Maximum Danger
IP 175.110.122.155 is a high-risk address with a maximum threat score of 10/10 that has been linked to 505 reported incidents of IoT-targeted activity detected between April and May 2026, indicating sustained malicious scanning behavior against internet-of-things infrastructure. With a confidence rating of 94% and activity frequency rated 8/10, this Netherlands-hosted IP presents a significant and persistent threat to exposed IoT deployments worldwide.
The abuse reports were generated exclusively through automated honeypot sensors, with all 20 most recent reports documenting IoT/ICS targeted attack patterns. The IP operates within AS49981 (WorldStream B.V.), a Dutch hosting provider, suggesting the source is either a compromised device or a dedicated scanning platform residing in a commercial datacenter environment. The two-month reporting window demonstrates consistent, ongoing activity rather than opportunistic or isolated probes.
IoT-targeted attacks exploit weak security configurations in smart devices, cameras, routers, and industrial control systems by scanning for exposed services, default credentials, or unpatched vulnerabilities. An IP exhibiting this behavior at such intensity signals an active reconnaissance and exploitation campaign that could compromise poorly secured IoT deployments and integrate compromised devices into botnets.
Site operators should immediately block or rate-limit this IP at the network perimeter using standard defensive tools such as fail2ban or firewall rules, segment IoT devices onto isolated network zones, ensure all connected devices run current firmware with default credentials replaced, and monitor for matching scanning signatures in access logs to identify potential intrusion attempts originating from similar sources.