Thailand (TH) Threat Intelligence

TH

Thailand has 43,793 malicious IP addresses with 1,892,967 abuse reports. Top threat categories include tcp scan, suspicious activity, high threat, malware distribution, severe abuse. Top attacking networks: TOT Public Company Limited (19,483 IPs), Triple T Broadband Public Company Limited (5,996 IPs), AIS Fibre (3,102 IPs). Data collected since 2022-10-17, last activity 2026-10-04.

Threat Assessment: Thailand shows substantial cyber threat activity, ranking among the top threat source countries worldwide. The dominant attack types are tcp scan, suspicious activity, high threat. The majority of threats originate from networks operated by TOT Public Company Limited and Triple T Broadband Public Company Limited.

Total Reports
1,892,967
Unique IPs
43,793
First Seen
2022-10-17
Last Activity
2026-10-04

Top Threat Categories

Tcp Scan 113,249
Suspicious Activity 109,963
High Threat 37,363
Malware Distribution 20,608
Severe Abuse 7,486

Top Attacking Networks

AS23969 TOT Public Company Limited
19,483 IPs
AS45758 Triple T Broadband Public Company Limited
5,996 IPs
AS133481 AIS Fibre
3,102 IPs

Most Reported IPs in Thailand

203.154.158.195 1,397 reports
147.50.227.79 1,390 reports
203.150.107.244 1,348 reports
147.50.231.135 1,271 reports
49.231.192.36 1,256 reports

Access this data via API

Get Thailand threat intelligence programmatically.

curl https://ip.wayscloud.services/api/country/TH

View full API documentation

See how we classify and verify threats →

Check any IP from Thailand

Look up threat intelligence for a specific IP address.

Related: Country Threat Ranking Country Risk Trends → Top Malicious IPs → AS23969 Intelligence AS45758 Intelligence AS133481 Intelligence Global Attack Trends Detect Malicious Traffic

Loading threat intelligence data...