This IP is considered high risk and shows signs of malicious behavior. Strong indicators point to automated scanning or suspicious access attempts. This assessment is backed by strong and consistent detection signals. The combined indicators suggest a high overall security risk. Defensive measures such as rate limiting or blocking are recommended.
The IP shows signs of potential automated activity, including a botnet detection signal and lack of JavaScript support. The user-agent appears to be a mobile device, which can be easily spoofed. The behavior raises concerns about possible reconnaissance or scraping attempts.
The supernet (201.20.0.0/16), which this IP belongs to, exhibits signs of low-interaction, automated behavior with multiple IPs showing repetitive access patterns and a lack of legitimate user engagement. The presence of identical user agents and mismatched forward DNS records raises concerns about potential scraping or bot activity, although the RDNS entries suggest some level of legitimacy.
Region: Ceará, Brazil
City: Fortaleza
Local time: 2026-06-23 15:20:25