This IP is considered high risk and shows signs of malicious behavior. Strong indicators point to automated scanning or suspicious access attempts. This assessment is backed by strong and consistent detection signals. The combined indicators suggest a high overall security risk. Defensive measures such as rate limiting or blocking are recommended.
The IP shows signs of potential automated activity, including a mobile user-agent that lacks JavaScript support and a request to an unusual path. The botnet detection signal raises concerns about possible malicious intent.
The supernet (170.246.0.0/16), which this IP belongs to, exhibits behavior indicative of low-interaction, automated access patterns with repetitive one-page visits across multiple IPs. The use of diverse user agents, coupled with DNS mismatches and a lack of legitimate bot characteristics, raises concerns about potential scraping or automated traffic generation.
Region: São Paulo, Brazil
City: Registro
Local time: 2026-06-22 20:44:58