Norway (NO) Threat Intelligence

NO

Norway has 5,851 malicious IP addresses with 209,166 abuse reports. Top threat categories include suspicious activity, severe abuse, moderate threat, high threat, tcp scan. Top attacking networks: Blix Solutions AS (700 IPs), Microsoft Corporation (497 IPs), Glesys AB (478 IPs). Data collected since 2025-10-13, last activity 2026-09-06.

Threat Assessment: Norway exhibits moderate cyber threat activity, with a notable number of malicious IPs across multiple attack categories. The dominant attack types are suspicious activity, severe abuse, moderate threat. The majority of threats originate from networks operated by Blix Solutions AS and Microsoft Corporation.

Total Reports
209,166
Unique IPs
5,851
First Seen
2025-10-13
Last Activity
2026-09-06

Top Threat Categories

Suspicious Activity 3,549
Severe Abuse 1,398
Moderate Threat 315
High Threat 266
Tcp Scan 124

Top Attacking Networks

AS50304 Blix Solutions AS
700 IPs
AS8075 Microsoft Corporation
497 IPs
AS42708 Glesys AB
478 IPs

Most Reported IPs in Norway

85.19.195.12 761 reports
79.161.110.92 724 reports
185.12.59.118 717 reports
81.167.26.57 711 reports
193.90.12.122 676 reports

Access this data via API

Get Norway threat intelligence programmatically.

curl https://ip.wayscloud.services/api/country/NO

View full API documentation

See how we classify and verify threats →

Check any IP from Norway

Look up threat intelligence for a specific IP address.

Related: Country Threat Ranking Country Risk Trends → Top Malicious IPs → AS50304 Intelligence AS8075 Intelligence AS42708 Intelligence Global Attack Trends Detect Malicious Traffic

Loading threat intelligence data...