This IP is considered potentially malicious and poses a serious security threat. Activity from this IP is consistent with active and malicious behavior. This assessment is backed by strong and consistent detection signals. The IP represents a severe and confirmed security risk. Immediate blocking or mitigation is strongly recommended.
The IP address exhibits suspicious behavior, including the absence of JavaScript support and use of a proxy. The user-agent appears to be a standard browser UA but is likely spoofed given the context. The traffic pattern suggests potential automated scraping activity.
The supernet (104.252.0.0/16), which this IP belongs to, exhibits suspicious behavior characterized by repetitive low-interaction visits to a limited number of sites, with multiple IPs using similar user agents and showing high honeypot hit rates. The lack of matching forward DNS records and the presence of hosting and proxy services suggest potential misuse of legitimate infrastructure for automated scraping or bot-like activities.
Region: Lombardy, Italy
City: Milan
Local time: 2026-06-22 17:08:01