This IP is considered high risk and shows signs of malicious behavior. Strong indicators point to automated scanning or suspicious access attempts. This assessment is backed by strong and consistent detection signals. The combined indicators suggest a high overall security risk. Defensive measures such as rate limiting or blocking are recommended.
The IP address shows signs of suspicious activity, including a 403 error on an admin path and lack of JavaScript support. The user-agent appears to be a mobile device, but the behavior suggests potential automation or probing. The absence of RDNS and the association with a cloud provider further raise concerns.
The supernet (161.118.0.0/16), which this IP belongs to, exhibits coordinated behavior characterized by multiple IPs generating repetitive low-interaction requests to the same site, primarily resulting in 403 Forbidden responses. The use of diverse user agents across these IPs suggests potential automation or scraping activity, with no legitimate matching DNS records, raising suspicion of malicious intent.
Region: South East, Singapore
City: Singapore
Local time: 2026-06-22 21:30:45