There was an analysis where the IP played a role: https://malwr.com/analysis/YzhkYzQ5Y2JlZDY0NDY4N2E1OGIwMmRjZTg5YTY2MDM/
This IP has an Akamai’s HTTP Acceleration/Mirror service with ssl connection
Invalid URL

The requested URL “/”, is invalid.
Reference #9.1404434d.1389879449.4db8b9d
because: |_http-methods: No Allow or Public header in OPTIONS response (status code 400)
|_http-title: Invalid URL
JSON {“ip”: “77.67.4.24”, “prefix”: “77.67.0.0/17”, “country_code”: “FR”, “asn”: “AS3257”, “city”: “”, “country”: “France”, “region”: “”, “hostname”: “77.67.4.24”, “longitude”: 2.35, “latitude”: 48.86, “organization”: “TINET-BACKBONE Tinet SpA”}

This is the info on the AS for that IP: AS Name: TINET-BACKBONE Tinet SpA
IPs allocated: 568608
Blacklisted URLs: 2

Hosts…
…malicious URLs? Yes
…Current Events? Yes
…spam activity? Yes

pol