Identicon of IP address 111.92.133.183

111.92.133.183

IP Risk Score: 92 / 100

This IP is considered potentially malicious and poses a serious security threat. Activity from this IP is consistent with active and malicious behavior. This assessment is backed by strong and consistent detection signals. The IP represents a severe and confirmed security risk. Immediate blocking or mitigation is strongly recommended.

What is this IP address?
IP Address: 111.92.133.183
Country: Pakistan flag Pakistan (PK)
Region Name: Sindh (SD)
City: Karachi
ISP: Fariya Networks
Organization: Fariya Networks
Threat level: 92 / 100
Conf. level: 100 / 100
Properties
ASN: AS132165
AS Name: Connect Communications
Timezone: Asia/Karachi
Reverse DNS: fn133-dynamic183.snms.net.pk.133.92.111.in-addr.arpa
Status: Critical

Observed Client Profile
  • OS: Windows (100%)
  • Device Type: Desktop (100%)
  • Browser Family: Chrome (100%)
  • Rendering Engine: Gecko (100%)
Behavioral Indicators

The IP shows signs of automated behavior with a malformed user-agent and no JavaScript support, indicating potential bot activity. The access pattern is suspicious, particularly with the botnet detection signal. The RDNS does not point to a known cloud provider, but the overall context suggests malicious intent.

The supernet (111.92.0.0/16), which this IP belongs to, exhibits behavior indicative of automated scraping or bot activity, characterized by repetitive, low-interaction visits across multiple IPs with mismatched forward DNS. The use of dynamic IPs from a single ISP and the presence of identical or crawler-like user agents further suggest coordinated automation, raising concerns about potential analytics pollution.

πŸ•ΈοΈ
Botnet Node
JavaScript Support
⚠️ No
User-Agent Samples
  • Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/100.0.4896.75 Safari/537.36

IP Location

Region: Sindh, Pakistan

City: Karachi

Local time: 2026-06-22 17:24:59