Identicon of IP address 52.221.243.209

52.221.243.209

IP Risk Score: 100 / 100

This IP is considered potentially malicious and poses a serious security threat. Activity from this IP is consistent with active and malicious behavior. This assessment is backed by strong and consistent detection signals. The IP represents a severe and confirmed security risk. Immediate blocking or mitigation is strongly recommended.

What is this IP address?
IP Address: 52.221.243.209
Country: Singapore flag Singapore (SG)
Region Name: Central Singapore (01)
City: Singapore
ISP: Amazon.com, Inc.
Organization: AWS EC2 (ap-southeast-1)
Threat level: 100 / 100
Conf. level: 100 / 100
Properties
ASN: AS16509
AS Name: Amazon.com, Inc.
Timezone: Asia/Singapore
Reverse DNS: ec2-52-221-243-209.ap-southeast-1.compute.amazonaws.com
Status: Critical Python HTTP Client
Hosting

Observed Client Profile
  • OS: Unknown (50%)
  • Device Type: Desktop (100%)
  • Browser Family: Unknown (50%)
  • Rendering Engine: Unknown (100%)
Variability
Behavioral Indicators

The IP address has exhibited highly suspicious behavior, characterized by a significant number of honeypot hits and repeated access attempts to sensitive paths, primarily using an automation tool. The presence of a cloud hosting infrastructure further raises concerns about potential malicious intent.

๐Ÿฏ
Honeypot Hit
๐Ÿ“ก
Scanner
JavaScript Support
โš ๏ธ No
User-Agent Samples
  • python-httpx/0.22.0
  • Mozilla/5.0 (Windows NT 10.0; Win64; x64) Chrome/91.0.4472.124

IP Location

Region: Central Singapore, Singapore

City: Singapore

District: Downtown Core

Local time: 2026-06-22 14:29:57