IP Reputation Tracker

Real-time IP threat intelligence. Automated detection, aggregation and reporting of malicious IP activity across monitored infrastructure.

40,946Tracked IPs
486,144Threat Reports

Worst Offenders — Last 3 Days

# IP Threat Level Reports Type Country Org Last Seen
3081 220.181.84.85 64 2 🇨🇳 China AS23724 IDC, China Telecommunications Corporation 1 Aug 2026 - 20:25
3082 176.65.148.95 64 6 🇳🇱 The Netherlands Pfcloud UG 1 Aug 2026 - 20:04
3083 66.146.193.33 64 2 🇺🇸 United States OnShore, Inc 1 Aug 2026 - 15:44
3084 185.129.61.5 64 2 🇩🇰 Denmark TOR Servers2 1 Aug 2026 - 11:36
3085 23.129.64.141 64 2 🇺🇸 United States Emerald Onion 1 Aug 2026 - 10:13
3086 185.220.101.19 64 6 🇩🇪 Germany Artikel10 e.V 1 Aug 2026 - 05:33
3087 94.142.241.194 64 2 🇳🇱 The Netherlands Coloclue Member 1 Aug 2026 - 05:16
3088 118.193.43.141 64 1 🇭🇰 Hong Kong Ucloud Information Technology (hk) Limited 1 Aug 2026 - 01:48
3089 216.26.254.110 64 2 🇫🇷 France 3xK Tech GmbH 1 Aug 2026 - 01:31
3090 216.26.255.96 64 2 🇫🇷 France 3xK Tech GmbH 1 Aug 2026 - 01:31
3091 216.26.232.169 64 2 🇺🇸 United States 3xK Tech GmbH 31 Jul 2026 - 23:22
3092 165.154.10.187 64 1 🇳🇬 Nigeria Ucloud Information Technology (hk) Limited 31 Jul 2026 - 21:26
3093 47.254.202.197 64 1 🇲🇾 Malaysia Alibaba Cloud - MY 31 Jul 2026 - 19:04
3094 93.95.227.37 64 2 🇮🇸 Iceland AS44925 1984 ehf 31 Jul 2026 - 18:48
3095 47.251.55.62 64 1 🇺🇸 United States Alibaba Cloud - US 31 Jul 2026 - 18:06
3096 141.98.9.116 64 1 🇱🇹 Lithuania UAB Host Baltic 31 Jul 2026 - 14:18
3097 47.245.56.233 64 1 🇯🇵 Japan Alibaba Cloud - JP 31 Jul 2026 - 12:21
3098 8.216.8.122 64 1 🇯🇵 Japan Alibaba.com Singapore E-Commerce Private Limited 31 Jul 2026 - 10:50
3099 118.193.36.107 64 1 🇭🇰 Hong Kong Ucloud Information Technology (hk) Limited 31 Jul 2026 - 09:58
3100 176.65.148.156 64 2 🇳🇱 The Netherlands Pfcloud UG 31 Jul 2026 - 09:33

About

UnwantedIP aggregates block events from multiple servers running the EagleEye security stack — WordPress firewalls, SSH honeypots, and web application scanners. Each detected attack is enriched with reverse DNS, geolocation, and ASN data and stored as a permanent threat record.

A REST API allows external sources to query IP reputation data and submit new threat reports. Search any IP address using the URL pattern /ip/x.x.x.x.