Serbia (RS) Threat Intelligence

RS

Serbia has 5,677 malicious IP addresses with 174,226 abuse reports. Top threat categories include tcp scan, suspicious activity, malware distribution, high threat, intrusion attempt. Top attacking networks: TELEKOM SRBIJA a.d. (1,909 IPs), Yettel d.o.o. (927 IPs), CETIN Ltd. Belgrade (425 IPs). Data collected since 2025-10-13, last activity 2026-09-20.

Threat Assessment: Serbia exhibits moderate cyber threat activity, with a notable number of malicious IPs across multiple attack categories. The dominant attack types are tcp scan, suspicious activity, malware distribution. The majority of threats originate from networks operated by TELEKOM SRBIJA a.d. and Yettel d.o.o..

Total Reports
174,226
Unique IPs
5,677
First Seen
2025-10-13
Last Activity
2026-09-20

Top Threat Categories

Tcp Scan 14,725
Suspicious Activity 9,993
Malware Distribution 3,499
High Threat 1,341
Intrusion Attempt 1,317

Top Attacking Networks

AS8400 TELEKOM SRBIJA a.d.
1,909 IPs
AS31042 Yettel d.o.o.
927 IPs
AS15958 CETIN Ltd. Belgrade
425 IPs

Most Reported IPs in Serbia

77.46.136.200 759 reports
109.207.33.248 727 reports
89.216.52.207 703 reports
109.207.41.125 700 reports
24.135.74.36 686 reports

Access this data via API

Get Serbia threat intelligence programmatically.

curl https://ip.wayscloud.services/api/country/RS

View full API documentation

See how we classify and verify threats →

Check any IP from Serbia

Look up threat intelligence for a specific IP address.

Related: Country Threat Ranking Country Risk Trends → Top Malicious IPs → AS8400 Intelligence AS31042 Intelligence AS15958 Intelligence Global Attack Trends Detect Malicious Traffic

Loading threat intelligence data...