AbuseIPDB » 39.104.208.231

39.104.208.231
Recent Activity This IP has received recent abuse reports, which causes the score to increase.
329 reports found in our database
98% Critical
Abuse confidence score ?
ISP
Aliyun Computing Co., LTD
Usage Type
Data Center/Web Hosting/Transit
ASN
Domain Name
alibabacloud.com
Country
🇨🇳 China
City
Beijing, Beijing

IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

Log in to view charts and search reports for this IP. Log In

Top Reporter Countries (Last 60 Days)

Example preview

Report Categories (Last 60 Days)

Example preview

Reports Activity

Example preview
Account required for the enhanced features Log in Sign up

IP Abuse Reports for 39.104.208.231:

This IP address has been reported a total of 329 times from 108 distinct sources. 39.104.208.231 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: United States of America with 16 reports; Germany with 10 reports; Belgium with 2 reports. The most common categories in these recent reports were: Port Scan 35 times; Hacking 11 times; Brute-Force 10 times; SSH 9 times; Exploited Host 1 time; Other 1 time.

Reporter IoA Timestamp (UTC) Comment Categories
🇩🇪 WinterGateIC
Port Scan Hacking
🇦🇹 RobertsPlaystation
Blocked by os-abuseipdb; 4 hits, proto=tcp, ports=2222
Port Scan Hacking
🇮🇱 Ilop
Port Scan
🇹🇷 Threat.live
Threat.live: Brute Force
Brute-Force
🇺🇸 MPL
tcp/2222 (4 or more attempts)
Port Scan
🇺🇸 xmission.com
Port Scan
🇯🇵 S.O.B.A. Dev.
Persistent port scanning or vulnerability scanning
Port Scan
🇩🇪 Admins@FBN
FW-PortScan: Traffic Blocked srcport=42194 dstport=2222
Port Scan
🇩🇪 _ArminS_
SP-Scan 52280:2222 detected 2026.09.04 21:25:57 blocked until 2026.10.24 14:28:44
Port Scan
🇩🇪 Admins@FBN
FW-PortScan: Traffic Blocked srcport=41444 dstport=2222
Port Scan
🇺🇸 MPL
tcp/2222 (4 or more attempts)
Port Scan
🇺🇸 LotPhantom
Port Scan Hacking
🇺🇸 MPL
tcp/2222 (8 or more attempts)
Port Scan
🇮🇹 CoreTech srl
[DC: IP:151.1.252.27] ntopng alert: blacklisted_client_contact
Hacking
🇲🇳 Public CSIRT/CC of Mongolia
Honeypot hit: Empty payload (likely service probe); 2222 [1] TCP
Port Scan

Showing 1 to 15 of 329 reports


Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown 🚩

Recently Reported IPs:

🇺🇸 198.46.200.132
🇨🇳 124.134.120.80
🇳🇱 195.178.110.30
🇳🇱 192.253.248.230
🇺🇸 172.59.83.58
🇻🇳 165.99.16.135
🇻🇳 160.191.88.207
🇧🇩 146.196.50.210
🇻🇳 103.28.38.126
🇩🇪 51.38.115.161
🇳🇱 45.148.10.152
🇰🇼 37.34.138.115
🇩🇪 2.27.248.95
🇮🇳 202.141.115.90
🇧🇷 191.5.234.217
🇦🇷 186.19.22.126
🇻🇳 171.244.5.213
🇮🇳 139.59.77.241
🇧🇭 109.161.238.19
🇧🇬 109.160.32.39