This IP is considered potentially malicious and poses a serious security threat. Activity from this IP is consistent with active and malicious behavior. This assessment is backed by strong and consistent detection signals. The IP represents a severe and confirmed security risk. Immediate blocking or mitigation is strongly recommended.
The IP exhibits signs of automated behavior, including a mobile user-agent and lack of JavaScript support. The request to an external IP suggests potential reconnaissance or probing activity. The absence of RDNS further raises concerns about the legitimacy of the traffic.
The supernet (149.19.0.0/16), which this IP belongs to, exhibits signs of coordinated automation with multiple IPs showing repetitive access patterns to various sites, often using identical user agents. The presence of hosting and proxy services, along with DNS mismatches, raises concerns about potential scraping or botnet activity.
Region: São Paulo, Brazil
City: Sao Paulo
Local time: 2026-06-25 17:39:27