This IP address has been reported a total of
38
times from
31 distinct
sources.
35.204.163.54 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
2026-09-01 06:48:21 GET /static../.env [404] && 2026-09-01 06:48:22 GET /.aws/credentials [404] && 2 ...
show more2026-09-01 06:48:21 GET /static../.env [404] && 2026-09-01 06:48:22 GET /.aws/credentials [404] && 2026-09-01 06:48:22 GET /@fs/etc/passwd?raw?? [404] && 276 more within 20 minutes
show less
Blocked by UFW [8443/tcp]
Source port: 48144
TTL: 48
Packet length: 60
TOS: 0x00
This report was ge ...
show moreBlocked by UFW [8443/tcp]
Source port: 48144
TTL: 48
Packet length: 60
TOS: 0x00
This report was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
Detected by CrowdSec IDS on a self-hosted server. Target: HTTP/HTTPS (ports 80/443). Triggered rules ...
show moreDetected by CrowdSec IDS on a self-hosted server. Target: HTTP/HTTPS (ports 80/443). Triggered rules: http-admin-interface-probing, http-path-traversal-probing, http-probing, http-sensitive-files. 23 matching log events between 2026-08-31T19:59:59Z and 20:00:03Z (UTC). Sample requests: GET /admin/.env -> 404; GET /_profiler/phpinfo -> 404; GET /phpinfo.php -> 404; GET /static../.env -> 404; GET /media../.env -> 404; GET /.aws/credentials -> 404; GET /.git/HEAD -> 404; GET /app/.env -> 404; GET / -> 404; GET /__aws_leak_probe_c34c5dec__ -> 404; GET /.git-credentials -> 404; GET /download?file=../../../../etc/passwd -> 404; GET /?file=../../../../etc/passwd -> 404; GET /proc/self/environ -> 404; GET /read?url=file:///proc/self/environ -> 404; GET /@fs/etc/passwd?import&raw?? -> 404
show less
Web vulnerability scanning against ad-serving endpoint: 486 probe requests between 30/Aug/2026:23:52 ...
show moreWeb vulnerability scanning against ad-serving endpoint: 486 probe requests between 30/Aug/2026:23:52:27 +0000 and 30/Aug/2026:23:54:46 +0000 for non-existent sensitive paths (/.env.azure, /.env.bak, /.aws/credentials.bak, /@fs/proc/self/cwd/.aws/credentials, /home/azureuser/.azure/credentials), all returned 404. Detected via nginx ingress access log.
show less