Identicon of IP address 13.221.183.29

13.221.183.29

IP Risk Score: 100 / 100

This IP is considered potentially malicious and poses a serious security threat. Activity from this IP is consistent with active and malicious behavior. This assessment is backed by strong and consistent detection signals. The IP represents a severe and confirmed security risk. Immediate blocking or mitigation is strongly recommended.

What is this IP address?
IP Address: 13.221.183.29
Country: United States flag United States (US)
Region Name: Virginia (VA)
City: Ashburn
ISP: Amazon.com, Inc.
Organization: AWS EC2 (us-east-1)
Threat level: 100 / 100
Conf. level: 100 / 100
Properties
ASN: AS14618
AS Name: Amazon.com, Inc.
Timezone: America/New_York
Reverse DNS: ec2-13-221-183-29.compute-1.amazonaws.com
Status: Critical Python HTTP Client
Hosting

Observed Client Profile
  • OS: Unknown (50%)
  • Device Type: Desktop (100%)
  • Browser Family: Unknown (50%)
  • Rendering Engine: Unknown (100%)
Variability
Behavioral Indicators

The IP address exhibits highly suspicious behavior with a significant number of honeypot hits and repeated access attempts to various sensitive paths, indicating potential malicious intent. The use of a known automation user-agent further supports this assessment.

The supernet (13.221.0.0/16), which this IP belongs to, exhibits behavior indicative of automated scraping and potential misuse of legitimate infrastructure, with multiple IPs showing repetitive low-value interactions and a mix of legitimate and suspicious user agents. The presence of honeypot hits and high-frequency 404 responses suggests coordinated activity that may be aimed at analytics pollution.

๐Ÿฏ
Honeypot Hit
๐Ÿ“ก
Scanner
JavaScript Support
โš ๏ธ No
User-Agent Samples
  • python-httpx/0.28.1
  • Mozilla/5.0 (Windows NT 10.0; Win64; x64) Chrome/91.0.4472.124

IP Location

Region: Virginia, United States

City: Ashburn

Local time: 2026-06-22 03:36:23