Identicon of IP address 31.58.23.164

31.58.23.164

IP Risk Score: 80 / 100

This IP is considered high risk and shows signs of malicious behavior. Strong indicators point to automated scanning or suspicious access attempts. This assessment is backed by strong and consistent detection signals. The combined indicators suggest a high overall security risk. Defensive measures such as rate limiting or blocking are recommended.

What is this IP address?
IP Address: 31.58.23.164
Country: Germany flag Germany (DE)
Region Name: Hesse (HE)
City: Frankfurt am Main
ISP: Leaseweb Deutschland GmbH
Threat level: 80 / 100
Conf. level: 100 / 100
Properties
ASN: AS28753
AS Name: Leaseweb Deutschland GmbH
Timezone: Europe/Berlin
Status: Critical
Hosting
Proxy

Observed Client Profile
  • OS: Windows (100%)
  • Device Type: Desktop (100%)
  • Browser Family: Chrome (100%)
  • Rendering Engine: Gecko (100%)
Behavioral Indicators

The IP address exhibits suspicious behavior, including the use of a known hosting provider and lack of JavaScript support, indicating potential automated activity. The user-agent appears to be spoofed, as it mimics a common browser but is associated with a proxy environment.

The supernet (31.58.0.0/16), which this IP belongs to, exhibits coordinated behavior with multiple IPs accessing the same site using similar user agents, suggesting the presence of automated scraping or bot activity. The high frequency of low-interaction, one-page visits, combined with the use of proxies and mismatched DNS records, raises concerns about potential misuse of legitimate infrastructure.

JavaScript Support
โš ๏ธ No
User-Agent Samples
  • Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/139.0.0.0 Safari/537.36

IP Location

Region: Hesse, Germany

City: Frankfurt am Main

Local time: 2026-06-26 00:23:38