This IP is considered potentially malicious and poses a serious security threat. Activity from this IP is consistent with active and malicious behavior. This assessment is backed by strong and consistent detection signals. The IP represents a severe and confirmed security risk. Immediate blocking or mitigation is strongly recommended.
The IP address exhibits suspicious behavior, including missing JavaScript support and originating from a known hosting provider. The user-agent appears to be a standard browser but is likely spoofed given the context. The lack of RDNS and the proxy nature of the IP further indicate potential automated activity.
The supernet (172.98.0.0/16), which this IP belongs to, exhibits suspicious behavior characterized by a high number of proxy IPs, repetitive low-interaction visits, and a significant presence of honeypot hits, indicating potential automated scraping or scanning activities. The use of identical user agents across multiple IPs further suggests coordinated automation, raising concerns about the legitimacy of the traffic.
Region: Hesse, Germany
City: Frankfurt am Main
Local time: 2026-06-26 00:23:42