Identicon of IP address 185.177.72.115

185.177.72.115

IP Risk Score: 90 / 100

This IP is considered potentially malicious and poses a serious security threat. Activity from this IP is consistent with active and malicious behavior. This assessment is backed by strong and consistent detection signals. The IP represents a severe and confirmed security risk. Immediate blocking or mitigation is strongly recommended.

What is this IP address?
IP Address: 185.177.72.115
Country: United Kingdom flag United Kingdom (GB)
Region Name: England (ENG)
City: Congleton
ISP: Yufly Telecom SL
Organization: Yufly Telecom SL
Threat level: 90 / 100
Conf. level: 100 / 100
Properties
ASN: AS198697
AS Name: YUFLY TELECOM SL
Timezone: Europe/London
Status: Critical

Observed Client Profile
  • OS: Windows (100%)
  • Device Type: Desktop (100%)
  • Browser Family: Chrome (100%)
  • Rendering Engine: Gecko (100%)
Behavioral Indicators

The IP address exhibits suspicious behavior with a high volume of requests, including access to sensitive paths and numerous 404 responses. The lack of JavaScript support and the presence of multiple failed attempts to access configuration files suggest potential malicious intent. The user-agent appears to be spoofed, further raising concerns about the legitimacy of the traffic.

The supernet (185.177.0.0/16), which this IP belongs to, exhibits coordinated behavior indicative of automated scraping and scanning activities, with multiple IPs utilizing similar user agents and generating a high volume of low-value traffic. The presence of repeated 403 and 404 hits across various IPs suggests attempts to access restricted or non-existent resources, raising concerns about potential malicious intent.

๐Ÿฏ
Honeypot Hit
๐Ÿ“ก
Scanner
JavaScript Support
โš ๏ธ No
User-Agent Samples
  • Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/91.0.4472.124 Safari/537.36

IP Location

Region: England, United Kingdom

City: Congleton

Local time: 2026-06-22 14:09:51