This IP is considered high risk and shows signs of malicious behavior. Strong indicators point to automated scanning or suspicious access attempts. This assessment is backed by strong and consistent detection signals. The combined indicators suggest a high overall security risk. Defensive measures such as rate limiting or blocking are recommended.
The IP has made a single access attempt to a specific endpoint with a 404 response, indicating possible probing behavior. The absence of JavaScript support and the use of a structured user-agent suggest potential automation. The RDNS indicates a legitimate ISP, but the overall behavior raises concerns.
The supernet (186.250.0.0/16), which this IP belongs to, exhibits behavior indicative of automated scraping with low interaction, repetitive visits, and a variety of user agents that do not match the expected patterns of legitimate traffic. The presence of multiple IPs accessing similar resources with mismatched forward DNS raises concerns about coordinated stealth automation.
Region: Rio de Janeiro, Brazil
City: Duque de Caxias
Local time: 2026-06-22 16:01:05