Identicon of IP address 138.117.19.117

138.117.19.117

IP Risk Score: 88 / 100

This IP is considered potentially malicious and poses a serious security threat. Activity from this IP is consistent with active and malicious behavior. This assessment is backed by strong and consistent detection signals. The IP represents a severe and confirmed security risk. Immediate blocking or mitigation is strongly recommended.

What is this IP address?
IP Address: 138.117.19.117
Country: Argentina flag Argentina (AR)
Region Name: Mendoza (M)
City: Luján de Cuyo
ISP: Tecnet Argentina S.A.
Organization: Tecnet Argentina S.A
Threat level: 88 / 100
Conf. level: 100 / 100
Properties
ASN: AS263793
AS Name: TECNET ARGENTINA S.A.
Timezone: America/Argentina/Mendoza
Reverse DNS: 138-117-19-117.wiber.net.ar
Status: Critical

Observed Client Profile
  • OS: macOS (100%)
  • Device Type: Desktop (100%)
  • Browser Family: Firefox (100%)
  • Rendering Engine: Gecko (100%)
Behavioral Indicators

The IP shows signs of automated behavior with a malformed user-agent and no JavaScript support, indicating potential scraping activity. The access pattern is suspicious, particularly with the botnet detection signal. The infrastructure does not suggest a legitimate user.

The supernet (138.117.0.0/16), which this IP belongs to, exhibits signs of low-interaction, repetitive behavior across multiple IPs, with a mix of legitimate and suspicious user agents. While some IPs show legitimate forward DNS matches, the overall pattern suggests possible automation or scraping activities targeting specific sites.

🕸️
Botnet Node
JavaScript Support
⚠️ No
User-Agent Samples
  • Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:121.0) Gecko/20100101 Firefox/121.0

IP Location

Region: Mendoza, Argentina

City: Luján de Cuyo

Local time: 2026-06-23 09:28:08