This IP address has been reported a total of
50
times from
34 distinct
sources.
35.198.19.52 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
35.198.19.52 - - [19/Sep/2026:02:58:25 +0000] "GET /.git/config HTTP/1.1" 404 3023 "-" "Mozilla/5.0 ...
show more35.198.19.52 - - [19/Sep/2026:02:58:25 +0000] "GET /.git/config HTTP/1.1" 404 3023 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-201)
Hacking
Web App Attack
Anonymous
Blocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: BR, Attack patterns: Word ...
show moreBlocked by FortiWeb WAF ML threat detection. ML probability: 99%, Country: BR, Attack patterns: WordPress scanning, Backup file probing, Cloud secrets probing
show less
Probing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: ...
show moreProbing for secret files (.git, .env, credentials, database dumps, wp-config) | method: GET | path: /.git/config | 2026-09-18 11:19 UTC
show less
[ti-14al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 35. ...
show more[ti-14al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail <name>. Example: 35.198.19.52 - - \[17/Sep/2026:18:56:15 +0200\] "GET /.git/config HTTP/1.1" 301 580 "-" "Mozilla/5.0 \(Macintosh\; Intel Mac OS X 10_15_7\) AppleWebKit/537.36 \(KHTML, like Gecko\) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
Anonymous
Bot / scanning and/or hacking attempts: POST / HTTP/1.1, GET /.env.remote HTTP/1.1, GET / HTTP/1.1, ...
show moreBot / scanning and/or hacking attempts: POST / HTTP/1.1, GET /.env.remote HTTP/1.1, GET / HTTP/1.1, GET /.env.production HTTP/1.1, GET /.env.test HTTP/1.1, GET /.env.local HTTP/1.1, GET /.env.development HTTP/1.1, GET /.env.staging HTTP/1.1, GET /.git/config HTTP/1.1, GET /.env HTTP/1.1
show less
Hacking
Web App Attack
Showing 1 to
15
of 50 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ