9290 sounds like soch a “raw printing” port (i can only do guessing in this case). What i would do is exactly this:
but only exclude the port 9290.
An alternative would be to try to grab some of the banners like described in Scan causing unexpected printing on Toshiba Copier/Modify Scans - #7 by cfi - Vulnerability Tests - Greenbone Community Forum and post them here. I could create an internal to add a detection for this kind of printers but can’t promise anything on the time it will get implemented.