Identicon of IP address 131.72.156.1

131.72.156.1

IP Risk Score: 84 / 100

This IP is considered potentially malicious and poses a serious security threat. Activity from this IP is consistent with active and malicious behavior. This assessment is backed by strong and consistent detection signals. The IP represents a severe and confirmed security risk. Immediate blocking or mitigation is strongly recommended.

What is this IP address?
IP Address: 131.72.156.1
Country: Argentina flag Argentina (AR)
Region Name: Buenos Aires (B)
City: Tapalqué
ISP: CYBERTAP
Threat level: 84 / 100
Conf. level: 100 / 100
Properties
ASN: AS28318
AS Name: CYBERTAP
Timezone: America/Argentina/Buenos_Aires
Status: Critical

Observed Client Profile
  • OS: macOS (100%)
  • Device Type: Desktop (100%)
  • Browser Family: Chrome (100%)
  • Rendering Engine: Gecko (100%)
Behavioral Indicators

The IP exhibits suspicious behavior with a botnet detection signal, lacks JavaScript support, and has no reverse DNS. The user-agent appears to be spoofed, indicating potential malicious intent.

The supernet (131.72.0.0/16), which this IP belongs to, exhibits suspicious behavior characterized by repetitive, low-interaction visits across multiple IPs, with a significant overlap in user agents suggesting potential automation. The presence of DNS mismatches and a lack of legitimate bot characteristics raises concerns about coordinated scraping or analytics pollution.

🕸️
Botnet Node
JavaScript Support
⚠️ No
User-Agent Samples
  • Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36

IP Location

Region: Buenos Aires, Argentina

City: Tapalqué

Local time: 2026-07-03 17:39:37