Worst Recent Malicious IP Addresses
Here are the IP addresses of up to 15 of the worst recent attackers on the servers from which my blocklists are compiled, sorted in order of number of attacks over the past three to six days, without regard to the specific type of malicious attack. The time refers to the most recent attack by the IP. All times are expressed in America / New York time, adjusted for DST when applicable.
These IP addresses were gathered from block reports issued by firewalls running on servers that the author of this site personally owns or manages, and from hacker honeypots installed on sites that the author owns or manages.
A * in the ports column means that the port(s) has/have been redacted to protect non-standard port assignments.
You can check AbuseIPDB's current reports on the IP addresses by clicking the IP address links. Please note, however, that the owner of the IP address probably is not the party responsible for the malicious acts. Most Internet hackers, crackers, spammers, and scammers use either public proxy services, TOR, hacked servers, or infected or otherwise compromised personal computers to launch their attacks. Infected or compromised "Internet of Things" devices like routers, security cameras, and even thermostats also are being increasingly used for malicious Internet activity.
As an Amazon Associate I earn from qualifying purchases. All product links on this page are monetized.