupdate.zyxwvuupdate.mlknmlkjihgjihgc7402a95-6fc9-4756-b4e6-fa6c7eeb29c6.random.159.89.98.98.nip.io/.env.orig"],"Content-Type":[]}}
{"level":"info","ts":1780997470.5058634,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"34.80.21.84","remote_port":"48600","client_ip":"34.80.21.84","proto":"HTTP/1.1","
...
show less
[TueJun0911:19:07.2333282026][security2:error][pid358318:tid360152][client34.80.21.84:0]ModSecurity: ...
show more[TueJun0911:19:07.2333282026][security2:error][pid358318:tid360152][client34.80.21.84:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".env\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"364\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"cpanel.creazione-siti-ticino.ch\"][uri\"/.env.development.local\"][unique_id\"aifai59V_jaKZqXTnQss7QAAANM\"]
show less
http-sensitive-files - IP: 34.80.21.84 - time="2026-06-09T09:22:16+02:00" level=info msg="(555f66b4 ...
show morehttp-sensitive-files - IP: 34.80.21.84 - time="2026-06-09T09:22:16+02:00" level=info msg="(555f66b4f6a74558bc11e3f93469658es8App0Mcc0TKEeje/crowdsec) crowdsecurity/http-sensitive-files by ip 34.80.21.84 (TW/396982) : 4h ban on Ip 34.80.21.84" module=db
show less