IP Reputation Tracker

Real-time IP threat intelligence. Automated detection, aggregation and reporting of malicious IP activity across monitored infrastructure.

23,468Tracked IPs
163,475Threat Reports

Worst Offenders β€” Last 3 Days

# IP Threat Level Reports Type Country Org Last Seen
3901 91.231.89.73 60 15 πŸ‡«πŸ‡· France ONYPHE 19 Jun 2026 - 21:35
3902 193.163.125.36 60 9 πŸ‡¬πŸ‡§ United Kingdom Constantine Cybersecurity LTD 19 Jun 2026 - 21:34
3903 66.132.186.196 60 2 πŸ‡ΊπŸ‡Έ United States Censys, Inc 19 Jun 2026 - 21:33
3904 66.132.186.219 60 6 πŸ‡ΊπŸ‡Έ United States Censys, Inc 19 Jun 2026 - 21:31
3905 66.132.172.154 60 16 πŸ‡ΊπŸ‡Έ United States Censys Inc 19 Jun 2026 - 21:30
3906 170.187.165.218 60 4 πŸ‡ΊπŸ‡Έ United States Linode 19 Jun 2026 - 21:28
3907 66.132.172.159 60 14 πŸ‡ΊπŸ‡Έ United States Censys Inc 19 Jun 2026 - 21:28
3908 66.132.172.16 60 12 πŸ‡ΊπŸ‡Έ United States Censys Inc 19 Jun 2026 - 21:26
3909 34.197.70.90 60 30 πŸ‡ΊπŸ‡Έ United States AWS EC2 (us-east-1) 19 Jun 2026 - 21:26
3910 66.132.172.135 60 5 πŸ‡ΊπŸ‡Έ United States Censys Inc 19 Jun 2026 - 21:25
3911 128.203.200.216 60 2 πŸ‡ΊπŸ‡Έ United States Microsoft Azure Cloud (centralus) 19 Jun 2026 - 21:25
3912 91.230.168.137 60 15 πŸ‡ΊπŸ‡Έ United States ONYPHE 19 Jun 2026 - 21:25
3913 3.142.170.60 60 54 πŸ‡ΊπŸ‡Έ United States AWS EC2 (us-east-2) 19 Jun 2026 - 21:25
3914 91.231.89.171 60 12 πŸ‡«πŸ‡· France ONYPHE 19 Jun 2026 - 21:24
3915 20.15.164.165 60 2 πŸ‡ΊπŸ‡Έ United States Microsoft Azure Cloud (centralus) 19 Jun 2026 - 21:21
3916 40.124.174.187 60 1 πŸ‡ΊπŸ‡Έ United States Microsoft Azure Cloud (southcentralus) 19 Jun 2026 - 21:18
3917 91.231.89.9 60 8 πŸ‡«πŸ‡· France ONYPHE 19 Jun 2026 - 21:18
3918 66.132.186.131 60 10 πŸ‡ΊπŸ‡Έ United States Censys, Inc 19 Jun 2026 - 21:17
3919 91.231.89.221 60 13 πŸ‡«πŸ‡· France ONYPHE 19 Jun 2026 - 21:16
3920 35.169.206.177 60 33 πŸ‡ΊπŸ‡Έ United States AWS EC2 (us-east-1) 19 Jun 2026 - 21:16

About

UnwantedIP aggregates block events from multiple servers running the EagleEye security stack β€” WordPress firewalls, SSH honeypots, and web application scanners. Each detected attack is enriched with reverse DNS, geolocation, and ASN data and stored as a permanent threat record.

A REST API allows external sources to query IP reputation data and submit new threat reports. Search any IP address using the URL pattern /ip/x.x.x.x.