IP Reputation Tracker

Real-time IP threat intelligence. Automated detection, aggregation and reporting of malicious IP activity across monitored infrastructure.

40,663Tracked IPs
481,448Threat Reports

Worst Offenders — Last 3 Days

# IP Threat Level Reports Type Country Org Last Seen
1341 138.197.24.249 74 2 🇺🇸 United States Digital Ocean 1 Aug 2026 - 03:44
1342 40.81.230.77 74 1 🇮🇳 India Microsoft Azure Cloud (centralindia) 1 Aug 2026 - 03:27
1343 152.32.206.35 74 2 🇺🇸 United States Ucloud Information Technology 1 Aug 2026 - 03:19
1344 165.154.59.90 74 2 🇵🇭 Philippines Ucloud Information Technology (hk) Limited 1 Aug 2026 - 03:13
1345 147.185.133.20 74 3 🇺🇸 United States Palo Alto Networks, Inc 1 Aug 2026 - 03:08
1346 213.166.84.42 74 1 🇬🇧 United Kingdom Infrawatch Limited 1 Aug 2026 - 02:52
1347 45.79.110.218 74 1 🇺🇸 United States Linode 1 Aug 2026 - 02:49
1348 185.226.197.40 74 1 🇳🇱 The Netherlands ICG 4 ZEN AMS 1 Aug 2026 - 02:44
1349 100.29.192.38 74 1 🇺🇸 United States AWS EC2 (us-east-1) 1 Aug 2026 - 02:21
1350 100.29.192.89 74 1 🇺🇸 United States AWS EC2 (us-east-1) 1 Aug 2026 - 02:20
1351 165.154.206.246 74 1 🇺🇸 United States Scloud Pte Ltd 1 Aug 2026 - 02:19
1352 14.128.45.113 74 6 🇭🇰 Hong Kong Rackip Consultancy Pte. LTD 1 Aug 2026 - 02:02
1353 130.12.182.219 74 16 🇸🇮 Slovenia Netiface LLC 1 Aug 2026 - 02:01
1354 152.32.139.190 74 1 🇰🇷 South Korea Ucloud Information Technology 1 Aug 2026 - 01:58
1355 47.254.233.150 74 1 🇲🇾 Malaysia Alibaba Cloud - MY 1 Aug 2026 - 01:44
1356 152.32.208.73 74 1 🇺🇸 United States Ucloud Information Technology (hk) Limited 1 Aug 2026 - 01:36
1357 45.84.107.17 74 4 🇸🇪 Sweden R0CKET-CLOUD 1 Aug 2026 - 01:33
1358 172.237.150.127 74 2 🇺🇸 United States Akamai Technologies, Inc. 1 Aug 2026 - 01:31
1359 147.185.132.182 74 3 🇺🇸 United States Palo Alto Networks, Inc 1 Aug 2026 - 01:19
1360 152.32.199.73 74 1 🇧🇷 Brazil Ucloud Information Technology (hk) Limited 1 Aug 2026 - 01:00

About

UnwantedIP aggregates block events from multiple servers running the EagleEye security stack — WordPress firewalls, SSH honeypots, and web application scanners. Each detected attack is enriched with reverse DNS, geolocation, and ASN data and stored as a permanent threat record.

A REST API allows external sources to query IP reputation data and submit new threat reports. Search any IP address using the URL pattern /ip/x.x.x.x.