Hi there!
Can you tell us any more information about this strange activity?
Copy and paste some data or IPs so we can see?
I spend my life logging AntiP2P botnets. Due to the stupidity of these botnet coding many are glaringly obvious and generate more traffic than your average interstate
You didn't say too much, so a little hard to know.
Is the below IP range contacting you or Tixati contacting them?
I suspect your issue is caused by "M4ver1ck_eye" (and others) which is giant torrent P2P snoop-bot (run by the disgusting 0.1% who ru(i)n our society)
Anyway, copy this into a text file and save it:
############################################
# f_a_s_t_hosts and nfo_rce
FAASTHSTS:70.35.192.0-70.35.207.255
FAASTHSTS:77.68.32.0-77.68.63.255
FAASTHSTS:79.99.40.0-79.99.47.255
FAASTHSTS:88.208.192.0-88.208.251.255
FAASTHSTS:109.228.0.0-109.228.63.255
FAASTHSTS:213.171.192.0-213.171.223.255
FAASTHSTS:217.174.240.0-217.174.255.255
N_F_O_RCE:185.107.94.0-185.107.95.255
Import into Tixati IP filter
Next
Create some text files on your computer somewhere (use windows notepad) maybe like this
AWS.txt
GoogleCloud.txt
Azure.txt
3) Read this thread, copy out the IP lists per provider into the above files. So you block these providers
https://forum.tixati.com/support/6997
Load all the 4 block files to Tixati IPFILTER and see if this helps
Come back on after some testing and let us know?