This IP is considered potentially malicious and poses a serious security threat. Activity from this IP is consistent with active and malicious behavior. This assessment is backed by strong and consistent detection signals. The IP represents a severe and confirmed security risk. Immediate blocking or mitigation is strongly recommended.
The IP address has triggered a honeypot hit and is associated with a known automation tool (zgrab). The access pattern indicates a probing attempt for sensitive files, specifically targeting a .env file, which is a common tactic for information gathering. The lack of JavaScript support further suggests automated behavior. Overall, this activity is highly suspicious and indicative of malicious intent.
The supernet (77.90.0.0/16), which this IP belongs to, exhibits coordinated behavior indicative of automated scraping attempts, with multiple IPs utilizing similar user agents and targeting specific resources across a limited number of sites. The presence of honeypot hits and repeated access to sensitive files suggests malicious intent, despite some legitimate-looking infrastructure.
Region: Bavaria, Germany
City: Augsburg
Local time: 2026-06-26 00:07:53