This IP is considered potentially malicious and poses a serious security threat. Activity from this IP is consistent with active and malicious behavior. This assessment is backed by strong and consistent detection signals. The IP represents a severe and confirmed security risk. Immediate blocking or mitigation is strongly recommended.
The IP address has exhibited suspicious behavior, including multiple 403 status responses while attempting to access sensitive paths. The user-agent is inconsistent and suggests possible automation. Additionally, the lack of reverse DNS and the presence of honeypot hits indicate malicious intent.
The supernet (93.123.0.0/16), which this IP belongs to, exhibits suspicious behavior characterized by a high volume of repetitive requests targeting sensitive files, such as '.git/config' and '.env', across multiple IPs. The presence of various user agents, including known bot signatures and a significant number of honeypot hits, suggests coordinated scraping activity, likely aimed at data extraction or reconnaissance.
Region: Andorra la Vella, Andorra
City: Andorra la Vella
Local time: 2026-06-22 12:52:36