Norway (NO) Threat Intelligence

NO

Norway has 6,003 malicious IP addresses with 219,229 abuse reports. Top threat categories include tcp scan, suspicious activity, malware distribution, high threat, severe abuse. Top attacking networks: Blix Solutions AS (709 IPs), Microsoft Corporation (508 IPs), Glesys AB (501 IPs). Data collected since 2025-10-13, last activity 2026-09-20.

Threat Assessment: Norway exhibits moderate cyber threat activity, with a notable number of malicious IPs across multiple attack categories. The dominant attack types are tcp scan, suspicious activity, malware distribution. The majority of threats originate from networks operated by Blix Solutions AS and Microsoft Corporation.

Total Reports
219,229
Unique IPs
6,003
First Seen
2025-10-13
Last Activity
2026-09-20

Top Threat Categories

Tcp Scan 28,601
Suspicious Activity 12,249
Malware Distribution 2,935
High Threat 2,934
Severe Abuse 1,398

Top Attacking Networks

AS50304 Blix Solutions AS
709 IPs
AS8075 Microsoft Corporation
508 IPs
AS42708 Glesys AB
501 IPs

Most Reported IPs in Norway

85.19.195.12 938 reports
193.90.12.122 932 reports
185.12.59.118 927 reports
79.161.110.92 837 reports
81.167.26.57 795 reports

Access this data via API

Get Norway threat intelligence programmatically.

curl https://ip.wayscloud.services/api/country/NO

View full API documentation

See how we classify and verify threats →

Check any IP from Norway

Look up threat intelligence for a specific IP address.

Related: Country Threat Ranking Country Risk Trends → Top Malicious IPs → AS50304 Intelligence AS8075 Intelligence AS42708 Intelligence Global Attack Trends Detect Malicious Traffic

Loading threat intelligence data...