This IP is considered high risk and shows signs of malicious behavior. Strong indicators point to automated scanning or suspicious access attempts. This assessment is backed by strong and consistent detection signals. The combined indicators suggest a high overall security risk. Defensive measures such as rate limiting or blocking are recommended.
The IP shows signs of automated behavior with a mobile user-agent that lacks JavaScript support. The request to a specific IP path raises concerns about potential reconnaissance or probing activity. The absence of RDNS further adds to the suspicion.
The supernet (103.244.0.0/16), which this IP belongs to, exhibits suspicious behavior characterized by repetitive, low-interaction visits with multiple IPs using similar user agents, indicating potential automated scraping or bot activity. The lack of matching forward DNS records and the presence of multiple IPs from different ASNs further suggest coordinated stealth automation rather than legitimate traffic.
Region: Gujarat, India
City: Ahmedabad
Local time: 2026-06-23 15:37:08