IP Reputation Tracker

Real-time IP threat intelligence. Automated detection, aggregation and reporting of malicious IP activity across monitored infrastructure.

40,885Tracked IPs
485,587Threat Reports

Worst Offenders — Last 3 Days

# IP Threat Level Reports Type Country Org Last Seen
2461 185.220.100.241 71 2 🇩🇪 Germany F3 Netze e.V 31 Jul 2026 - 08:39
2462 43.228.157.161 71 2 🇸🇬 Singapore AS205759 Ghosty Networks LLC 31 Jul 2026 - 07:51
2463 141.98.9.33 71 11 🇱🇹 Lithuania UAB Host Baltic 31 Jul 2026 - 05:27
2464 223.4.205.118 71 3 🇨🇳 China Aliyun Computing Co., LTD 31 Jul 2026 - 00:36
2465 20.117.168.67 71 1 🇬🇧 United Kingdom Microsoft Azure Cloud (uksouth) 30 Jul 2026 - 23:58
2466 192.42.116.50 71 4 🇳🇱 The Netherlands TOR Exit and More 30 Jul 2026 - 23:26
2467 200.92.210.26 71 1 🇲🇽 Mexico Mega Cable, S.A. de C.V 30 Jul 2026 - 23:10
2468 43.228.157.180 71 2 🇸🇬 Singapore AS205759 Ghosty Networks LLC 30 Jul 2026 - 20:05
2469 182.79.13.2 71 2 🇮🇳 India Bharti Airtel Limited 30 Jul 2026 - 19:16
2470 20.203.148.31 71 1 🇨🇭 Switzerland Microsoft Azure Cloud (switzerlandnorth) 30 Jul 2026 - 18:01
2471 4.223.67.9 71 1 🇸🇪 Sweden Microsoft Azure Cloud (swedencentral) 30 Jul 2026 - 16:50
2472 51.116.238.8 71 1 🇩🇪 Germany Microsoft Azure Cloud (germanywestcentral) 30 Jul 2026 - 16:32
2473 74.248.16.8 71 1 🇵🇱 Poland Microsoft Azure Cloud (polandcentral) 30 Jul 2026 - 15:38
2474 171.25.193.82 71 2 🇸🇪 Sweden DFRI 30 Jul 2026 - 12:03
2475 47.77.222.167 70 1 🇺🇸 United States Delta Centric LLC, Zenlayer Inc 2 Aug 2026 - 02:56
2476 47.74.15.96 70 1 🇯🇵 Japan Alibaba Cloud - JP 2 Aug 2026 - 02:18
2477 161.0.2.85 70 2 🇺🇸 United States Rodrigo Rodriguez 2 Aug 2026 - 00:42
2478 47.254.234.201 70 2 🇲🇾 Malaysia Alibaba Cloud - MY 2 Aug 2026 - 00:00
2479 23.129.253.131 70 1 🇧🇷 Brazil Webhosting Holdings LLC 1 Aug 2026 - 23:52
2480 8.216.12.208 70 1 🇯🇵 Japan Alibaba.com Singapore E-Commerce Private Limited 1 Aug 2026 - 23:31

About

UnwantedIP aggregates block events from multiple servers running the EagleEye security stack — WordPress firewalls, SSH honeypots, and web application scanners. Each detected attack is enriched with reverse DNS, geolocation, and ASN data and stored as a permanent threat record.

A REST API allows external sources to query IP reputation data and submit new threat reports. Search any IP address using the URL pattern /ip/x.x.x.x.