AbuseIPDB » 104.22.104.111
104.22.104.111 was found in our database!
This IP was reported 11 times. Confidence of
Abuse
is 0% : ?
ISP
Cloudflare, Inc.
Usage Type
Data Center/Web Hosting/Transit
ASN
AS13335
Domain Name
cloudflare.com
Country
๐บ๐ธ
United States of America
City
Ashburn, Virginia
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
Important Note: 104.22.104.111 is an IP address from within
our whitelist belonging to the subnet
104.16.0.0/13 ,
which we identify as: "Cloudflare Reverse Proxy" .
Whitelisted netblocks are typically owned by trusted entities, such as Google
or Microsoft who may use them for search engine spiders. However, these same entities
sometimes also provide cloud servers and mail services which are easily abused. Pay special
attention when trusting or distrusting these IPs.
IP Abuse Reports for 104.22.104.111 :
This IP address has been reported a total of
11
times from
6 distinct
sources.
104.22.104.111 was first reported on
May 11th 2026 , and the most recent report was
5 days ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ฉ๐ช
Blexyel
2026-08-21 03:15:20
(5 days ago)
104.22.104.111 - - [21/Aug/2026:05:15:20 +0200] "GET /.git/config HTTP/1.1" 200 264 "-" "git/2.40.0" ...
show more
104.22.104.111 - - [21/Aug/2026:05:15:20 +0200] "GET /.git/config HTTP/1.1" 200 264 "-" "git/2.40.0" "136.243.2.38"
...
show less
Brute-Force
Web App Attack
๐ง๐ช
madeit
2026-08-17 09:14:52
(1 week ago)
Web App Attack
๐บ๐ธ
mawan
2026-07-01 07:11:06
(1 month ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
mawan
2026-06-29 17:26:45
(1 month ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐บ๐ธ
mawan
2026-06-24 21:00:18
(2 months ago)
Suspected of having performed illicit activity on LAX server.
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-06-22 04:12:41
(2 months ago)
Wordpress malicious attack:[octaflood]
Web App Attack
๐ฒ๐ฝ
octageeks.com
2026-05-22 04:15:10
(3 months ago)
Wordpress malicious attack:[octaflood]
Web App Attack
Anonymous
2026-05-14 04:32:22
(3 months ago)
(caddyscan) Scanner path probe from 104.22.104.111 (US/United States/-): 5 in the last 3600 secs; Po ...
show more
(caddyscan) Scanner path probe from 104.22.104.111 (US/United States/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [REDACTED] 200 2627 104.22.104.111 - - [14/May/2026:03:51:03 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 104.22.104.111 - - [14/May/2026:03:51:06 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 104.22.104.111 - - [14/May/2026:04:08:30 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 104.22.104.111 - - [14/May/2026:04:10:57 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 104.22.104.111 - - [14/May/2026:04:32:17 +0000] "GET /.git/config HTTP/1.1"
show less
Port Scan
Anonymous
2026-05-14 02:50:45
(3 months ago)
(caddyscan) Scanner path probe from 104.22.104.111 (US/United States/-): 5 in the last 3600 secs; Po ...
show more
(caddyscan) Scanner path probe from 104.22.104.111 (US/United States/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [REDACTED] 200 2627 104.22.104.111 - - [14/May/2026:02:13:15 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 104.22.104.111 - - [14/May/2026:02:49:50 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 104.22.104.111 - - [14/May/2026:02:50:28 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 104.22.104.111 - - [14/May/2026:02:50:38 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 104.22.104.111 - - [14/May/2026:02:50:41 +0000] "GET /.git/config HTTP/1.1"
show less
Port Scan
Anonymous
2026-05-14 01:07:02
(3 months ago)
(caddyscan) Scanner path probe from 104.22.104.111 (US/United States/-): 5 in the last 3600 secs; Po ...
show more
(caddyscan) Scanner path probe from 104.22.104.111 (US/United States/-): 5 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs: [REDACTED] 200 2627 104.22.104.111 - - [14/May/2026:00:15:50 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 104.22.104.111 - - [14/May/2026:00:31:50 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 104.22.104.111 - - [14/May/2026:00:44:49 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 104.22.104.111 - - [14/May/2026:00:54:58 +0000] "GET /.git/config HTTP/1.1"
[REDACTED] 200 2627 104.22.104.111 - - [14/May/2026:01:07:01 +0000] "GET /.git/config HTTP/1.1"
show less
Port Scan
๐ฏ๐ต
S.O.B.A. Dev.
2026-05-11 14:07:35
(3 months ago)
Persistent port scanning or vulnerability scanning
Port Scan
Showing 1 to
11
of 11 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: