This IP is considered potentially malicious and poses a serious security threat. Activity from this IP is consistent with active and malicious behavior. This assessment is backed by strong and consistent detection signals. The IP represents a severe and confirmed security risk. Immediate blocking or mitigation is strongly recommended.
The IP shows signs of suspicious behavior, including a single access event to an admin path with a 404 response. The absence of RDNS and the use of a proxy indicate potential evasion tactics. Additionally, the lack of JavaScript support further suggests automated activity.
The supernet (103.108.0.0/16), which this IP belongs to, exhibits suspicious behavior characterized by repetitive, low-interaction visits to a specific site, with multiple IPs using identical or similar user agents. The lack of matching forward DNS records and the presence of diverse user agents suggest potential automation or scraping activity, raising concerns about coordinated stealth operations.
Region: Maharashtra, India
City: Mumbai
Local time: 2026-06-22 15:39:21