This IP is considered potentially malicious and poses a serious security threat. Activity from this IP is consistent with active and malicious behavior. This assessment is backed by strong and consistent detection signals. The IP represents a severe and confirmed security risk. Immediate blocking or mitigation is strongly recommended.
The IP exhibits strong indicators of automated scraping activity, including the use of a known scraping framework (Scrapy) and multiple hits across different sites. The lack of JavaScript support and the presence of honeypot hits further suggest malicious intent. The traffic originates from a cloud provider, which raises additional concerns about the legitimacy of the activity.
The supernet (34.90.0.0/16), which this IP belongs to, exhibits coordinated behavior indicative of automated scraping activity, primarily using the Scrapy user agent across multiple IPs, with a significant number of honeypot hits suggesting malicious intent. Despite the legitimate infrastructure, the repetitive and low-interaction traffic patterns raise concerns about potential misuse.
Region: Groningen, Netherlands
City: Groningen
Local time: 2026-06-22 15:07:59