Identicon of IP address 185.177.72.3

185.177.72.3

IP Risk Score: 82 / 100

This IP is considered potentially malicious and poses a serious security threat. Activity from this IP is consistent with active and malicious behavior. This assessment is backed by strong and consistent detection signals. The IP represents a severe and confirmed security risk. Immediate blocking or mitigation is strongly recommended.

What is this IP address?
IP Address: 185.177.72.3
Country: United Kingdom flag United Kingdom (GB)
Region Name: England (ENG)
City: Congleton
ISP: Yufly Telecom SL
Organization: Yufly Telecom SL
Threat level: 82 / 100
Conf. level: 100 / 100
Properties
ASN: AS211590
AS Name: Bucklog SARL
Timezone: Europe/London
Status: Critical Scanner
Proxy

Observed Client Profile
  • OS: Unknown (100%)
  • Device Type: Desktop (100%)
  • Browser Family: Unknown (100%)
  • Rendering Engine: Unknown (100%)
Behavioral Indicators

The IP exhibits characteristics of automated scanning behavior, including a suspicious user-agent indicating a scanner. The lack of RDNS and the use of a proxy further suggest potential malicious intent. Given the context, this IP is likely involved in reconnaissance or probing activities.

The supernet (185.177.0.0/16), which this IP belongs to, exhibits coordinated behavior indicative of automated scraping and scanning activities, with multiple IPs utilizing similar user agents and generating a high volume of low-value traffic. The presence of repeated 403 and 404 hits across various IPs suggests attempts to access restricted or non-existent resources, raising concerns about potential malicious intent.

User-Agent Samples
  • Mozilla/5.0 (compatible; scanner/1.0)

IP Location

Region: England, United Kingdom

City: Congleton

Local time: 2026-06-22 11:29:15