Identicon of IP address 158.173.77.249

158.173.77.249

IP Risk Score: 91 / 100

This IP is considered potentially malicious and poses a serious security threat. Activity from this IP is consistent with active and malicious behavior. This assessment is backed by strong and consistent detection signals. The IP represents a severe and confirmed security risk. Immediate blocking or mitigation is strongly recommended.

What is this IP address?
IP Address: 158.173.77.249
Country: Italy flag Italy (IT)
Region Name: Lombardy (25)
City: Milan
ISP: F.N.S. HOLDINGS LIMITED
Organization: VPN Consumer Milan, Italy
Threat level: 91 / 100
Conf. level: 100 / 100
Properties
ASN: AS206092
AS Name: F.N.S. HOLDINGS LIMITED
Timezone: Europe/Rome
Status: Critical
Proxy

Observed Client Profile
  • OS: Windows (100%)
  • Device Type: Desktop (100%)
  • Browser Family: Firefox (100%)
  • Rendering Engine: Gecko (100%)
Behavioral Indicators

The IP shows signs of suspicious activity, including a honeypot hit and access from a proxy. The absence of JavaScript support further indicates potential bot behavior. The user-agent appears to be a standard browser but may be spoofed given the context.

The supernet (158.173.0.0/16), which this IP belongs to, exhibits coordinated behavior indicative of automated scraping or bot activity, characterized by repetitive low-interaction visits, diverse user agents, and a lack of legitimate DNS resolution. The presence of multiple proxy IPs and the use of VPN services further suggest potential misuse of infrastructure for stealthy automation.

๐Ÿฏ
Honeypot Hit
JavaScript Support
โš ๏ธ No
User-Agent Samples
  • Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:126.0) Gecko/20100101 Firefox/126.0

IP Location

Region: Lombardy, Italy

City: Milan

Local time: 2026-06-25 19:22:00