This IP presents a moderate risk and may be associated with automated activity. Moderate behavioral signals suggest possible automated probing or scanning. This assessment is backed by strong and consistent detection signals. The combined signals place this IP in a moderate risk category. Monitoring is recommended, with defensive action considered if activity continues.
The IP shows a single access event with a malformed user-agent indicative of potential automation. The lack of JavaScript support and the unusual user-agent suggest possible evasion tactics. However, the access is limited to one site and originates from a known ISP, which reduces the immediate threat level.
The supernet (167.58.0.0/16), which this IP belongs to, exhibits suspicious behavior characterized by a significant number of low-interaction visits, particularly from one IP that shows signs of credential stuffing attempts on admin pages. The presence of repeated user agents and a lack of legitimate interaction patterns across multiple IPs suggests potential automation and scraping activities.
Region: Montevideo Department, Uruguay
City: Montevideo
Local time: 2026-06-22 09:45:28