Identicon of IP address 200.202.100.238

200.202.100.238

IP Risk Score: 64 / 100

This IP presents a moderate risk and may be associated with automated activity. Moderate behavioral signals suggest possible automated probing or scanning. This assessment is backed by strong and consistent detection signals. The combined signals place this IP in a moderate risk category. Monitoring is recommended, with defensive action considered if activity continues.

What is this IP address?
IP Address: 200.202.100.238
Country: Brazil flag Brazil (BR)
Region Name: Rio de Janeiro (RJ)
City: Niterói
ISP: LESTE FLU SERVIÇOS DE TELECOM LTDA
Organization: LESTE FLU SERVIÇOS DE TELECOM LTDA
Threat level: 64 / 100
Conf. level: 100 / 100
Properties
ASN: AS7063
AS Name: LESTE FLU SERVIÇOS DE TELECOM LTDA
Timezone: America/Sao_Paulo
Reverse DNS: 200-202-100-238.dynamic.lestetelecom.com.br.100.202.200.in-addr.arpa
Status: Suspicious

Observed Client Profile
  • OS: iOS (100%)
  • Device Type: Mobile (100%)
  • Browser Family: Chrome (100%)
  • Rendering Engine: Gecko (100%)
Behavioral Indicators

The IP shows signs of potential automated activity, including a botnet detection signal and lack of JavaScript support. The user-agent appears to be spoofed, mimicking a mobile device, which raises concerns about its authenticity. The access pattern is limited, but the botnet detection indicates possible malicious intent.

The supernet (200.202.0.0/16), which this IP belongs to, exhibits signs of coordinated low-interaction behavior with repetitive one-page visits, suggesting potential automated scraping activity. The use of identical user agents across multiple IPs, combined with DNS mismatches, raises suspicions about the legitimacy of the traffic.

🕸️
Botnet Node
JavaScript Support
⚠️ No
User-Agent Samples
  • Mozilla/5.0 (iPhone; CPU iPhone OS 11_0 like Mac OS X) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/39.0.8779.1575 Mobile Safari/537.36

IP Location

Region: Rio de Janeiro, Brazil

City: Niterói

Local time: 2026-06-25 18:34:39