AbuseIPDB » 109.61.83.105
109.61.83.105 was found in our database!
This IP was reported 9 times. Confidence of
Abuse
is 34%: ?
| ISP |
Datacamp Limited
|
| Usage Type |
Data Center/Web Hosting/Transit
|
| ASN |
AS60068
|
| Hostname(s) |
unn-109-61-83-105.datapacket.com
|
| Domain Name |
datacamp.co.uk
|
| Country |
๐ฏ๐ต
Japan
|
| City |
Tokyo, Tokyo
|
IP info including ISP, Usage Type, and Location provided
by IPInfo. Updated weekly.
IP Abuse Reports for 109.61.83.105:
This IP address has been reported a total of
9
times from
8 distinct
sources.
109.61.83.105 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
| Reporter |
IoA Timestamp (UTC)
|
Comment |
Categories |
|
|
๐ณ๐ฑ
grinthorstnl
|
|
Auto-ban: >500 bad req(40x/50x)/5min on 2026-05-30
|
Web App Attack
SSH
Hacking
|
|
|
Anonymous
|
|
109.61.83.105 - - [30/May/2026:23:39:25 -0500] "GET /.env.production HTTP/1.1" 403 199 "-" "Mozilla/ ...
show more
109.61.83.105 - - [30/May/2026:23:39:25 -0500] "GET /.env.production HTTP/1.1" 403 199 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 109.61.83.105
109.61.83.105 - - [30/May/2026:23:39:25 -0500] "GET /.env.live HTTP/1.1" 403 199 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 109.61.83.105
109.61.83.105 - - [30/May/2026:23:39:25 -0500] "GET /.env.master HTTP/1.1" 403 199 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 109.61.83.105
109.61.83.105 - - [30/May/2026:23:39:26 -0500] "GET /.env.staging HTTP/1.1" 403 199 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 109.61.83.105
109.61.83.105 - - [30/May/2026:23:39:26 -0500] "GET /.env.dev HTTP/1.1" 403 199 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 109.61.83.105
109.61.83.105 - - [30/May/2026:23:39:26 -0500] "GET /.env.beta HTTP/1.1" 403 199 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 109.61.83.105
109.61.83.105 - - [30/May/2026:23:39:26 -0500] "GET /.env.alpha HTTP/1.1" 403 199 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64)" 10
...
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 109.61.83.105 (unn-109-61-83-105.datapacket.com ...
show more
(mod_security) mod_security (id:210492) triggered by 109.61.83.105 (unn-109-61-83-105.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 30 23:06:45.293037 2026] [security2:error] [pid 4967:tid 4984] [client 109.61.83.105:38179] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "clinicadelparabrisas.com"] [uri "/.env.bkp"] [unique_id "ahulxZGzPxY-DSiJhEJRJwAAAAU"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ง๐พ
lns.bz
|
|
Too many 404 requests [BY]
|
Web App Attack
|
|
|
๐บ๐ธ
TPI-Abuse
|
|
(mod_security) mod_security (id:210492) triggered by 109.61.83.105 (unn-109-61-83-105.datapacket.com ...
show more
(mod_security) mod_security (id:210492) triggered by 109.61.83.105 (unn-109-61-83-105.datapacket.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat May 30 03:22:49.449299 2026] [security2:error] [pid 30511:tid 30511] [client 109.61.83.105:44851] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "web92.dnchosting.com"] [uri "/.env.json"] [unique_id "ahqQSeFLFEr8v6jPGE1M_wAAAAI"]
show less
|
Brute-Force
Bad Web Bot
Web App Attack
|
|
|
๐ง๐ช
cmbplf
|
|
529 requests with url.path *.env
|
Brute-Force
Bad Web Bot
|
|
|
๐ฌ๐ง
prime_fusion_ld
|
|
Blocked by CSF/LFD on vps.primefusion.co.uk. Trigger: 1 Ports: *
|
Port Scan
|
|
|
๐ง๐ท
dominioz
|
|
2026-05-27 03:33:39 GET /.env.prev - - 109.61.83.105 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x ...
show more
2026-05-27 03:33:39 GET /.env.prev - - 109.61.83.105 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64) - 404 1440
2026-05-27 03:33:39 GET /.env.txt - - 109.61.83.105 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64) - 404 1440
2026-05-27 03:33:39 GET /.env.inc - - 109.61.83.105 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64) - 404 1440
2026-05-27 03:33:39 GET /.env.conf - - 109.61.83.105 HTTP/1.1 Mozilla/5.0+(Windows+NT+10.0;+Win64;+x64) - 404 1440
...
show less
|
Web App Attack
|
|
|
๐ฉ๐ช
pscriptos
|
|
This IP was detected by CrowdSec triggering crowdsecurity/http-probing
|
Web App Attack
Hacking
|
|
Showing 1 to
9
of 9 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: