AbuseIPDB » 104.28.163.254

104.28.163.254
Activity Trending Down This IP hasn't received reports recently, which causes the score to decay.
30 reports found in our database
26% Elevated
Abuse confidence score ?
ISP
Cloudflare, Inc.
Usage Type
Data Center/Web Hosting/Transit
ASN
Domain Name
cloudflare.com
Country
🇨🇿 Czechia
City
Kladno, Central Bohemia

IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

Log in to view charts and search reports for this IP. Log In

Top Reporter Countries (Last 60 Days)

Example preview

Report Categories (Last 60 Days)

Example preview

Reports Activity

Example preview
Account required for the enhanced features Log in Sign up

IP Abuse Reports for 104.28.163.254:

This IP address has been reported a total of 30 times from 23 distinct sources. 104.28.163.254 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: United States of America with 4 reports; Switzerland with 1 report; China with 1 report. The most common categories in these recent reports were: Bad Web Bot 4 times; Brute-Force 3 times; DDoS Attack 2 times; Web App Attack 2 times; Port Scan 1 time; Other 2 times.

Reporter IoA Timestamp (UTC) Comment Categories
🇹🇭 thaizone.com
Password guessing attack (SM11) #1
Email Spam Brute-Force
🇨🇳 pengpeng
Port Scan
🇮🇩 xveil
Brute-Force
🇺🇸 Matthew Ping
ModSecurity rule 949110 triggered on d865. Web application attack blocked by CSF/LFD.
Web App Attack Hacking
🇺🇸 heyzg
HTTP Web Scanning (observed): 5 HTTP, 31s
Bad Web Bot Web App Attack
🇺🇸 kosada.com
Web bot: denial-of-service flood
DDoS Attack Bad Web Bot
🇨🇭 backslash
block ruleset 3D3AFA921A373ECE19B6BA285C2D722163304638
Bad Web Bot
🇺🇸 kosada.com
Web bot: denial-of-service flood
DDoS Attack Bad Web Bot
🇳🇱 WeCloudit-Anti-Abuse
HTTP flood against /retreat-corp on Apache webserver
Brute-Force
🇦🇺 MAGIC
VM1 Bad user agents ignoring web crawling rules. Draing bandwidth
DDoS Attack Bad Web Bot
🇨🇿 huginet
Web Spam Web App Attack
🇨🇿 lp
anomaly: udp_src_session, 2001 > threshold 2000, repeats 1638 times
Port Scan
🇮🇹 VHosting
Detected mail brute force attack from 4 different servers
Brute-Force
🇸🇮 basing
2026-05-03 04:15:50 kb SASL PLAIN auth failed: rhost=104.28.163.254...
Brute-Force
🇺🇸 LockBlock
Port Scan

Showing 1 to 15 of 30 reports


Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown 🚩

Recently Reported IPs:

🇻🇳 222.252.29.144
🇧🇷 200.222.71.218
🇸🇬 162.158.170.95
🇰🇷 112.220.250.20
🇧🇬 79.124.60.218
🇫🇮 35.228.64.54
🇺🇸 20.14.93.163
🇩🇪 8.211.45.218
🇹🇼 203.217.114.184
🇳🇱 185.242.226.114
🇰🇷 180.71.9.31
🇦🇪 151.245.151.112
🇦🇪 151.245.151.53
🇦🇪 151.245.151.35
🇺🇸 147.185.132.164
🇧🇷 138.117.244.17
🇺🇸 129.82.138.31
🇻🇳 103.186.101.251
🇦🇪 92.98.132.170