Log in to view charts and search reports for this IP.
Log In
No reports in the last 60 days
35.154.216.189 has been reported 14
times. The most recent report is from
.
The full history is preserved below and remains searchable. A
0% score reflects the absence of recent activity, but
this is not a guarantee that earlier reports were invalid. Abuse confidence score decays,
naturally, over time, when the abusive activity stops.
IP Abuse Reports for 35.154.216.189:
This IP address has been reported a total of
14
times from
8 distinct
sources.
35.154.216.189 was first reported on
, and the most recent report was
.
(mod_security) mod_security (id:210492) triggered by 35.154.216.189 (IN/India/ec2-35-154-216-189.ap- ...
show more(mod_security) mod_security (id:210492) triggered by 35.154.216.189 (IN/India/ec2-35-154-216-189.ap-south-1.compute.amazonaws.com): 5 in the last 3600 secs
show less
(mod_security) mod_security (id:210492) triggered by 35.154.216.189 (ec2-35-154-216-189.ap-south-1.c ...
show more(mod_security) mod_security (id:210492) triggered by 35.154.216.189 (ec2-35-154-216-189.ap-south-1.compute.amazonaws.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 06 21:58:48.706743 2025] [security2:error] [pid 29785:tid 29785] [client 35.154.216.189:36700] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "nb.nordicbuilders.net"] [uri "/.env"] [unique_id "aLzm2ELHoXsmpKtE2tGwlQAAAAg"], referer: https://www.google.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
Generic port scan: GET / HTTP/1.1; Generic port scan: GET / HTTP/1.1; Probing for sensitive files or ...
show moreGeneric port scan: GET / HTTP/1.1; Generic port scan: GET / HTTP/1.1; Probing for sensitive files or CMS vulnerabilities (e.g., .env, .git, WordPress): GET /.env HTTP/1.1; Probing for sensitive files or CMS vulnerabilities (e.g., .env, .git, WordPress): GET /.env HTTP/1.1; Probing for sensitive files or CMS vulnerabilities (e.g., .env, .git, WordPress): GET //vendor/.env HTTP/1.1; Probing for sensitive files or CMS vulnerabilities (e.g., .env, .git, WordPress): GET //vendor/.env HTTP/1.1; Probing for sensitive files or CMS vulnerabilities (e.g., .env, .git, WordPress): GET //lib/.env HTTP/1.1; Probing for sensitive files or CMS vulnerabilities (e.g., .env, .git, WordPress): GET //lib/.env HTTP/1.1; Probing for sensitive files or CMS vulnerabilities (e.g., .env, .git, WordPress): GET //lab/.env HTTP/1.1; Probing for sensitive files or CMS vulnerabilities (e.g., .env, .git, WordPress): GET //lab/.env HTTP/1.1; Probing for sensitive files or CMS vulnerabilities (e.g., .env, .git, WordPress): GET //cronlab/.env H
show less