Identicon of IP address 34.90.199.112

34.90.199.112

IP Risk Score: 100 / 100

This IP is considered potentially malicious and poses a serious security threat. Activity from this IP is consistent with active and malicious behavior. This assessment is backed by strong and consistent detection signals. The IP represents a severe and confirmed security risk. Immediate blocking or mitigation is strongly recommended.

What is this IP address?
IP Address: 34.90.199.112
Country: Netherlands flag Netherlands (NL)
Region Name: Groningen (GR)
City: Groningen
ISP: Google LLC
Organization: Google Cloud (europe-west4)
Threat level: 100 / 100
Conf. level: 100 / 100
Properties
ASN: AS396982
AS Name: Google LLC
Timezone: Europe/Amsterdam
Reverse DNS: 112.199.90.34.bc.googleusercontent.com
Status: Critical Scraper
Hosting

Observed Client Profile
  • OS: Unknown (100%)
  • Device Type: Desktop (100%)
  • Browser Family: Unknown (100%)
  • Rendering Engine: Unknown (100%)
Behavioral Indicators

The IP exhibits strong indicators of automated scraping activity, including the use of a known scraping framework (Scrapy) and multiple hits across different sites. The lack of JavaScript support and the presence of honeypot hits further suggest malicious intent. The traffic originates from a cloud provider, which raises additional concerns about the legitimacy of the activity.

The supernet (34.90.0.0/16), which this IP belongs to, exhibits coordinated behavior indicative of automated scraping activity, primarily using the Scrapy user agent across multiple IPs, with a significant number of honeypot hits suggesting malicious intent. Despite the legitimate infrastructure, the repetitive and low-interaction traffic patterns raise concerns about potential misuse.

๐Ÿฏ
Honeypot Hit
๐Ÿ“ก
Scanner
๐Ÿ™
Scraper
JavaScript Support
โš ๏ธ No
User-Agent Samples
  • Scrapy/2.12.0 (+https://scrapy.org)
  • Scrapy/2.13.3 (+https://scrapy.org)

IP Location

Region: Groningen, Netherlands

City: Groningen

Local time: 2026-06-22 15:07:59