This IP is considered potentially malicious and poses a serious security threat. Activity from this IP is consistent with active and malicious behavior. This assessment is backed by strong and consistent detection signals. The IP represents a severe and confirmed security risk. Immediate blocking or mitigation is strongly recommended.
The IP address exhibits suspicious behavior, including the absence of JavaScript support and usage of a proxy or hosting service. The user-agent appears to be a common browser UA but may be spoofed. The lack of RDNS and the nature of the traffic suggest potential automated probing.
The supernet (104.249.0.0/16), which this IP belongs to, exhibits behavior indicative of coordinated automation, with multiple IPs utilizing similar user agents and engaging in repetitive, low-interaction visits to a specific site. The presence of hosting and proxy services suggests potential misuse, although the lack of consistent RDNS and forward DNS matches raises concerns about legitimacy.
Region: England, United Kingdom
City: London
Local time: 2026-06-22 13:25:59