This IP is considered potentially malicious and poses a serious security threat. Activity from this IP is consistent with active and malicious behavior. This assessment is backed by strong and consistent detection signals. The IP represents a severe and confirmed security risk. Immediate blocking or mitigation is strongly recommended.
The IP address exhibits suspicious behavior, including the use of a malformed user-agent and lack of JavaScript support, indicating potential automated activity. It is associated with a proxy and has no reverse DNS, raising further concerns about its legitimacy.
The supernet (140.228.0.0/16), which this IP belongs to, exhibits suspicious behavior characterized by repetitive, low-interaction visits with a variety of user agents, including some that mimic legitimate crawlers. The presence of multiple proxies and mismatched DNS records raises concerns about coordinated automation and potential scraping activities.
Region: Utah, United States
City: Salem
Local time: 2026-06-27 11:56:12