This IP is considered potentially malicious and poses a serious security threat. Activity from this IP is consistent with active and malicious behavior. This assessment is backed by strong and consistent detection signals. The IP represents a severe and confirmed security risk. Immediate blocking or mitigation is strongly recommended.
The IP address has exhibited highly suspicious behavior, characterized by a high event count and numerous attempts to access sensitive files, all resulting in 404 errors. The traffic originates from an AWS EC2 instance, indicating potential automation or malicious intent. The user-agent appears to be spoofed, and JavaScript support is absent, further raising concerns about the legitimacy of the activity.
The supernet (47.128.0.0/16), which this IP belongs to, exhibits coordinated behavior characterized by repetitive low-interaction visits to a limited number of pages, primarily using identical user agents associated with known web crawlers. Despite the presence of legitimate infrastructure, the high frequency of requests and the use of potentially spoofed user agents suggest possible automation or scraping activities, raising concerns about analytics pollution.
Region: Central Singapore, Singapore
City: Singapore
District: Downtown Core
Local time: 2026-06-22 14:26:41