Identicon of IP address 158.172.217.23

158.172.217.23

IP Risk Score: 92 / 100

This IP is considered potentially malicious and poses a serious security threat. Activity from this IP is consistent with active and malicious behavior. This assessment is backed by strong and consistent detection signals. The IP represents a severe and confirmed security risk. Immediate blocking or mitigation is strongly recommended.

What is this IP address?
IP Address: 158.172.217.23
Country: Paraguay flag Paraguay (PY)
Region Name: San Pedro Department (2)
City: Guajayvi
ISP: Ufinet Panama S.A.
Organization: Alfredo Sosa Martinez
Threat level: 92 / 100
Conf. level: 100 / 100
Properties
ASN: AS52468
AS Name: UFINET PANAMA S.A.
Timezone: America/Asuncion
Status: Critical

Observed Client Profile
  • OS: Windows (100%)
  • Device Type: Desktop (100%)
  • Browser Family: Chrome (100%)
  • Rendering Engine: Gecko (100%)
Behavioral Indicators

The IP exhibits strong indicators of automated behavior, including a lack of JavaScript support and a suspicious user-agent. The access pattern suggests potential probing activity, particularly with the botnet detection signal. The absence of RDNS further raises concerns about the legitimacy of the traffic.

The supernet (158.172.0.0/16), which this IP belongs to, exhibits suspicious behavior characterized by repetitive, low-interaction visits across multiple IPs, with a notable lack of legitimate RDNS and forward DNS matches. The presence of identical user agents and the absence of human-like interaction patterns suggest potential automation or scraping activities.

πŸ•ΈοΈ
Botnet Node
JavaScript Support
⚠️ No
User-Agent Samples
  • Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/101.0.4951.67 Safari/537.36

IP Location

Region: San Pedro Department, Paraguay

City: Guajayvi

Local time: 2026-06-23 11:00:07