This IP presents a moderate risk and may be associated with automated activity. Activity from this IP is consistent with active and malicious behavior. This assessment is supported by a reasonably reliable set of detection signals. The combined signals place this IP in a moderate risk category. Monitoring is recommended, with defensive action considered if activity continues.
The supernet (109.70.0.0/16), which this IP belongs to, exhibits coordinated behavior indicative of automated scraping or bot activity, characterized by repetitive low-interaction visits and the use of identical user agents across multiple IPs. The presence of Tor exit nodes and mismatched forward DNS suggests a high likelihood of stealthy automation, potentially for malicious purposes.
Region: South Holland, The Netherlands
City: Rijswijk
Local time: 2026-06-24 19:31:54