AbuseIPDB » 39.182.20.99
39.182.20.99 was found in our database!
This IP was reported 3 times. Confidence of
Abuse
is 13% : ?
ISP
China Mobile Communications Corporation
Usage Type
Fixed Line ISP
ASN
AS56041
Domain Name
chinamobile.com
Country
π¨π³
China
City
Shanghai, Shanghai
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 39.182.20.99 :
This IP address has been reported a total of
3
times from
2 distinct
sources.
39.182.20.99 was first reported on
May 19th 2026 , and the most recent report was
16 hours ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
πΈπ¬
mypatricks
2026-06-09 22:36:42
(16 hours ago)
39.182.20.99 | Port: 10058 | DNS: 39.182.20.99 2026-06-10T06:36:41+08:00 Asia/Shanghai | IPs res erv ...
show more
39.182.20.99 | Port: 10058 | DNS: 39.182.20.99 2026-06-10T06:36:41+08:00 Asia/Shanghai | IPs res erved list | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/148.0.0.0 Safari/537.36 HTTP/1.1 443 GET | URL: /zh/%e5%88%9d%e5%ad%a6%e8%80%85%e6%8c%87%e5%8d%97/%e5%93%aa%e7%a7%8d%e9%a3%9f%e7%94%a8%e8%89%b2%e7%b4%a0%e6%9b%b4%e9%80%82%e5%90%88gumpaste/?1ce11abadceaf31ccd3abb1&1775085740 | Ref: https://xxxxxx/zh/%e5%88%9d%e5%ad%a6%e8%80%85%e6%8c%87%e5%8d%97/%e5%93%aa%e7%a7%8d%e9%a3%9f%e7%94%a8%e8%89%b2%e7%b4%a0%e6%9b%b4%e9%80%82%e5%90%88gumpaste/?1ce11abadceaf31ccd3abb1=&1775085740= | Country: CN/China/+08:00 IP City: Shanghai Windows a0939dcd2e149a7c-LHR/London, United Kingdom 1 hits/0 secs Browser 2
show less
Brute-Force
Web App Attack
Blog Spam
Web Spam
Exploited Host
πΊπΈ
TPI-Abuse
2026-05-20 20:58:24
(2 weeks ago)
(mod_security) mod_security (id:210831) triggered by 39.182.20.99 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210831) triggered by 39.182.20.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed May 20 16:58:18.399118 2026] [security2:error] [pid 8173:tid 8173] [client 39.182.20.99:8086] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:(?:^(?:microsoft url|user-Agent|www\\\\.weblogs\\\\.com|(?:jakart|vi)a|(google|i{0,1}explorer{0,1}\\\\.exe|(ms){0,1}ie( [0-9.]{1,}){0,1} {0,1}(compatible( browser){0,1}){0,1})$)|\\\\bdatacha0s\\\\b|; widows|\\\\\\\\r|a(?: href=|d(?:sarobot|vanced email extractor ..." at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "29"] [id "210831"] [rev "2"] [msg "COMODO WAF: Rogue web site crawler||lobibilisim.com|F|4"] [data "User-Agent"] [severity "WARNING"] [tag "CWAF"] [tag "Agents"] [hostname "lobibilisim.com"] [uri "/"] [unique_id "ag4gajgZGMW4NxQhkdIKHgAAABk"], referer: http://lobibilisim.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-05-19 00:44:51
(3 weeks ago)
(mod_security) mod_security (id:210831) triggered by 39.182.20.99 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210831) triggered by 39.182.20.99 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon May 18 20:44:43.343178 2026] [security2:error] [pid 3373:tid 3373] [client 39.182.20.99:8013] ModSecurity: Access denied with code 403 (phase 2). Pattern match "(?i:(?:^(?:microsoft url|user-Agent|www\\\\.weblogs\\\\.com|(?:jakart|vi)a|(google|i{0,1}explorer{0,1}\\\\.exe|(ms){0,1}ie( [0-9.]{1,}){0,1} {0,1}(compatible( browser){0,1}){0,1})$)|\\\\bdatacha0s\\\\b|; widows|\\\\\\\\r|a(?: href=|d(?:sarobot|vanced email extractor ..." at REQUEST_HEADERS:User-Agent. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/03_Global_Agents.conf"] [line "29"] [id "210831"] [rev "2"] [msg "COMODO WAF: Rogue web site crawler||depololaw.com|F|4"] [data "User-Agent"] [severity "WARNING"] [tag "CWAF"] [tag "Agents"] [hostname "depololaw.com"] [uri "/index.html"] [unique_id "aguye3O0fIkOu5-ln1brLQAAAAI"], referer: https://depololaw.com/index.html
show less
Brute-Force
Bad Web Bot
Web App Attack
Showing 1 to
3
of 3 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown π©
Recently Reported IPs: