Is 39.153.251.118 malicious?
IP reputation report for 39.153.251.118: blocklist detections, geolocation, ASN, WHOIS and security posture, aggregated from 100+ threat intelligence sources.
39.153.251.118 is listed on 34 threat intelligence sources
Detected by 34 threat intelligence sources in the isMalicious dataset — review before trusting this IP.
Threat verdict
VerdictListed on blocklists
Appears on threat intelligence blocklists — treat with caution.
Blocklist detections34 sources
Categoriesphishing, malware, dns, suspicious, malicious, attack, abuse, botnet, c2
Confidence score100/100
Aggregated confidence across the sources reporting this indicator.
Last updated2026-07-05
Network & location
LocationGuangzhou, Guangdong, China
ISPChina Mobile
ASNAS9808 — China Mobile
Network39.153.248.0/22
CompanyChina Mobile
InfrastructureProxy, Mobile
Detections
- Romain Marcoux - Malicious Outgoing IPsphishing
- Romain Marcoux - Malicious IPsphishing
- CINSSCORE Bad Guysmalware
- CyberCure Blocked URL Feedmalware
- CyberCure Hash Feedmalware
- DNS CH TXT Version Binddns
- CyberCure IP Feedmalware
- DNS Recursion Desireddns
- IPsum Level 1suspicious
- Threatview IP Blocklistmalicious
- IPsum – malicious IP feedmalware
- ThreatHive - Hive Blocklist
- T145 - Black Mirror IPv4 Blocklistmalware
- Bitwire - Inbound Blocklistmalware
- Bitwire - Outbound Blocklistmalware
- FireHOL - Ciarmymalware
- FireHOL - Firehol Level3attack
- IPsum Level 2suspicious
- Duggytuxy - Blacklist Ips For Fortinet Firewall Aa.txt
- Data-Shield IPv4 Blocklistmalware
- Borestad - AbuseIPDB Blocklist (1d)abuse
- SIP Queryattack
- Binary Defense - Banlist
- Malware-Filter - Botnet Filter IPsbotnet
+10 more sources in the full report.