IP Reputation Tracker

Real-time IP threat intelligence. Automated detection, aggregation and reporting of malicious IP activity across monitored infrastructure.

40,540Tracked IPs
480,400Threat Reports

Worst Offenders — Last 3 Days

# IP Threat Level Reports Type Country Org Last Seen
661 147.185.132.48 82 2 🇺🇸 United States Palo Alto Networks, Inc 29 Jul 2026 - 23:41
662 128.14.239.39 82 1 🇹🇼 Taiwan UCLOUD 29 Jul 2026 - 22:19
663 34.230.221.101 82 6 🇺🇸 United States AWS EC2 (us-east-1) 29 Jul 2026 - 22:09
664 198.235.24.108 82 2 🇺🇸 United States Palo Alto Networks, Inc 29 Jul 2026 - 22:08
665 71.6.232.24 82 4 🇺🇸 United States CariNet, Inc. 29 Jul 2026 - 21:27
666 52.21.227.35 82 6 🇺🇸 United States AWS EC2 (us-east-1) 29 Jul 2026 - 20:38
667 44.215.219.236 82 2 🇺🇸 United States AWS EC2 (us-east-1) 29 Jul 2026 - 18:04
668 198.235.24.28 82 1 🇺🇸 United States Palo Alto Networks, Inc 29 Jul 2026 - 17:53
669 172.236.126.127 82 1 🇺🇸 United States Akamai Technologies, Inc. 29 Jul 2026 - 15:54
670 198.235.24.97 82 1 🇺🇸 United States Palo Alto Networks, Inc 29 Jul 2026 - 15:22
671 194.164.107.6 82 1 🇸🇬 Singapore Valence Technology Co 29 Jul 2026 - 13:33
672 198.235.24.161 82 2 🇺🇸 United States Palo Alto Networks, Inc 29 Jul 2026 - 13:24
673 192.248.150.180 82 1 🇬🇧 United Kingdom Vultr Holdings LLC London 29 Jul 2026 - 13:23
674 178.177.40.170 82 1 🇷🇺 Russia AS24866 Cloud Megafon 29 Jul 2026 - 12:25
675 198.235.24.129 82 1 🇺🇸 United States Palo Alto Networks, Inc 29 Jul 2026 - 10:42
676 71.6.232.29 82 2 🇺🇸 United States CariNet, Inc. 29 Jul 2026 - 10:09
677 139.59.58.140 82 1 🇮🇳 India DigitalOcean, LLC 29 Jul 2026 - 09:06
678 45.79.225.32 82 1 🇺🇸 United States Linode 29 Jul 2026 - 07:30
679 8.138.154.105 82 2 🇨🇳 China Alibaba.com LLC 29 Jul 2026 - 07:26
680 204.76.203.214 81 18 🇳🇱 The Netherlands Intelligence Hosting LLC 1 Aug 2026 - 05:08

About

UnwantedIP aggregates block events from multiple servers running the EagleEye security stack — WordPress firewalls, SSH honeypots, and web application scanners. Each detected attack is enriched with reverse DNS, geolocation, and ASN data and stored as a permanent threat record.

A REST API allows external sources to query IP reputation data and submit new threat reports. Search any IP address using the URL pattern /ip/x.x.x.x.