This IP is considered high risk and shows signs of malicious behavior. Strong indicators point to automated scanning or suspicious access attempts. This assessment is backed by strong and consistent detection signals. The combined indicators suggest a high overall security risk. Defensive measures such as rate limiting or blocking are recommended.
The IP shows signs of automated behavior with a botnet detection flag and lacks JavaScript support. The user-agent appears to be a mobile device but may be spoofed. The access pattern raises concerns about potential reconnaissance or scraping activity.
The supernet (152.250.0.0/16), which this IP belongs to, exhibits behavior indicative of coordinated automation, with multiple IPs showing repetitive, low-interaction visits and a lack of forward DNS resolution. The use of identical user agents across these IPs, combined with the absence of legitimate traffic patterns, suggests potential scraping or bot activity.
Region: São Paulo, Brazil
City: São Paulo
Local time: 2026-06-23 07:06:12