Identicon of IP address 138.199.7.163

138.199.7.163

IP Risk Score: 82 / 100

This IP is considered potentially malicious and poses a serious security threat. Activity from this IP is consistent with active and malicious behavior. This assessment is backed by strong and consistent detection signals. The IP represents a severe and confirmed security risk. Immediate blocking or mitigation is strongly recommended.

What is this IP address?
IP Address: 138.199.7.163
Country: The Netherlands flag The Netherlands (NL)
Region Name: North Holland (NH)
City: Amsterdam
ISP: Datacamp Limited
Organization: Cdnext AMS
Threat level: 82 / 100
Conf. level: 100 / 100
Properties
ASN: AS212238
AS Name: Datacamp Limited
Timezone: Europe/Amsterdam
Reverse DNS: unn-138-199-7-163.datapacket.com
Status: Critical
Hosting
Proxy

Observed Client Profile
  • OS: Windows (50%)
  • Device Type: Desktop (100%)
  • Browser Family: Chrome (50%)
  • Rendering Engine: Gecko (100%)
Variability
Behavioral Indicators

The IP shows signs of automated behavior with multiple hits to admin paths, including failed login attempts. The user-agent appears to be spoofed, and there are indications of evasion tactics. The presence of honeypot hits further suggests malicious intent.

The supernet (138.199.0.0/16), which this IP belongs to, exhibits suspicious behavior characterized by repetitive, low-interaction visits across multiple IPs, with a high incidence of 403 and honeypot hits. The use of identical user agents and a lack of forward DNS matches suggest potential automated scraping or bot activity, raising concerns about coordinated stealth automation and analytics pollution.

๐Ÿฏ
Honeypot Hit
๐Ÿ“ก
Scanner
JavaScript Support
โœ“ Yes
User-Agent Samples
  • Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/138.0.0.0 Safari/537.36 Edg/138.0.0.0
  • ddg_win
  • Mozilla/5.0 (Win98; rv:15.0) Gecko/20120409 Firefox/15.0

IP Location

Region: North Holland, The Netherlands

City: Amsterdam

Local time: 2026-06-22 14:26:08