This IP is considered high risk and shows signs of malicious behavior. Strong indicators point to automated scanning or suspicious access attempts. This assessment is backed by strong and consistent detection signals. The combined indicators suggest a high overall security risk. Defensive measures such as rate limiting or blocking are recommended.
The IP exhibits signs of automated behavior, including access to multiple paths with a consistent user-agent that may be spoofed. The lack of RDNS and the use of a proxy raise concerns about potential scraping or probing activities.
The supernet (104.234.0.0/16), which this IP belongs to, exhibits behavior indicative of coordinated automation, with multiple IPs showing repetitive low-interaction visits and a reliance on similar user agents. The presence of proxy usage and DNS mismatches raises concerns about potential scraping or botnet activity.
Region: Illinois, United States
City: Chicago
Local time: 2026-06-25 12:21:46