AbuseIPDB » 104.22.109.12
Whitelisted netblocks are typically owned by trusted entities, such as Google or Microsoft who may use them for search engine spiders. However, these same entities sometimes also provide cloud servers and mail services which are easily abused. Pay special attention when trusting or distrusting these IPs.
104.22.109.12 is an IP address from within our whitelist belonging to the subnet 104.16.0.0/13, which we identify as "Cloudflare Reverse Proxy".
IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.
Top Reporter Countries (Last 60 Days)
Example previewReport Categories (Last 60 Days)
Example previewIP Abuse Reports for 104.22.109.12:
This IP address has been reported a total of 14 times from 10 distinct sources. 104.22.109.12 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: United Kingdom of Great Britain and Northern Ireland with 7 reports; Germany with 2 reports; Belgium with 1 report. The most common categories in these recent reports were: Web App Attack 11 times; Port Scan 3 times; Bad Web Bot 2 times; Hacking 2 times; Exploited Host 1 time.
| Reporter | IoA Timestamp (UTC) | Comment | Categories | |
|---|---|---|---|---|
| ๐ฌ๐ง consul.to |
Web attack/malicious scanning detected
|
Web App Attack | ||
| ๐ฌ๐ง sandra361 |
|
Port Scan | ||
| ๐ฌ๐ง consul.to |
Web attack/malicious scanning detected
|
Web App Attack | ||
| ๐ง๐ฌ Stoyko Stoykov |
104.22.109.12 - - [31/Aug/2026:22:35:25 +0300] "GET /.env.old HTTP/1.1" 301 162 "-" "fasthttp"
...
|
Hacking Web App Attack | ||
| ๐ฉ๐ช kkw |
|
Bad Web Bot Web App Attack | ||
| ๐ฌ๐ง consul.to |
Web attack/malicious scanning detected
|
Web App Attack | ||
| ๐ท๐บ DZBOT |
DZBOT: Website Scanning / Scraping
|
Bad Web Bot Exploited Host Web App Attack | ||
| ๐ฌ๐ง consul.to |
Web attack/malicious scanning detected
|
Web App Attack | ||
| ๐ณ๐ฑ debestelapp |
|
Web App Attack | ||
| ๐ฌ๐ง openstrike.co.uk |
8 attacks on PHP URLs, env grabbing URLs:
GET /server-info.php HTTP/1.1
GET /.env HTTP/1.1
|
Web App Attack Hacking | ||
| ๐ฌ๐ง consul.to |
Web attack/malicious scanning detected
|
Web App Attack | ||
| ๐ง๐ช madeit |
|
Web App Attack | ||
| ๐บ๐ธ MPL |
tcp/443 (5 or more attempts)
|
Port Scan | ||
| ๐ฉ๐ช acadeova |
|
Port Scan |
Showing 1 to 14 of 14 reports
Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown ๐ฉ