This IP presents a moderate risk and may be associated with automated activity. Moderate behavioral signals suggest possible automated probing or scanning. This assessment is backed by strong and consistent detection signals. The combined signals place this IP in a moderate risk category. Monitoring is recommended, with defensive action considered if activity continues.
The IP shows a single access event with a standard user-agent, but lacks JavaScript support and has a low frequency of access. The RDNS indicates a legitimate ISP, yet the behavior suggests potential probing or automated activity.
The supernet (152.249.0.0/16), which this IP belongs to, exhibits signs of coordinated low-interaction behavior with repetitive one-page visits and a lack of legitimate user agent diversity. The use of identical RDNS entries and non-matching forward DNS raises suspicions of automated scraping or bot activity, though the absence of significant threat detection indicators suggests a lower immediate risk.
Region: São Paulo, Brazil
City: Itu
Local time: 2026-06-23 07:06:23