This IP address has been reported a total of
29
times from
17 distinct
sources.
35.252.207.120 was first reported on
, and the most recent report was
.
In the last 60 days, the top reporter locations were:
United States of America
with 14
reports;
Germany
with 5
reports;
France
with 3
reports.
The most common categories in these recent reports were:
Web App Attack
25
times;
Brute-Force
18
times;
Bad Web Bot
14
times;
Hacking
4
times;
SSH
1
time;
Other
2
times.
Old Reports
The most recent abuse report for this IP address is from
. It is possible that this IP is no
longer involved in abusive activities.
GET /appsettings.json HTTP/1.1
GET /.env.production?import&raw HTTP/1.1
GET /.env.prod HTTP/1.1
GET ...
show moreGET /appsettings.json HTTP/1.1
GET /.env.production?import&raw HTTP/1.1
GET /.env.prod HTTP/1.1
GET /.ssh/id_dsa HTTP/1.1
GET /configuration.js HTTP/1.1
GET /deploy/.env HTTP/1.1
GET /.well-known/jwks.json HTTP/1.1
GET /v1/.env HTTP/1.1
show less
{"level":"info","ts":1789962887.9529538,"logger":"http.log.access.log1","msg":"handled request","req ...
show more{"level":"info","ts":1789962887.9529538,"logger":"http.log.access.log1","msg":"handled request","request":{"remote_ip":"35.252.207.120","remote_port":"60284","client_ip":"35.252.207.120","proto":"HTTP/2.0","method":"GET","host":"status.tintwiz.com","uri":"/asset-manifest.json","headers":{"Sec-Fetch-Mode":["navigate"],"Sec-Ch-Ua-Mobile":["?0"],"Accept":["text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,*/*;q=0.8"],"Sec-Fetch-Site":["none"],"Sec-Ch-Ua":["\"Chromium\";v=\"152\", \"Not?A_Brand\";v=\"24\", \"Microsoft Edge\";v=\"152\""],"Sec-Ch-Ua-Platform":["\"Windows\""],"Sec-Fetch-User":["?1"],"Sec-Fetch-Dest":["document"],"X-Middleware-Subrequest":["src/middleware:nowaf:src/middleware:src/middleware:src/middleware:src/middleware:middleware:middleware:nowaf:middleware:middleware:middleware:pages/_middleware"],"Upgrade-Insecure-Requests":["1"],"X-Nextjs-Data":["1"],"Accept-Language":["en-US,en;q=0.9"],"Priority":["u=0, i"],"User-Agent":["Mozilla/5.0 (Windows NT
...
show less
Multiple unauthorized attempts to access using wrong credentials. Attack automatically blocked by Sk ...
show moreMultiple unauthorized attempts to access using wrong credentials. Attack automatically blocked by SkyDancer Ai. EXT-SYS-Vx
show less
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 35.252.207.120 (US/United States/120. ...
show more(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 35.252.207.120 (US/United States/120.207.252.35.bc.googleusercontent.com): 1 in the last 3600 secs (0-195)
show less