Denmark (DK) Threat Intelligence

DK

Denmark has 2,416 malicious IP addresses with 114,869 abuse reports. Top threat categories include suspicious activity, severe abuse, high threat, moderate threat, ssh bruteforce. Top attacking networks: Hi3G Access AB (510 IPs), Glesys AB (366 IPs), M247 Europe SRL (287 IPs). Data collected since 2025-10-13, last activity 2026-04-05.

Threat Assessment: Denmark exhibits moderate cyber threat activity, with a notable number of malicious IPs across multiple attack categories. The dominant attack types are suspicious activity, severe abuse, high threat. The majority of threats originate from networks operated by Hi3G Access AB and Glesys AB.

Total Reports
114,869
Unique IPs
2,416
First Seen
2025-10-13
Last Activity
2026-04-05

Top Threat Categories

Suspicious Activity 5,645
Severe Abuse 1,328
High Threat 419
Moderate Threat 351
Ssh Bruteforce 18

Top Attacking Networks

AS44034 Hi3G Access AB
510 IPs
AS42708 Glesys AB
366 IPs
AS9009 M247 Europe SRL
287 IPs

Most Reported IPs in Denmark

185.129.61.4 223 reports
185.129.61.2 220 reports
185.129.61.7 219 reports
185.129.61.9 219 reports
185.129.61.5 218 reports

Access this data via API

Get Denmark threat intelligence programmatically.

curl https://ip.wayscloud.services/api/country/DK

View full API documentation

See how we classify and verify threats →

Check any IP from Denmark

Look up threat intelligence for a specific IP address.

Related: Country Threat Ranking Country Risk Trends → Top Malicious IPs → AS44034 Intelligence AS42708 Intelligence AS9009 Intelligence Global Attack Trends Detect Malicious Traffic

Loading threat intelligence data...