This IP address has been reported a total of
26
times from
21 distinct
sources.
34.97.147.20 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
(modsecurity) srv102 ModSecurity 34.97.147.20 (JP/Japan/20.147.97.34.bc.googleusercontent.com): 30 i ...
show more(modsecurity) srv102 ModSecurity 34.97.147.20 (JP/Japan/20.147.97.34.bc.googleusercontent.com): 30 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
CrowdSec detected automated probing for exposed files / admin panels from this IP (6 matching events ...
show moreCrowdSec detected automated probing for exposed files / admin panels from this IP (6 matching events in our own server logs; scenario "http-sensitive-files"). Behavioural detection, auto-banned at the firewall.
show less
Bad Web Bot
Web App Attack
Anonymous
Bot / scanning and/or hacking attempts: POST / HTTP/1.1, GET /.env.staging HTTP/1.1, GET /opt/.env H ...
show moreBot / scanning and/or hacking attempts: POST / HTTP/1.1, GET /.env.staging HTTP/1.1, GET /opt/.env HTTP/1.1, GET /joomla/.env HTTP/1.1, GET /shopify/.env HTTP/1.1, GET /drupal/.env HTTP/1.1, GET /symfony/.env HTTP/1.1, GET /build/.env HTTP/1.1, GET /html/.env HTTP/1.1, GET /cms/.env HTTP/1.1, GET /wordpress/.env HTTP/1.1, GET /laravel/.env HTTP/1.1, GET /magento/.env HTTP/1.1, GET /wp/.env HTTP/1.1, GET /.env.production HTTP/1.1
show less
[FriSep1104:34:29.5043892026][security2:error][pid1101282:tid1101303][client34.97.147.20:0]ModSecuri ...
show more[FriSep1104:34:29.5043892026][security2:error][pid1101282:tid1101303][client34.97.147.20:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Patternmatch\"\(\?i\)\(\?:/\(\?:\^\|/\)\\\\\\\\.\(env\|git\|svn\|hg\|DS_Store\)\|/\(\?:wp-config\|\\\\\\\\.htaccess\|\\\\\\\\.htpasswd\)\|\\\\\\\\.\(\?:sql\|bak\|old\|log\)\$\)\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"156\"][id\"960720\"][msg\"Forbiddenfileaccessattempt\"][severity\"CRITICAL\"][hostname\"www.brunocampagna.com.136-243-54-122.cpanel.site\"][uri\"/.env.bak\"][unique_id\"aqNoteqGzG3ddR1NlgkZJgAAAEQ\"]
show less
34.97.147.20 - - [11/Sep/2026:00:37:31 +0200] "GET /tmp/phpinfo.php HTTP/1.1" 500 576 "-" "Mozilla/5 ...
show more34.97.147.20 - - [11/Sep/2026:00:37:31 +0200] "GET /tmp/phpinfo.php HTTP/1.1" 500 576 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36" 392 774
...
show less
Web App Attack
Anonymous
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: JP, Attack patterns: Word ...
show moreBlocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: JP, Attack patterns: WordPress scanning, Backup file probing, Cloud secrets probing
show less
Bad Web Bot
Web App Attack
Showing 1 to
15
of 26 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ