This IP is considered potentially malicious and poses a serious security threat. Activity from this IP is consistent with active and malicious behavior. This assessment is backed by strong and consistent detection signals. The IP represents a severe and confirmed security risk. Immediate blocking or mitigation is strongly recommended.
The IP shows signs of automated behavior with a malformed user-agent and no JavaScript support, indicating potential bot activity. The access pattern is suspicious, particularly with the botnet detection signal. The RDNS does not point to a known cloud provider, but the overall context suggests malicious intent.
The supernet (152.250.0.0/16), which this IP belongs to, exhibits behavior indicative of coordinated automation, with multiple IPs showing repetitive, low-interaction visits and a lack of forward DNS resolution. The use of identical user agents across these IPs, combined with the absence of legitimate traffic patterns, suggests potential scraping or bot activity.
Region: São Paulo, Brazil
City: Santo André
Local time: 2026-06-23 07:06:41