This IP presents a moderate risk and may be associated with automated activity. Moderate behavioral signals suggest possible automated probing or scanning. This assessment is backed by strong and consistent detection signals. The combined signals place this IP in a moderate risk category. Monitoring is recommended, with defensive action considered if activity continues.
The IP shows a single access event with a 404 response to a JSON endpoint, indicating possible probing behavior. The lack of JavaScript support and absence of RDNS raise concerns about the legitimacy of the request. The user-agent appears structured but could be spoofed.
The supernet (93.123.0.0/16), which this IP belongs to, exhibits suspicious behavior characterized by a high volume of repetitive requests targeting sensitive files, such as '.git/config' and '.env', across multiple IPs. The presence of various user agents, including known bot signatures and a significant number of honeypot hits, suggests coordinated scraping activity, likely aimed at data extraction or reconnaissance.
Region: Andorra la Vella, Andorra
City: Andorra la Vella
Local time: 2026-06-22 15:14:49