Identicon of IP address 213.232.122.130

213.232.122.130

IP Risk Score: 87 / 100

This IP is considered potentially malicious and poses a serious security threat. Activity from this IP is consistent with active and malicious behavior. This assessment is backed by strong and consistent detection signals. The IP represents a severe and confirmed security risk. Immediate blocking or mitigation is strongly recommended.

What is this IP address?
IP Address: 213.232.122.130
Country: Finland flag Finland (FI)
Region Name: Uusimaa (18)
City: Helsinki
ISP: Finegroupservers
Organization: Fine Group Servers Solutions LLC
Threat level: 87 / 100
Conf. level: 100 / 100
Properties
ASN: AS59651
AS Name: AS QualityNetwork
Timezone: Europe/Helsinki
Status: Critical
Proxy

Observed Client Profile
  • OS: Linux (100%)
  • Device Type: Desktop (100%)
  • Browser Family: Chrome (100%)
  • Rendering Engine: Gecko (100%)
Behavioral Indicators

The IP shows suspicious behavior with multiple access attempts to admin paths, including a successful login and subsequent 404 errors. The presence of honeypot hits and lack of JavaScript support further indicate potential malicious intent. The traffic is routed through a proxy, raising additional concerns about evasion tactics.

The supernet (213.232.0.0/16), which this IP belongs to, exhibits highly coordinated behavior indicative of automated scraping attempts, primarily targeting a specific site with repeated login attempts and low interaction page visits. The use of identical user agents across multiple IPs, combined with a high number of honeypot hits, suggests a malicious intent to exploit vulnerabilities, despite some legitimate infrastructure indicators.

๐Ÿฏ
Honeypot Hit
JavaScript Support
โš ๏ธ No
User-Agent Samples
  • Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/119.0.0.0 Safari/537.36

IP Location

Region: Uusimaa, Finland

City: Helsinki

Local time: 2026-07-05 14:09:26