Paraguay (PY) Threat Intelligence

PY

Paraguay has 4,264 malicious IP addresses with 127,368 abuse reports. Top threat categories include tcp scan, suspicious activity, high threat, malware distribution, ssh bruteforce. Top attacking networks: Telecel S.A. (1,333 IPs), Nucleo S.A. (813 IPs), Techtel LMDS Comunicaciones Interactivas S.A. (444 IPs). Data collected since 2024-08-29, last activity 2026-09-20.

Threat Assessment: Paraguay exhibits moderate cyber threat activity, with a notable number of malicious IPs across multiple attack categories. The dominant attack types are tcp scan, suspicious activity, high threat. The majority of threats originate from networks operated by Telecel S.A. and Nucleo S.A..

Total Reports
127,368
Unique IPs
4,264
First Seen
2024-08-29
Last Activity
2026-09-20

Top Threat Categories

Tcp Scan 18,503
Suspicious Activity 7,015
High Threat 2,283
Malware Distribution 1,948
Ssh Bruteforce 583

Top Attacking Networks

AS23201 Telecel S.A.
1,333 IPs
AS27895 Nucleo S.A.
813 IPs
AS11664 Techtel LMDS Comunicaciones Interactivas S.A.
444 IPs

Most Reported IPs in Paraguay

181.123.136.11 873 reports
201.217.12.57 872 reports
181.94.250.73 831 reports
190.128.201.18 816 reports
45.191.91.81 814 reports

Access this data via API

Get Paraguay threat intelligence programmatically.

curl https://ip.wayscloud.services/api/country/PY

View full API documentation

See how we classify and verify threats →

Check any IP from Paraguay

Look up threat intelligence for a specific IP address.

Related: Country Threat Ranking Country Risk Trends → Top Malicious IPs → AS23201 Intelligence AS27895 Intelligence AS11664 Intelligence Global Attack Trends Detect Malicious Traffic

Loading threat intelligence data...