This IP address has been reported a total of
48
times from
37 distinct
sources.
35.190.191.214 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
[FriAug2815:54:25.5482942026][security2:error][pid2726247:tid2726349][client35.190.191.214:0]ModSecu ...
show more[FriAug2815:54:25.5482942026][security2:error][pid2726247:tid2726349][client35.190.191.214:0]ModSecurity:Accessdeniedwithcode403\(phase2\).Patternmatch\"\(\?:\\\\\\\\b\(\?:\\\\\\\\.\(\?:ht\(\?:access\|passwd\|group\)\|www_\?acl\)\|global\\\\\\\\.asa\|httpd\\\\\\\\.conf\|boot\\\\\\\\.ini\|web.config\)\\\\\\\\b\|\(\|\^\|\\\\\\\\.\\\\\\\\.\)/etc/\|/\\\\\\\\.\(\?:history\|bash_history\|sh_history\|env\)\$\)\"atREQUEST_FILENAME.[file\"/etc/apache2/conf.d/modsec_rules/10_asl_rules.conf\"][line\"204\"][id\"390709\"][rev\"30\"][msg\"Atomicorp.comWAFRules:Attempttoaccessprotectedfileremotely\"][data\"/.env\"][severity\"CRITICAL\"][hostname\"life-live.ch\"][uri\"/@fs/root/.env\"][unique_id\"apGTEYJiQh2W1lRajOs4-gAAAgw\"]
show less
(mod_security) mod_security triggered on hostname [redacted] 35.190.191.214 (US/United States/214.19 ...
show more(mod_security) mod_security triggered on hostname [redacted] 35.190.191.214 (US/United States/214.191.190.35.bc.googleusercontent.com)
show less
[FriAug2814:14:40.1007682026][security2:error][pid1303337:tid1303640][client35.190.191.214:0]ModSecu ...
show more[FriAug2814:14:40.1007682026][security2:error][pid1303337:tid1303640][client35.190.191.214:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".env\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"cpcontacts.cacciatorichiasso.ch\"][uri\"/@fs/src/.env\"][unique_id\"apF7sGb6FOfD7ku7ya8vmAAAAFU\"]
show less
Cluster member 148.251.176.225 (DE/Germany/antares.webyouridea.ro) said, DENY 35.190.191.214, Reason ...
show moreCluster member 148.251.176.225 (DE/Germany/antares.webyouridea.ro) said, DENY 35.190.191.214, Reason:[(mod_security) mod_security (id:210832) triggered by 35.190.191.214 (US/United States/214.191.190.35.bc.googleusercontent.com): 3 in the last 3600 secs]; Ports: *; Direction: inout; Trigger: LF_CLUSTER; Logs:
show less
CrowdSec detected Sensitive file or backup discovery attempt. Scenario: local/apache-sensitive-paths ...
show moreCrowdSec detected Sensitive file or backup discovery attempt. Scenario: local/apache-sensitive-paths. Automatic ban triggered. Detection time (UTC): 2026-08-28T09:43:50.523194962Z. Context: http_status=404
show less
(mod_security) mod_security triggered on hostname [redacted] 35.190.191.214 (US/United States/214.19 ...
show more(mod_security) mod_security triggered on hostname [redacted] 35.190.191.214 (US/United States/214.191.190.35.bc.googleusercontent.com)
show less