Identicon of IP address 170.239.11.229

170.239.11.229

IP Risk Score: 68 / 100

This IP is considered high risk and shows signs of malicious behavior. Strong indicators point to automated scanning or suspicious access attempts. This assessment is backed by strong and consistent detection signals. The combined indicators suggest a high overall security risk. Defensive measures such as rate limiting or blocking are recommended.

What is this IP address?
IP Address: 170.239.11.229
Country: Brazil flag Brazil (BR)
Region Name: São Paulo (SP)
City: Olímpia
ISP: Turbonet Telecom Ltda
Organization: Turbonet Telecom Ltda
Threat level: 68 / 100
Conf. level: 100 / 100
Properties
ASN: AS61942
AS Name: TURBONET TELECOM LTDA
Timezone: America/Sao_Paulo
Reverse DNS: 170-239-11-229.turbonettelecom.com.br
Status: Critical

Observed Client Profile
  • OS: Windows (100%)
  • Device Type: Desktop (100%)
  • Browser Family: Chrome (100%)
  • Rendering Engine: Gecko (100%)
Behavioral Indicators

The IP shows signs of potential automated activity, including a botnet detection signal and lack of JavaScript support. The user-agent appears to be a standard browser but may be spoofed. The access pattern is limited, but the botnet detection raises concerns.

The supernet (170.239.0.0/16), which this IP belongs to, exhibits low-interaction, repetitive behavior with multiple IPs accessing similar sites using distinct user agents, suggesting potential automated scraping or bot activity. The lack of matching forward DNS records for most IPs raises concerns about legitimacy, while the presence of a single IP with matching forward DNS adds some ambiguity.

🕸️
Botnet Node
JavaScript Support
⚠️ No
User-Agent Samples
  • Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/135.0.0.0 Safari/537.36

IP Location

Region: São Paulo, Brazil

City: Olímpia

Local time: 2026-06-22 13:07:25