This IP is considered potentially malicious and poses a serious security threat. Activity from this IP is consistent with active and malicious behavior. This assessment is backed by strong and consistent detection signals. The IP represents a severe and confirmed security risk. Immediate blocking or mitigation is strongly recommended.
The IP address exhibits highly suspicious behavior with multiple hits to non-existent resources, indicating potential automated probing or scraping activity. The traffic is concentrated within a very short time frame, and the user-agent appears to be spoofed. Additionally, the source is a known cloud provider, further raising concerns about the intent behind the access.
The supernet (34.90.0.0/16), which this IP belongs to, exhibits coordinated behavior indicative of automated scraping activity, primarily using the Scrapy user agent across multiple IPs, with a significant number of honeypot hits suggesting malicious intent. Despite the legitimate infrastructure, the repetitive and low-interaction traffic patterns raise concerns about potential misuse.
Region: Groningen, Netherlands
City: Groningen
Local time: 2026-06-22 08:30:41