Identicon of IP address 149.102.153.38

149.102.153.38

IP Risk Score: 78 / 100

This IP is considered high risk and shows signs of malicious behavior. Strong indicators point to automated scanning or suspicious access attempts. This assessment is backed by strong and consistent detection signals. The combined indicators suggest a high overall security risk. Defensive measures such as rate limiting or blocking are recommended.

What is this IP address?
IP Address: 149.102.153.38
Country: United Kingdom flag United Kingdom (GB)
Region Name: England (ENG)
City: Portsmouth
ISP: Cogent Communications
Organization: Contabo GmbH
Threat level: 78 / 100
Conf. level: 100 / 100
Properties
ASN: AS51167
AS Name: Contabo GmbH
Timezone: Europe/London
Reverse DNS: uk1tor.quetzalcoatl-relays.org
Status: Critical
Hosting
Proxy
Tor

Observed Client Profile
  • OS: Windows (100%)
  • Device Type: Desktop (100%)
  • Browser Family: Chrome (100%)
  • Rendering Engine: Gecko (100%)
Behavioral Indicators

The IP exhibits strong indicators of automated behavior, including lack of JavaScript support and use of a proxy. The user-agent appears to be spoofed, and the traffic originates from a known hosting provider, raising concerns about potential scraping or probing activities.

The supernet (149.102.0.0/16), which this IP belongs to, exhibits highly coordinated behavior indicative of automated scraping, with multiple IPs showing repetitive access patterns to specific sites, low interaction, and a prevalence of non-human user agents. The presence of honeypot hits and failed requests further suggests an intent to probe or scrape content, raising concerns about potential misuse of legitimate infrastructure.

JavaScript Support
โš ๏ธ No
User-Agent Samples
  • Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/84.0.4147.105 Safari/537.36

IP Location

Region: England, United Kingdom

City: Portsmouth

Local time: 2026-06-24 02:02:03