This IP presents a moderate risk and may be associated with automated activity. Moderate behavioral signals suggest possible automated probing or scanning. This assessment is backed by strong and consistent detection signals. The combined signals place this IP in a moderate risk category. Monitoring is recommended, with defensive action considered if activity continues.
The IP exhibits signs of potential automated behavior, including a malformed user-agent and lack of JavaScript support. The absence of RDNS and mobile user-agent raises concerns about possible evasion tactics. While the threat score is low, the overall behavior suggests a need for caution.
The supernet (175.157.0.0/16), which this IP belongs to, exhibits behavior indicative of low-interaction, automated traffic, primarily from mobile devices, with no matching RDNS or forward DNS records. The repetitive nature of the traffic and the use of a single ASN suggest potential misuse of legitimate infrastructure, raising concerns about coordinated scraping or bot activity.
Region: Western Province, Sri Lanka
City: Colombo
Local time: 2026-06-28 07:25:07