Identicon of IP address 149.154.161.235

149.154.161.235

IP Risk Score: 19 / 100

This IP is considered safe and does not pose a threat. Only minimal and non-threatening activity has been observed from this IP. This assessment is backed by strong and consistent detection signals. Overall risk is negligible when threat severity and confidence are considered together. No action is required.

What is this IP address?
IP Address: 149.154.161.235
Country: United Kingdom flag United Kingdom (GB)
Region Name: England (ENG)
City: London
ISP: Telegram Messenger San Francisco Network
Verified bot: TelegramBot (Crawler)
Threat level: 19 / 100
Conf. level: 100 / 100
Properties
ASN: AS62041
AS Name: Telegram Messenger Inc
Timezone: Europe/London
Reverse DNS: ip-149-154-161-235.ptr.telegram.org
Status: Safe Telegram Bot

Observed Client Profile
  • OS: Unknown (100%)
  • Device Type: Bot (100%)
  • Browser Family: Unknown (100%)
  • Rendering Engine: Unknown (100%)
Behavioral Indicators

The IP address is associated with Telegram's infrastructure and has triggered a honeypot hit, indicating potential malicious intent. The user-agent suggests automated behavior, and the access to a non-existent resource raises further concerns.

The supernet (149.154.0.0/16), which this IP belongs to, exhibits behavior consistent with automated bot activity, primarily from Telegram's infrastructure, with repetitive low-interaction visits and a common user agent. However, the presence of multiple IPs without matching RDNS and forward DNS raises concerns about potential misuse or spoofing.

๐Ÿฏ
Honeypot Hit
๐Ÿ•ท๏ธ
Spider
JavaScript Support
โš ๏ธ No
User-Agent Samples
  • TelegramBot (like TwitterBot)

IP Location

Region: England, United Kingdom

City: London

Local time: 2026-06-29 15:31:12