Identicon of IP address 18.117.92.232

18.117.92.232

IP Risk Score: 66 / 100

This IP presents a moderate risk and may be associated with automated activity. Moderate behavioral signals suggest possible automated probing or scanning. This assessment is backed by strong and consistent detection signals. The combined signals place this IP in a moderate risk category. Monitoring is recommended, with defensive action considered if activity continues.

What is this IP address?
IP Address: 18.117.92.232
Country: United States flag United States (US)
Region Name: Ohio (OH)
City: Dublin
ISP: Amazon.com, Inc.
Organization: AWS EC2 (us-east-2)
Threat level: 66 / 100
Conf. level: 100 / 100
Properties
ASN: AS16509
AS Name: Amazon.com, Inc.
Timezone: America/New_York
Reverse DNS: ec2-18-117-92-232.us-east-2.compute.amazonaws.com
Status: Suspicious
Hosting

Observed Client Profile
  • OS: Linux (100%)
  • Device Type: Desktop (100%)
  • Browser Family: Unknown (100%)
  • Rendering Engine: Unknown (100%)
Behavioral Indicators

The IP address exhibits behavior consistent with scanning activity, including access to sensitive files. It originates from an AWS EC2 instance, which raises concerns about potential automation. The user-agent appears generic and does not provide clear evidence of human interaction.

The supernet (18.117.0.0/16), which this IP belongs to, exhibits a mix of benign and suspicious behaviors, with a significant number of IPs showing signs of automated scraping and scanning activities. While some IPs appear to be legitimate bots, the presence of repeated low-value requests and honeypot hits suggests potential misuse of the infrastructure.

๐Ÿ“ก
Scanner
User-Agent Samples
  • Mozilla/5.0 (X11; Linux x86_64)

IP Location

Region: Ohio, United States

City: Dublin

Local time: 2026-06-22 09:30:30