This IP presents a moderate risk and may be associated with automated activity. Moderate behavioral signals suggest possible automated probing or scanning. This assessment is backed by strong and consistent detection signals. The combined signals place this IP in a moderate risk category. Monitoring is recommended, with defensive action considered if activity continues.
The IP shows signs of potential automated behavior, including a malformed user-agent and lack of JavaScript support. The access pattern is limited, but the 500 error response indicates possible probing or misconfiguration. Further monitoring is recommended.
The supernet (177.190.0.0/16), which this IP belongs to, exhibits behavior indicative of low-interaction, automated access patterns with a mix of legitimate and suspicious user agents. The presence of multiple IPs utilizing similar user agents and accessing the same sites suggests potential scraping or bot activity, particularly given the DNS mismatches and low event counts.
Region: Ceará, Brazil
City: Fortaleza
Local time: 2026-06-23 15:20:22