Identicon of IP address 34.90.229.228

34.90.229.228

IP Risk Score: 100 / 100

This IP is considered potentially malicious and poses a serious security threat. Activity from this IP is consistent with active and malicious behavior. This assessment is backed by strong and consistent detection signals. The IP represents a severe and confirmed security risk. Immediate blocking or mitigation is strongly recommended.

What is this IP address?
IP Address: 34.90.229.228
Country: Netherlands flag Netherlands (NL)
Region Name: Groningen (GR)
City: Groningen
ISP: Google LLC
Organization: Google Cloud (europe-west4)
Threat level: 100 / 100
Conf. level: 100 / 100
Properties
ASN: AS396982
AS Name: Google LLC
Timezone: Europe/Amsterdam
Reverse DNS: 228.229.90.34.bc.googleusercontent.com
Status: Critical
Hosting

Observed Client Profile
  • OS: Windows (100%)
  • Device Type: Desktop (100%)
  • Browser Family: Chrome (100%)
  • Rendering Engine: Gecko (100%)
Behavioral Indicators

The IP address exhibits highly suspicious behavior with multiple hits to non-existent resources, indicating potential automated probing or scraping activity. The traffic is concentrated within a very short time frame, and the user-agent appears to be spoofed. Additionally, the source is a known cloud provider, further raising concerns about the intent behind the access.

The supernet (34.90.0.0/16), which this IP belongs to, exhibits coordinated behavior indicative of automated scraping activity, primarily using the Scrapy user agent across multiple IPs, with a significant number of honeypot hits suggesting malicious intent. Despite the legitimate infrastructure, the repetitive and low-interaction traffic patterns raise concerns about potential misuse.

๐Ÿฏ
Honeypot Hit
๐Ÿ“ก
Scanner
JavaScript Support
โš ๏ธ No
User-Agent Samples
  • Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/88.0.4240.193 Safari/537.36

IP Location

Region: Groningen, Netherlands

City: Groningen

Local time: 2026-06-22 08:30:41