IP Report

91.92.42.112

"Euro Crypt" EOOD · AS25211 · Amsterdam, Netherlands

90/100
High risk
0–1920–4950–7980–100

Score 90 of 100, in the high risk band. Bands run 0 to 19 minimal, 20 to 49 low, 50 to 79 medium, 80 to 100 high.

Its risk score of 90/100 is high: multiple strong signals stack up here, and most sites that screen traffic would challenge or block requests from this address.

Detection signals

Infrastructure facts— context, not accusations
Datacenter
Listed in a published datacenter range feed
Hosting network
ASN classification

Not detected: Tor, VPN, Proxy, Crawler

Summary

91.92.42.112 is a server address in commercial hosting space, not a home or mobile connection. Traffic from it is almost always software rather than a person browsing.

The address is announced by "Euro Crypt" EOOD (AS25211) and geolocates to Amsterdam, North Holland, Netherlands.

Why this address scores 90

It sits in datacenter address space, where automated traffic vastly outnumbers human visitors.

Together these produce the score of 90/100 shown above.

Observation history

This address has been looked up through Predax once, on September 3, 2026.

Network & location

ASN
AS25211
Country
Netherlands (NL)
Provider
"Euro Crypt" EOOD
Region
North Holland
CIDR
91.92.42.0/22
City
Amsterdam
Network type
hosting
First seen
9/3/2026, 2:17:15 PM
Last seen
9/3/2026, 2:17:15 PM
Times seen
1

What to do with this

If you run a site and this address showed up

Traffic from server space is rarely a person on a browser. If this address hit your site, it was most likely a bot, a monitor, or a scripted client.

Unblocking it is only worth doing if you can tie it to a service you actually use — an uptime monitor, a payment webhook, an integration. Otherwise a block costs you nothing.

You do not have to watch for addresses like this one yourself — the Predax Security plugin for WordPress checks every visitor against this same scoring in real time, and the WooCommerce fraud plugin does it for orders.

If you found this address in your logs

In your logs this address is almost certainly automation. Check the user agent and the request pattern before attributing its traffic to a human.

If you operate this address yourself and it is being blocked elsewhere, this datacenter classification is why — hosting IPs start from a lower trust position everywhere.

Loading map...

Detection sources

  • maliciousVerified · 100%

    hijacked_netblock.

Check Another IP