This IP is considered high risk and shows signs of malicious behavior. Strong indicators point to automated scanning or suspicious access attempts. This assessment is backed by strong and consistent detection signals. The combined indicators suggest a high overall security risk. Defensive measures such as rate limiting or blocking are recommended.
The IP shows signs of automated behavior with a known bot user-agent, but lacks proper reverse DNS and is associated with a proxy. The single event and absence of JavaScript support raise concerns about potential evasion tactics.
The supernet (185.191.0.0/16), which this IP belongs to, exhibits coordinated behavior typical of a legitimate web crawler, specifically the SemrushBot, with repetitive low-interaction visits across multiple IPs. The consistent use of the same user agent, matching RDNS, and forward DNS indicates a high level of automation, but the lack of malicious indicators suggests benign activity focused on data collection.
Region: Prague, Czechia
City: Prague
Local time: 2026-06-25 10:29:41