This IP is considered high risk and shows signs of malicious behavior. Strong indicators point to automated scanning or suspicious access attempts. This assessment is backed by strong and consistent detection signals. The combined indicators suggest a high overall security risk. Defensive measures such as rate limiting or blocking are recommended.
The IP exhibits behavior indicative of automated access, including a malformed user-agent and lack of JavaScript support. The absence of RDNS and the use of an outdated browser UA suggest potential evasion tactics. While the access volume is low, the characteristics raise concerns about possible scraping or probing activities.
The supernet (45.239.0.0/16), which this IP belongs to, exhibits suspicious behavior characterized by low-interaction, repetitive visits to the same site, with a mix of user agents that suggest potential automation. Many IPs show DNS mismatches, indicating possible misuse of legitimate infrastructure, leading to concerns about coordinated scraping or bot activity.
Region: Rio de Janeiro, Brazil
City: Petrópolis
Local time: 2026-06-22 09:45:28