This IP is considered potentially malicious and poses a serious security threat. Activity from this IP is consistent with active and malicious behavior. This assessment is backed by strong and consistent detection signals. The IP represents a severe and confirmed security risk. Immediate blocking or mitigation is strongly recommended.
The IP shows signs of automated behavior with a malformed user-agent and no JavaScript support, indicating potential bot activity. The lack of RDNS and mobile user-agent further suggests evasion tactics. The single access event raises concerns about probing or scraping.
The supernet (102.221.0.0/16), which this IP belongs to, exhibits suspicious behavior characterized by repetitive, low-interaction visits across multiple IPs, with a notable lack of matching forward DNS records. The use of identical user agents and the presence of proxy IPs suggest potential automation and scraping activities. Overall, the behavior indicates a coordinated effort that raises concerns about analytics pollution and possible misuse of legitimate infrastructure.
Region: Limpopo, South Africa
City: Tzaneen
Local time: 2026-06-23 07:00:06