This IP is considered low risk and is not actively malicious. It shows occasional automated or non-human access patterns. This assessment is backed by strong and consistent detection signals. Overall risk is low based on the observed behavior. No action is needed unless this activity becomes persistent.
The IP shows signs of potential automation with a structured user-agent, but it also has JavaScript support and originates from a legitimate ISP. The single event and lack of RDNS raise some concerns, but overall behavior does not strongly indicate malicious intent.
The supernet (185.106.0.0/16), which this IP belongs to, exhibits coordinated behavior with multiple IPs accessing the same site using a mix of outdated and modern user agents, suggesting potential automation. However, the lack of honeypot hits and the presence of legitimate ISP information indicate that the activity may not be malicious but rather indicative of automated scraping or bot behavior.
Region: Erbil, Iraq
City: Erbil
Local time: 2026-07-04 00:42:40