This IP is considered potentially malicious and poses a serious security threat. Activity from this IP is consistent with active and malicious behavior. This assessment is backed by strong and consistent detection signals. The IP represents a severe and confirmed security risk. Immediate blocking or mitigation is strongly recommended.
The IP address exhibits suspicious behavior indicative of a scanning or scraping activity, including multiple 404 errors on sensitive paths and repeated access patterns. The user-agent appears to be spoofed, and the lack of reverse DNS further raises concerns about the legitimacy of the traffic.
The supernet (185.177.0.0/16), which this IP belongs to, exhibits coordinated behavior indicative of automated scraping and scanning activities, with multiple IPs utilizing similar user agents and generating a high volume of low-value traffic. The presence of repeated 403 and 404 hits across various IPs suggests attempts to access restricted or non-existent resources, raising concerns about potential malicious intent.
Region: England, United Kingdom
City: Congleton
Local time: 2026-06-22 19:40:30