Norway (NO) Threat Intelligence

NO

Norway has 5,301 malicious IP addresses with 186,660 abuse reports. Top threat categories include suspicious activity, severe abuse, moderate threat, high threat, ssh bruteforce. Top attacking networks: Blix Solutions AS (680 IPs), Microsoft Corporation (479 IPs), Glesys AB (455 IPs). Data collected since 2025-10-13, last activity 2026-08-04.

Threat Assessment: Norway exhibits moderate cyber threat activity, with a notable number of malicious IPs across multiple attack categories. The dominant attack types are suspicious activity, severe abuse, moderate threat. The majority of threats originate from networks operated by Blix Solutions AS and Microsoft Corporation.

Total Reports
186,660
Unique IPs
5,301
First Seen
2025-10-13
Last Activity
2026-08-04

Top Threat Categories

Suspicious Activity 3,549
Severe Abuse 1,398
Moderate Threat 315
High Threat 266
Ssh Bruteforce 103

Top Attacking Networks

AS50304 Blix Solutions AS
680 IPs
AS8075 Microsoft Corporation
479 IPs
AS42708 Glesys AB
455 IPs

Most Reported IPs in Norway

85.19.195.12 563 reports
79.161.110.92 536 reports
81.167.26.57 529 reports
89.185.81.112 516 reports
46.29.238.140 515 reports

Access this data via API

Get Norway threat intelligence programmatically.

curl https://ip.wayscloud.services/api/country/NO

View full API documentation

See how we classify and verify threats →

Check any IP from Norway

Look up threat intelligence for a specific IP address.

Related: Country Threat Ranking Country Risk Trends → Top Malicious IPs → AS50304 Intelligence AS8075 Intelligence AS42708 Intelligence Global Attack Trends Detect Malicious Traffic

Loading threat intelligence data...