This IP address has been reported a total of
16
times from
12 distinct
sources.
35.214.41.76 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
Netherlands
with 8
reports;
France
with 2
reports;
Poland
with 2
reports.
The most common categories in these recent reports were:
Web App Attack
12
times;
Bad Web Bot
6
times;
Brute-Force
3
times;
Hacking
3
times;
DDoS Attack
1
time.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
IncogNET WAF local CrowdSec decision. Scenario=crowdsecurity/appsec-vpatch; Action=ban; Events=2; Co ...
show moreIncogNET WAF local CrowdSec decision. Scenario=crowdsecurity/appsec-vpatch; Action=ban; Events=2; Country=GB; ASN=15169 GOOGLE
show less
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scan ...
show moreAutomated threat detected by Budyn Honeypot Sinkhole. Attack type: Enterprise & Framework Recon Scanner. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: portal.sweetpuddingtrap.xyz | URI: /.git/config | UA: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36 | BODY: [Empty / GET Request]
show less
Bad Web Bot
Web App Attack
Anonymous
IncogNET WAF local CrowdSec decision. Scenario=crowdsecurity/http-sensitive-files; Action=ban; Event ...
show moreIncogNET WAF local CrowdSec decision. Scenario=crowdsecurity/http-sensitive-files; Action=ban; Events=5; Hosts=portal.incognet.io; Paths=/.env,/.env.development,/.env.local,/.env.staging,/.git/config; Country=GB; ASN=15169 GOOGLE
show less
Hacking
Web App Attack
Anonymous
IP matched detection query bad paths many.
Brute-Force
Web App Attack
Anonymous
IncogNET WAF local CrowdSec decision. Scenario=crowdsecurity/nginx-req-limit-exceeded; Action=ban; E ...
show moreIncogNET WAF local CrowdSec decision. Scenario=crowdsecurity/nginx-req-limit-exceeded; Action=ban; Events=6; Hosts=portal.incognet.io; Paths=/actions/.env,/ci/.env,/circleci/.env,/gitlab/.env,/jenkins/.env,/travis/.env; Country=GB; ASN=15169 GOOGLE
show less
DDoS Attack
Anonymous
IncogNET WAF local CrowdSec decision. Scenario=crowdsecurity/http-crawl-non_statics; Action=ban; Eve ...
show moreIncogNET WAF local CrowdSec decision. Scenario=crowdsecurity/http-crawl-non_statics; Action=ban; Events=69; Hosts=portal.incognet.io; Paths=/.config/gcloud/application_default_credentials.json,/firebase-adminsdk.json,/google-credentials.json,/google-key.json,/key.json,/keyfile.json; Country=GB; ASN=15169 GOOGLE
show less
Git repository probing detected against a public web server.
74 suspicious requests
74 critical req ...
show moreGit repository probing detected against a public web server.
74 suspicious requests
74 critical requests
Observed requests:
GET /web/.env
GET /site/.env
GET /.git/config
Risk level: HIGH
Reference: STI-20261005-085445-35-214-41-76
show less