This IP is considered low risk and is not actively malicious. It shows occasional automated or non-human access patterns. This assessment is backed by strong and consistent detection signals. Overall risk is low based on the observed behavior. No action is needed unless this activity becomes persistent.
The IP shows signs of potentially automated behavior with a POST request to a known endpoint resulting in a 404 error. The user-agent appears to be a standard browser but is being used in a context that raises questions about intent. The lack of RDNS consistency and the mobile user-agent further contribute to the uncertainty.
The supernet (103.81.0.0/16), which this IP belongs to, exhibits coordinated behavior with multiple IPs utilizing similar user agents and engaging in repetitive, low-interaction visits to the same domain, suggesting potential automation or scraping activities. The lack of matching forward DNS records raises concerns about the legitimacy of the traffic, indicating possible misuse of infrastructure.
Region: Haryana, India
City: Faridabad
Local time: 2026-07-04 03:12:27