Identicon of IP address 152.237.105.3

152.237.105.3

IP Risk Score: 81 / 100

This IP is considered potentially malicious and poses a serious security threat. Activity from this IP is consistent with active and malicious behavior. This assessment is backed by strong and consistent detection signals. The IP represents a severe and confirmed security risk. Immediate blocking or mitigation is strongly recommended.

What is this IP address?
IP Address: 152.237.105.3
Country: Brazil flag Brazil (BR)
Region Name: Rio de Janeiro (RJ)
City: Nova Iguaçu
ISP: V tal
Organization: V tal
Threat level: 81 / 100
Conf. level: 100 / 100
Properties
ASN: AS7738
AS Name: V tal
Timezone: America/Sao_Paulo
Status: Critical

Observed Client Profile
  • OS: macOS (100%)
  • Device Type: Desktop (100%)
  • Browser Family: Chrome (100%)
  • Rendering Engine: Gecko (100%)
Behavioral Indicators

The IP shows signs of automated behavior with no JavaScript support and a structured user-agent that may be spoofed. The lack of RDNS and the single access event raise concerns about potential probing or scraping activity.

The supernet (152.237.0.0/16), which this IP belongs to, exhibits high levels of repetitive, low-interaction traffic with a significant number of IPs using similar user agents, suggesting potential automated scraping behavior. However, the consistent RDNS and forward DNS matching across most IPs indicates a level of legitimacy, albeit with some anomalies in user agent diversity and DNS mismatches that raise suspicion.

JavaScript Support
⚠️ No
User-Agent Samples
  • Mozilla/5.0 (Macintosh; Intel Mac OS X 10_11_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/100.0.4896.79 Safari/537.36

IP Location

Region: Rio de Janeiro, Brazil

City: Nova Iguaçu

Local time: 2026-06-24 00:59:53