Is 117.72.191.140 malicious?

IP reputation report for 117.72.191.140: blocklist detections, geolocation, ASN, WHOIS and security posture, aggregated from 100+ threat intelligence sources.

117.72.191.140 is listed on 15 threat intelligence sources

Detected by 15 threat intelligence sources in the isMalicious dataset — review before trusting this IP.

Threat verdict

VerdictListed on blocklists

Appears on threat intelligence blocklists — treat with caution.

Blocklist detections15 sources
Categoriesphishing, malware, c2, suspicious
Confidence score100/100

Aggregated confidence across the sources reporting this indicator.

First seen2026-02-13
Last updated2026-08-08

Detections

  • Urlhaus Abuse Ch - Text
  • Romain Marcoux - Malicious Outgoing IPsphishing
  • ThreatFox IOC IPsmalware
  • MontySecurity C2 Trackermalware
  • Malware-Filter - URLhaus Domainsmalware
  • T145 - Black Mirror IPv4 Blocklistmalware
  • Bitwire - Inbound Blocklistmalware
  • Bitwire - Outbound Blocklistmalware
  • bitwire‑it IP blocklist – bad IPs updated every 2hmalware
  • ThreatFox Recent IOCsmalware
  • Abuse.ch ThreatFox - Recentmalware
  • C2IntelFeeds - C2 IPs (30 day)c2
  • Free OSINT Pack - Maltrail Static Trailsmalware
  • HaGeZi TIF - Threat Intelligence Feed IPsmalware
  • SSH Bruteforce IPsbruteforce

Threat categories

Related malicious IPs on nearby networks

Is 117.72.191.140 malicious? IP reputation & threat report | isMalicious