AbuseIPDB » 39.32.38.65
39.32.38.65 was found in our database!
This IP was reported 6 times. Confidence of
Abuse
is 20% : ?
ISP
Pakistan Telecommuication company limited
Usage Type
Fixed Line ISP
ASN
AS17557
Domain Name
ptcl.net.pk
Country
π΅π°
Pakistan
City
Peshawar, Khyber Pakhtunkhwa
IP info including ISP, Usage Type, and Location provided
by IPInfo . Updated weekly.
IP Abuse Reports for 39.32.38.65 :
This IP address has been reported a total of
6
times from
3 distinct
sources.
39.32.38.65 was first reported on
June 9th 2026 , and the most recent report was
5 days ago .
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
π©πͺ
abdubhai
2026-06-11 07:08:15
(5 days ago)
39.32.38.65 - - [11/Jun/2026:12:
...
Brute-Force
π©πͺ
abdubhai
2026-06-11 06:46:39
(6 days ago)
39.32.38.65 - - [11/Jun/2026:11:
...
Brute-Force
πΊπΈ
TPI-Abuse
2026-06-10 13:40:52
(6 days ago)
(mod_security) mod_security (id:240335) triggered by 39.32.38.65 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:240335) triggered by 39.32.38.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 09:40:45.787324 2026] [security2:error] [pid 16441:tid 16452] [client 39.32.38.65:62467] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 39.32.38.65 (+1 hits since last alert)|hmpdecors.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "hmpdecors.com"] [uri "/xmlrpc.php"] [unique_id "ailpXf-LZq1A3oCNdHkheAAAAMg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-06-10 08:52:17
(6 days ago)
(mod_security) mod_security (id:225170) triggered by 39.32.38.65 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:225170) triggered by 39.32.38.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Jun 10 04:52:11.885227 2026] [security2:error] [pid 3835:tid 3835] [client 39.32.38.65:54493] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at REQUEST_COOKIES_NAMES. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/26_Apps_WordPress.conf"] [line "155"] [id "225170"] [rev "3"] [msg "COMODO WAF: Sensitive Information Disclosure Vulnerability in WordPress 4.7 (CVE-2017-5487)||xyncom.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "WordPress"] [hostname "xyncom.com"] [uri "/wp-json/wp/v2/users"] [unique_id "aiklu7RvYAJITze6ZbbQBAAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π©πͺ
grassau.com
2026-06-09 09:41:31
(1 week ago)
(wordpress) Failed wordpress login from 39.32.38.65 (PK/Pakistan/Khyber Pakhtunkhwa/Peshawar/-)
Brute-Force
πΊπΈ
TPI-Abuse
2026-06-09 07:40:41
(1 week ago)
(mod_security) mod_security (id:240335) triggered by 39.32.38.65 (-): 1 in the last 300 secs; Ports: ...
show more
(mod_security) mod_security (id:240335) triggered by 39.32.38.65 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Jun 09 03:40:35.804696 2026] [security2:error] [pid 8426:tid 8426] [client 39.32.38.65:61736] ModSecurity: Access denied with code 403 (phase 2). Operator EQ matched 0 at IP. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/30_Apps_OtherApps.conf"] [line "5956"] [id "240335"] [rev "5"] [msg "COMODO WAF: XML-RPC Attack Identified (CVE-2013-0235)|Source 39.32.38.65 (+1 hits since last alert)|caralis.com|F|2"] [severity "CRITICAL"] [tag "CWAF"] [tag "OtherApps"] [hostname "caralis.com"] [uri "/xmlrpc.php"] [unique_id "aifDczcYwU71SwrusDcg_QAAAA4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Showing 1 to
6
of 6 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown π©
Recently Reported IPs: