This IP address has been reported a total of
46
times from
19 distinct
sources.
149.143.136.216 was first reported on
, and the most recent report was
.
Old Reports:
The most recent abuse report for this IP address is from
. It is possible that this IP is no longer involved in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
(caddyscan) Scanner path probe from 149.143.136.216 (US/United States/-): 5 in the last 3600 secs; P ...
show more(caddyscan) Scanner path probe from 149.143.136.216 (US/United States/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [REDACTED] 200 2627 149.143.136.216 - - [18/May/2026:23:12:23 +0000] "GET /.env.testing HTTP/1.1"
[REDACTED] 200 2627 149.143.136.216 - - [18/May/2026:23:12:23 +0000] "GET /.env.example HTTP/1.1"
[REDACTED] 200 2627 149.143.136.216 - - [18/May/2026:23:12:23 +0000] "GET /.env.docker HTTP/1.1"
[REDACTED] 200 2627 149.143.136.216 - - [18/May/2026:23:12:23 +0000] "GET /.env.development HTTP/1.1"
[REDACTED] 200 2627 149.143.136.216 - - [18/May/2026:23:12:23 +0000] "GET /.env.release HTTP/1.1"
show less
Detected via HAProxyScanner at 2026-05-13 22:01:02 UTC on destination port WEB (80/443). Repeated sc ...
show moreDetected via HAProxyScanner at 2026-05-13 22:01:02 UTC on destination port WEB (80/443). Repeated scan / connection.
show less
Port Scan
Hacking
Brute-Force
Anonymous
(caddyscan) Scanner path probe from 149.143.136.216 (US/United States/-): 5 in the last 3600 secs; P ...
show more(caddyscan) Scanner path probe from 149.143.136.216 (US/United States/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [REDACTED] 200 2627 149.143.136.216 - - [13/May/2026:07:20:30 +0000] "GET /.env.demo HTTP/1.1"
[REDACTED] 200 0 149.143.136.216 - - [13/May/2026:08:07:44 +0000] "HEAD /.env.sample HTTP/1.1"
[REDACTED] 200 2627 149.143.136.216 - - [13/May/2026:08:07:47 +0000] "GET /.env.development HTTP/1.1"
[REDACTED] 200 2627 149.143.136.216 - - [13/May/2026:08:07:47 +0000] "GET /.env.yml HTTP/1.1"
[REDACTED] 200 2627 149.143.136.216 - - [13/May/2026:08:07:49 +0000] "GET /.env~ HTTP/1.1"
show less
Port Scan
Anonymous
(caddyscan) Scanner path probe from 149.143.136.216 (US/United States/-): 5 in the last 3600 secs; P ...
show more(caddyscan) Scanner path probe from 149.143.136.216 (US/United States/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [REDACTED] 200 2627 149.143.136.216 - - [13/May/2026:02:36:10 +0000] "GET /.env HTTP/1.1"
[REDACTED] 200 2627 149.143.136.216 - - [13/May/2026:02:36:11 +0000] "GET /root/.aws/credentials HTTP/1.1"
[REDACTED] 200 2627 149.143.136.216 - - [13/May/2026:02:36:11 +0000] "GET /.env.test HTTP/1.1"
[REDACTED] 200 0 149.143.136.216 - - [13/May/2026:02:36:13 +0000] "HEAD /.env.local HTTP/1.1"
[REDACTED] 200 2627 149.143.136.216 - - [13/May/2026:02:36:13 +0000] "GET /actuator/env HTTP/1.1"
show less
(modsec_5015) ModSec 5015: Suspicious User-Agent from 149.143.136.216 (US/United States/-): 1 in the ...
show more(modsec_5015) ModSec 5015: Suspicious User-Agent from 149.143.136.216 (US/United States/-): 1 in the last 3600 secs (0-195)
show less