This IP address has been reported a total of
15
times from
10 distinct
sources.
35.232.240.232 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Declared crawler ignoring robots.txt and the refusals it is given | ua: Mozilla/5.0 (compatible; Ama ...
show moreDeclared crawler ignoring robots.txt and the refusals it is given | ua: Mozilla/5.0 (compatible; Amazonbot/0.1; +https://developer.amazon.com/support/amazonbot) (+4 more) | path: /@fs/app/.env (+10 more) | 2026-09-20 15:11 UTC
show less
(y3) Failed access -byebye- from 35.232.240.232 (US/United States/232.240.232.35.bc.googleuserconten ...
show more(y3) Failed access -byebye- from 35.232.240.232 (US/United States/232.240.232.35.bc.googleusercontent.com): (CF_ENABLE)
show less
(mod_security) mod_security (id:243320) triggered by 35.232.240.232 (232.240.232.35.bc.googleusercon ...
show more(mod_security) mod_security (id:243320) triggered by 35.232.240.232 (232.240.232.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Sep 20 09:52:43.084378 2026] [security2:error] [pid 15547:tid 15547] [client 35.232.240.232:40892] ModSecurity: Access denied with code 403 (phase 2). String match "/.profile" at REQUEST_FILENAME. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "6630"] [id "243320"] [rev "1"] [msg "COMODO WAF: Information disclosure vulnerability in Cloud Foundry PHP Buildpack (aka php-buildpack) before 4.3.18 and PHP Buildpack Cf-release before 242, as used in Pivotal Cloud Foundry (PCF) Elastic Runtime before 1.6.38 and 1.7.x before 1.7.19 and other products (CVE-2016-6639)||computersraleigh.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "computersraleigh.com"] [uri "/.profile"] [unique_id "aq_lK7YdTATi1e-2DPoe4QAAACY"]
show less
Malicious activity in general-malicious. Evidence: (apache_probe) Failed Access (403/404) 35.232.240 ...
show moreMalicious activity in general-malicious. Evidence: (apache_probe) Failed Access (403/404) 35.232.240.232 (US/United States/[REDACTED_DOMAIN]): 20 in the last 3600 secs | UA: (apache_probe) Failed Access (403/404) 35.232.240.232 (US/United States/232.240.232.35.bc.googleusercontent.com): 20 in the last 3600 secs
show less
Repeated requests for suspicious nonexistent URLs, for example: /firebase-config.json (HTTP/2.0 port ...
show moreRepeated requests for suspicious nonexistent URLs, for example: /firebase-config.json (HTTP/2.0 port 443, user agent: "Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; Claude-User/1.0; [email protected])")
show less