IP Reputation Tracker

Real-time IP threat intelligence. Automated detection, aggregation and reporting of malicious IP activity across monitored infrastructure.

20,215Tracked IPs
116,454Threat Reports

Worst Offenders — Last 3 Days

# IP Threat Level Reports Type Country Org Last Seen
2261 205.210.31.60 71 9 🇺🇸 United States Palo Alto Networks, Inc 14 Jun 2026 - 02:32
2262 198.235.24.245 71 5 🇺🇸 United States Palo Alto Networks, Inc 14 Jun 2026 - 02:27
2263 198.235.24.216 71 5 🇺🇸 United States Palo Alto Networks, Inc 14 Jun 2026 - 02:26
2264 198.235.24.162 71 3 🇺🇸 United States Palo Alto Networks, Inc 14 Jun 2026 - 02:25
2265 205.210.31.231 71 6 🇺🇸 United States Palo Alto Networks, Inc 14 Jun 2026 - 02:23
2266 205.210.31.201 71 4 🇺🇸 United States Palo Alto Networks, Inc 14 Jun 2026 - 02:15
2267 157.15.40.6 71 1 🇮🇩 Indonesia PT Trisari Data Indonesia 14 Jun 2026 - 01:53
2268 13.140.175.96 71 1 🇩🇪 Germany TerraTransit AG 14 Jun 2026 - 01:53
2269 205.210.31.252 71 3 🇺🇸 United States Palo Alto Networks, Inc 14 Jun 2026 - 01:39
2270 198.235.24.75 71 9 🇺🇸 United States Palo Alto Networks, Inc 14 Jun 2026 - 01:32
2271 205.210.31.103 71 7 🇺🇸 United States Palo Alto Networks, Inc 14 Jun 2026 - 01:28
2272 198.235.24.25 71 3 🇺🇸 United States Palo Alto Networks, Inc 14 Jun 2026 - 01:24
2273 74.249.201.6 71 1 🇺🇸 United States Microsoft Azure Cloud (centralus) 14 Jun 2026 - 01:22
2274 147.185.133.150 71 4 🇺🇸 United States Palo Alto Networks, Inc 14 Jun 2026 - 01:19
2275 205.210.31.236 71 7 🇺🇸 United States Palo Alto Networks, Inc 14 Jun 2026 - 01:18
2276 198.235.24.194 71 5 🇺🇸 United States Palo Alto Networks, Inc 14 Jun 2026 - 01:16
2277 205.210.31.154 71 2 🇺🇸 United States Palo Alto Networks, Inc 14 Jun 2026 - 01:05
2278 191.234.188.123 71 1 🇧🇷 Brazil Microsoft Azure Cloud (brazilsouth) 14 Jun 2026 - 00:54
2279 205.210.31.96 71 6 🇺🇸 United States Palo Alto Networks, Inc 14 Jun 2026 - 00:49
2280 198.235.24.195 71 7 🇺🇸 United States Palo Alto Networks, Inc 14 Jun 2026 - 00:43

About

UnwantedIP aggregates block events from multiple servers running the EagleEye security stack — WordPress firewalls, SSH honeypots, and web application scanners. Each detected attack is enriched with reverse DNS, geolocation, and ASN data and stored as a permanent threat record.

A REST API allows external sources to query IP reputation data and submit new threat reports. Search any IP address using the URL pattern /ip/x.x.x.x.