AbuseIPDB » 172.69.36.150
172.69.36.150 was found in our database!
This IP was reported 5 times. Confidence of
Abuse
is 0% : ?
ISP
Cloudflare, Inc.
Usage Type
Data Center/Web Hosting/Transit
ASN
AS14789
Domain Name
cloudflare.com
Country
๐ฏ๐ด
Jordan
City
Amman, Amman
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
Important Note: 172.69.36.150 is an IP address from within
our whitelist belonging to the subnet
172.64.0.0/13 ,
which we identify as: "Cloudflare Reverse Proxy" .
Whitelisted netblocks are typically owned by trusted entities, such as Google
or Microsoft who may use them for search engine spiders. However, these same entities
sometimes also provide cloud servers and mail services which are easily abused. Pay special
attention when trusting or distrusting these IPs.
IP Abuse Reports for 172.69.36.150 :
This IP address has been reported a total of
5
times from
3 distinct
sources.
172.69.36.150 was first reported on
February 28th 2026 , and the most recent report was
1 week ago .
Old Reports:
The most recent abuse report for this IP address is from
1 week ago
. It is possible that this IP is no longer involved in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ง๐ช
madeit
2026-08-17 14:57:02
(1 week ago)
Web App Attack
๐ง๐ช
madeit
2026-08-07 21:43:55
(2 weeks ago)
Web App Attack
๐ฉ๐ช
acadeova
2026-07-27 07:30:10
(1 month ago)
๐จ Recon detected (nft drop)
SRC=172.69.36.150
Observed=TCP dpt=80 in=enp0s6 ttl=58
Time=recent(journ ...
show more
๐จ Recon detected (nft drop)
SRC=172.69.36.150
Observed=TCP dpt=80 in=enp0s6 ttl=58
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐ฉ๐ช
acadeova
2026-04-25 12:37:38
(4 months ago)
๐จ Recon detected (nft drop)
SRC=172.69.36.150
Observed=TCP dpt=80 in=enp0s6 ttl=60
Time=recent(journ ...
show more
๐จ Recon detected (nft drop)
SRC=172.69.36.150
Observed=TCP dpt=80 in=enp0s6 ttl=60
Time=recent(journalctl: 10 minutes ago)
Assessment=Generic scanning / reconnaissance (PORT_SCAN)
show less
Port Scan
๐ช๐ธ
el-brujo
2026-02-28 10:34:09
(5 months ago)
28/Feb/2026:11:34:09.035316 +0100Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client ...
show more
28/Feb/2026:11:34:09.035316 +0100Apache-Error: [file "apache2_util.c"] [line 271] [level 3] [client 172.69.36.150] ModSecurity: Warning. detected SQLi using libinjection with fingerprint 'sos1s' [file "/etc/httpd/modsecurity.d/activated_rules/REQUEST-942-APPLICATION-ATTACK-SQLI.conf"] [line "66"] [id "942100"] [msg "SQL Injection Attack Detected via libinjection"] [data "Matched Data: sos1s found within REQUEST_HEADERS:Referer: https://www.google.com/ AND AND/**/5716=CONVERT(INT,(SELECT/**/'~'+(SELECT/**/(CASE/**/WHEN/**/(5716=5716)/**/THEN/**/'1'/**/ELSE/**/'0'/**/END))+'~'))-- -"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-sqli"] [tag "paranoia-level/1"] [tag "OWASP_CRS"] [tag "capec/1000/152/248/66"] [tag "PCI/6.5.2"] [hostname "uptime.elhacker.net"] [uri "/"] [unique_id "aaLEocSrSj9j1ZhJ36jOdAAAND0"]
...
show less
Hacking
Web App Attack
Showing 1 to
5
of 5 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: