35.234.190.55

promiscuous
First seen
Last seen
Summary
Classification
promiscuous
Hostname
55.190.234.35.bc.googleusercontent.com
Location
Washington, United States
ASN
AS396982GOOGLE-CLOUD-PLATFORM - Google LLC, US
First observed
Last observed*
Spoofability
Non-Spoofable

* Updated periodically. For a real-time view, see this IP in the ELLIO platform.

Tags12
Application Log ScannerBackup Copy Scanner
Port Activity
1 ports

Non-Spoofable Ports

1ports
Web
80

Spoofable Ports

0ports
No spoofable ports detected
Destination Locations
1
Continents
1
Countries
1
Cities
Europe
1 city-1 country
BEBelgium
Brussels
HTTP Activity
20 entries

Paths19

Path Types
Other15
Other Routes (15)
/.env
/.env.backup
/.env.bak
/.env.dev
/.env.example
/.env.local
/.env.old
/.env.prod
/.env.production
/.env.save
/_ignition/health-check
/actuator/configprops
/actuator/env
/crusader-404-probe
/env

+ 4 more HTTP paths requested by this IP

Explore full ELLIO Platform with free trial

User Agents1

User Agent Types
others1
others (1)
crusader-worker/1.0
MITRE ATT&CK
6 techniques
TA0006Credential Access

The adversary is trying to steal account names and passwords. Credential Access consists of techniques for stealing credentials like account names and passwords. Techniques used to get credentials include keylogging or credential dumping. Using legitimate credentials can give adversaries access to systems, make them harder to detect, and provide the opportunity to create more accounts to help achieve their goals.

+ 5 more MITRE ATT&CK mappings

Explore full ELLIO Platform with free trial

© 2026 The MITRE Corporation. This work is reproduced and distributed with the permission of The MITRE Corporation.

Tactic
Technique
Sub-technique
Fingerprint Analysis

TCP

1
65320:2-4-8-1-3:1420:10
MuonFP
MuonFP Breakdown
65320Window
:
2-4-8-1-3Options
:
1420MSS
:
10Scale

See the full threat intelligence report for 35.234.190.55

Free trial, no credit card. Keep everything you see here plus historical timelines, full data access, blocklist automation and advanced search.

  • Full tag, CVE, and MITRE coverage
  • Real-time scanning and exploit detection
  • SIEM, SOAR, and firewall integrations
  • Campaign and actor infrastructure tracking
  • Attack payload capture and classification
  • Brute-force and credential attempt logs
  • Attacker fingerprint analysis
  • Pre-incident reconnaissance visibility
Start free trial
Feedback