This IP is considered low risk and is not actively malicious. It shows occasional automated or non-human access patterns. This assessment is backed by strong and consistent detection signals. Overall risk is low based on the observed behavior. No action is needed unless this activity becomes persistent.
The IP shows signs of automated behavior with multiple requests in a short time frame. While the user-agent appears legitimate, the lack of RDNS and the nature of the requests raise concerns about potential scraping activity.
The supernet (104.252.0.0/16), which this IP belongs to, exhibits suspicious behavior characterized by repetitive low-interaction visits to a limited number of sites, with multiple IPs using similar user agents and showing high honeypot hit rates. The lack of matching forward DNS records and the presence of hosting and proxy services suggest potential misuse of legitimate infrastructure for automated scraping or bot-like activities.
Region: Virginia, United States
City: Ashburn
Local time: 2026-06-23 05:06:09