This IP is considered potentially malicious and poses a serious security threat. Activity from this IP is consistent with active and malicious behavior. This assessment is backed by strong and consistent detection signals. The IP represents a severe and confirmed security risk. Immediate blocking or mitigation is strongly recommended.
The IP has triggered a honeypot hit, indicating potential malicious intent. Although it shows a structured user-agent, the lack of JavaScript support and single event access raises concerns about automated behavior. The event is from a known data center, further heightening the risk level.
The supernet (136.0.0.0/16), which this IP belongs to, exhibits suspicious behavior characterized by repetitive, low-interaction visits across multiple IPs, with a notable presence of identical user agents suggesting potential automation. The presence of honeypot hits and DNS mismatches further indicates possible misuse of legitimate infrastructure, leading to concerns about coordinated scraping or bot activity.
Region: California, United States
City: San Francisco
Local time: 2026-06-23 22:42:43