AbuseIPDB » 139.196.50.8
139.196.50.8 was found in our database!
This IP was reported 18 times. Confidence of
Abuse
is 0% : ?
ISP
Aliyun Computing Co., LTD
Usage Type
Data Center/Web Hosting/Transit
ASN
AS37963
Domain Name
alibabacloud.com
Country
๐จ๐ณ
China
City
Shanghai, Shanghai
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 139.196.50.8 :
This IP address has been reported a total of
18
times from
11 distinct
sources.
139.196.50.8 was first reported on
September 30th 2024 , and the most recent report was
9 months ago .
Old Reports:
The most recent abuse report for this IP address is from
9 months ago
. It is possible that this IP is no longer involved in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
Anonymous
2025-08-15 03:32:43
(9 months ago)
Aggressive web scan
Web App Attack
Anonymous
2025-08-14 03:22:47
(9 months ago)
Aggressive web scan
Web App Attack
๐ธ๐ฌ
Charles
2025-08-11 07:21:56
(10 months ago)
2025-08-11T15:21:54.013958+08:00 server1 postfix/submissions/smtpd[1719351]: SSL_accept error from u ...
show more
2025-08-11T15:21:54.013958+08:00 server1 postfix/submissions/smtpd[1719351]: SSL_accept error from unknown[139.196.50.8]: -1
...
show less
Web Spam
Email Spam
Brute-Force
Bad Web Bot
Web App Attack
SSH
Anonymous
2025-08-11 02:41:06
(10 months ago)
139.196.50.8 - - [11/Aug/2025:02:40:55 +0000] "GET / HTTP/1.0" 400 67834 "-" "-" "-" "-"
139.196.50 ...
show more
139.196.50.8 - - [11/Aug/2025:02:40:55 +0000] "GET / HTTP/1.0" 400 67834 "-" "-" "-" "-"
139.196.50.8 - - [11/Aug/2025:02:41:05 +0000] "GET / HTTP/1.0" 400 67834 "-" "-" "-" "-"
139.196.50.8 - - [11/Aug/2025:02:41:05 +0000] "GET /robots.txt HTTP/1.1" 400 68797 "-" "Mozilla/5.0 (compatible; Nmap Scripting Engine; https://nmap.org/book/nse.html)" "-" "-"
139.196.50.8 - - [11/Aug/2025:02:41:05 +0000] "GET /.git/HEAD HTTP/1.1" 400 68786 "-" "Mozilla/5.0 (compatible; Nmap Scripting Engine; https://nmap.org/book/nse.html)" "-" "-"
139.196.50.8 - - [11/Aug/2025:02:41:05 +0000] "GET /nmaplowercheck1754880064 HTTP/1.1" 400 68951 "-" "Mozilla/5.0 (compatible; Nmap Scripting Engine; https://nmap.org/book/nse.html)" "-" "-"
139.196.50.8 - - [11/Aug/2025:02:41:05 +0000] "GET / HTTP/1.1" 400 68775 "-" "Mozilla/5.0 (compatible; Nmap Scripting Engine; https://nmap.org/book/nse.html)" "-" "-"
139.196.50.8 - - [11/Aug/2025:02:41:06 +0000] "POST / HTTP/1.1" 400 69211 "-" "Mozilla/5.0 (compatible;
...
show less
Brute-Force
SSH
Anonymous
2025-08-04 03:22:42
(10 months ago)
Aggressive web scan
Web App Attack
Anonymous
2025-08-01 19:42:47
(10 months ago)
Aggressive web scan
Web App Attack
Anonymous
2025-06-28 00:17:44
(11 months ago)
Aggressive web scan
Web App Attack
Anonymous
2025-06-26 23:02:43
(11 months ago)
Aggressive web scan
Web App Attack
๐บ๐ธ
masterguru
2025-06-26 21:46:58
(11 months ago)
Found User-Agent associated with security scanner. Matched phrase "nmap scripting engine" at REQUEST ...
show more
Found User-Agent associated with security scanner. Matched phrase "nmap scripting engine" at REQUEST_HEADERS:User-Agent. (913100-147)
show less
Hacking
Bad Web Bot
Anonymous
2025-06-25 05:17:47
(11 months ago)
Aggressive web scan
Web App Attack
๐ญ๐บ
DumaNet
2025-01-17 01:46:00
(1 year ago)
Blocked for port scanning.
Time: Thu Jan 16. 06:40:41 2025 +0100
IP: 139.196.50.8 (CN/China/-)
...
show more
Blocked for port scanning.
Time: Thu Jan 16. 06:40:41 2025 +0100
IP: 139.196.50.8 (CN/China/-)
Sample of block hits:
Jan 16 06:40:24 vserv kernel: [4990408.677728] Firewall: *TCP_IN Blocked* IN=eth0 OUT= MAC= SRC=139.196.50.8 DST=[removed] LEN=44 TOS=0x00 PREC=0x00 TTL=38 ID=9927 PROTO=TCP SPT=56034 DPT=143 WINDOW=1024 RES=0x00 SYN URGP=0
Jan 16 06:40:24 vserv kernel: [4990408.678302] Firewall: *TCP_IN Blocked* IN=eth0 OUT= MAC= SRC=139.196.50.8 DST=[removed] LEN=44 TOS=0x00 PREC=0x00 TTL=38 ID=17615 PROTO=TCP SPT=56034 DPT=23 WINDOW=1024 RES=0x00 SYN URGP=0
Jan 16 06:40:24 vserv kernel: [4990408.679283] Firewall: *TCP_IN Blocked* IN=eth0 OUT= MAC= SRC=139.196.50.8 DST=[removed] LEN=44 TOS=0x00 PREC=0x00 TTL=33 ID=33331 PROTO=TCP SPT=56034 DPT=995 WINDOW=1024 RES=0x00 SYN URGP=0
Jan 16 06:40:24 vserv kernel: [4990408.680732] Firewall: *TCP_IN Blocked* IN=eth0 OUT= MAC= SRC=139.196.50.8 DST=[removed] LEN=44 TOS=0x00 PREC=0x00 TTL=35 ID=21678 PROTO=TCP SPT=56034 DPT=8888 WINDOW=1024 RES=0x00 SYN URGP
show less
Port Scan
๐ฌ๐ง
dwmosaics
2025-01-07 02:30:29
(1 year ago)
"-" 408 4687 "-" "-"
Brute-Force
Web App Attack
๐บ๐ธ
mashamal
2024-12-24 02:55:54
(1 year ago)
Vulnerability Probe
...
Web App Attack
๐ฉ๐ช
ut-addicted.com
2024-12-15 10:36:16
(1 year ago)
Dec 15 11:36:15 www postfix/smtpd\[17098\]: lost connection after CONNECT from unknown\[139.196.50.8 ...
show more
Dec 15 11:36:15 www postfix/smtpd\[17098\]: lost connection after CONNECT from unknown\[139.196.50.8\]
show less
Hacking
Brute-Force
๐จ๐ฆ
Slackin' Jack
2024-12-12 08:59:02
(1 year ago)
Triggered honeypot on port 6346. (139.196.50.8)
Port Scan
Showing 1 to
15
of 18 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ
Recently Reported IPs: