Log in to view charts and search reports for this IP.
Log In
Top Reporter Countries (Last 60 Days)
Example preview
Report Categories (Last 60 Days)
Example preview
Reports Activity
Example preview
Account required for the enhanced features
Log inSign up
IP Abuse Reports for 35.221.242.215:
This IP address has been reported a total of
63
times from
50 distinct
sources.
35.221.242.215 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
United States of America
with 16
reports;
Germany
with 6
reports;
New Zealand
with 5
reports.
The most common categories in these recent reports were:
Web App Attack
35
times;
Hacking
18
times;
Bad Web Bot
14
times;
Port Scan
14
times;
Brute-Force
14
times;
Other
13
times.
Recent Reports
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
09/07/2026-00:22:53.814467 35.221.242.215 Protocol: 6 ET WEB_SPECIFIC_APPS Vite Arbitrary File Read ...
show more09/07/2026-00:22:53.814467 35.221.242.215 Protocol: 6 ET WEB_SPECIFIC_APPS Vite Arbitrary File Read Via raw parameter (CVE-2025-30208)
show less
Automated sensor: 231 HTTP, HTTPS connection/probe attempts over the last 24h (latest 2026-09-05T17: ...
show moreAutomated sensor: 231 HTTP, HTTPS connection/probe attempts over the last 24h (latest 2026-09-05T17:51Z).
show less
Blocked by UFW (TCP on 8443)
Source port: 63288
TTL: 61
Packet length: 60
TOS: 0x00
This report (fo ...
show moreBlocked by UFW (TCP on 8443)
Source port: 63288
TTL: 61
Packet length: 60
TOS: 0x00
This report (for 35.221.242.215) was generated by:
https://github.com/sefinek/UFW-AbuseIPDB-Reporter
show less
2026-09-05 05:22:39 UTC Unauthorized activity to TCP port 8443. Web App
Port Scan
Web App Attack
Anonymous
Automated web attack from 35.221.242.215 against our web server.
1083 malicious requests on 2026-09- ...
show moreAutomated web attack from 35.221.242.215 against our web server.
1083 malicious requests on 2026-09-05 (UTC), none of them succeeded (HTTP 403 on 1059, HTTP 404 on 24).
Classified as: attempted retrieval of private keys or cloud credential files. Also matched: passing a shell command as a request parameter; server-side request forgery / open-redirect probing with out-of-band callbacks.
The User-Agent claims to be Applebot, but reverse DNS does not support this (reverse DNS is 215.242.221.35.bc.googleusercontent.com). Genuine Applebot traffic resolves under applebot.apple.com / apple.com.
User-Agent: "Mozilla/5.0 (X11; Ubuntu; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko; compatible; Applebot/0.1; +http[:]//www[.]apple[.]com/go/applebot) Chrome/151.0.4242.162 Safari/537.36 Edg/151.0.4242.162".
rDNS 215.242.221.35.bc.googleusercontent.com; AS396982 GOOGLE-CLOUD-PLATFORM.
All timestamps are UTC.
show less