Identicon of IP address 200.53.71.228

200.53.71.228

IP Risk Score: 82 / 100

This IP is considered potentially malicious and poses a serious security threat. Activity from this IP is consistent with active and malicious behavior. This assessment is backed by strong and consistent detection signals. The IP represents a severe and confirmed security risk. Immediate blocking or mitigation is strongly recommended.

What is this IP address?
IP Address: 200.53.71.228
Country: Brazil flag Brazil (BR)
Region Name: São Paulo (SP)
City: São Paulo
ISP: A.M.S DO NASCIMENTO CONECT.COM
Organization: A.M.S DO NASCIMENTO CONECT.COM
Threat level: 82 / 100
Conf. level: 100 / 100
Properties
ASN: AS271304
AS Name: A.M.S DO NASCIMENTO CONECT.COM
Timezone: America/Sao_Paulo
Status: Critical

Observed Client Profile
  • OS: Android (100%)
  • Device Type: Mobile (100%)
  • Browser Family: Chrome (100%)
  • Rendering Engine: Gecko (100%)
Behavioral Indicators

The IP shows signs of automated behavior with a botnet detection flag and lacks JavaScript support. The user-agent appears to be a mobile device, which can be easily spoofed, raising concerns about the authenticity of the traffic. The absence of RDNS further complicates the assessment.

The supernet (200.53.0.0/16), which this IP belongs to, exhibits behavior indicative of coordinated automation, with multiple IPs showing repetitive, low-interaction visits and a variety of user agents, some of which appear to be spoofed. While the RDNS and forward DNS match for most IPs, the presence of distinct user agents and low interaction raises concerns about potential scraping or bot-like activity.

🕸️
Botnet Node
JavaScript Support
⚠️ No
User-Agent Samples
  • Mozilla/5.0 (Linux; Android 5.0; SM-G900P Build/LRX21T) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/57.0.1942.1936 Mobile Safari/537.36

IP Location

Region: São Paulo, Brazil

City: São Paulo

Local time: 2026-07-05 05:27:18