This IP address has been reported a total of
96
times from
57 distinct
sources.
34.82.139.106 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: US, Attack patterns: Word ...
show moreBlocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: US, Attack patterns: WordPress scanning, Backup file probing, Cloud secrets probing
show less
215 attacks on config grabbing URLs (type 2), PHP URLs, VC URLs, env grabbing URLs, password grabbin ...
show more215 attacks on config grabbing URLs (type 2), PHP URLs, VC URLs, env grabbing URLs, password grabbing URLs, site downloads:
GET /config/gcp.json HTTP/1.1
GET /config/config.php HTTP/1.1
GET /.git/config HTTP/1.1
GET /.env.save HTTP/1.1
GET /home/ubuntu/.aws/credentials HTTP/1.1
GET /backup.sql HTTP/1.1
show less
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show moreAuto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-08-29.
show less
Web App Attack
SSH
Hacking
Anonymous
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: US, Attack patterns: Word ...
show moreBlocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: US, Attack patterns: WordPress scanning, Backup file probing, Cloud secrets probing
show less
LF_MODSEC: (mod_security) mod_security (id:949110) triggered by 34.82.139.106 (US/United States/106. ...
show moreLF_MODSEC: (mod_security) mod_security (id:949110) triggered by 34.82.139.106 (US/United States/106.139.82.34.bc.googleusercontent.com): 2 in the last 3600 secs
show less
Web App Attack
Anonymous
(mod_security) mod_security triggered on hostname [redacted] 34.82.139.106 (US/United States/106.139 ...
show more(mod_security) mod_security triggered on hostname [redacted] 34.82.139.106 (US/United States/106.139.82.34.bc.googleusercontent.com)
show less
(mod_security) mod_security (id:949110) triggered by 34.82.139.106 (US/United States/106.139.82.34.b ...
show more(mod_security) mod_security (id:949110) triggered by 34.82.139.106 (US/United States/106.139.82.34.bc.googleusercontent.com): N in the last X secs
show less
{"level":"info","ts":1788066291.617457,"logger":"http.log.access.log0","msg":"handled request","requ ...
show more{"level":"info","ts":1788066291.617457,"logger":"http.log.access.log0","msg":"handled request","request":{"remote_ip":"34.82.139.106","remote_port":"25134","client_ip":"34.82.139.106","proto":"HTTP/1.1","method":"GET","host":"4pkn.status.updown.io","uri":"/","headers":{"User-Agent":["Mozilla/5.0 (Linux; Android 13; SM-G935R6; Build/TP1A.180718.91) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/122.0.6261.127 Mobile Safari/537.36"],"Accept":["*/*"],"Accept-Encoding":["gzip"]}},"bytes_read":0,"user_id":"","duration":0.000067539,"size":0,"status":308,"resp_headers":{"Server":["Caddy"],"Connection":["close"],"Location":["https://4pkn.status.updown.io/"],"Content-Type":[]}}
{"level":"info","ts":1788066295.6080647,"logger":"http.log.access.log0","msg":"handled request","request":{"remote_ip":"34.82.139.106","remote_port":"14588","client_ip":"34.82.139.106","proto":"HTTP/1.1","method":"GET","host":"4pkn.status.updown.io","uri":"/@fs/.env.development?raw??","headers":{"User-Agent":["Mozilla/5.0
...
show less
DDoS Attack
Web App Attack
Showing 1 to
15
of 96 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ