This IP is considered potentially malicious and poses a serious security threat. Activity from this IP is consistent with active and malicious behavior. This assessment is backed by strong and consistent detection signals. The IP represents a severe and confirmed security risk. Immediate blocking or mitigation is strongly recommended.
The IP has exhibited suspicious behavior with multiple access attempts to the login page, including a POST request with login credentials. The presence of honeypot hits indicates potential malicious intent. Despite a valid user-agent, the activity pattern raises significant concerns.
The supernet (36.232.0.0/16), which this IP belongs to, exhibits suspicious behavior characterized by multiple IPs engaging in repetitive, low-interaction HTTP requests, particularly targeting login pages with potential credential stuffing attempts. The presence of identical user agents and honeypot hits indicates coordinated automation, suggesting the possibility of a botnet or scraping operation.
Region: Changhua, Taiwan
City: Chang-hua
Local time: 2026-06-22 20:45:16