Maximum Danger
IP 175.110.122.158 is a critical-risk address operated by WorldStream B.V. in the Netherlands that has been flagged in 540 abuse reports for IoT-targeted attack activity, representing one of the highest-threat profiles encountered by automated honeypot sensors tracking malicious infrastructure across global networks.
The address, registered to AS49981, was first reported in April 2026 and remains active through May 2026, accumulating reports at an intensity rated 8 out of 10. All 540 reports specifically attribute the malicious activity to IoT-targeted operations, with honeypot detections confirming sustained, deliberate scanning of internet-connected devices such as cameras, routers, and industrial control systems. The extremely high threat score of 10 out of 10 and 94 percent confidence in malicious intent provide strong empirical backing for immediate defensive action.
The category IoT-targeted describes systematic exploitation attempts against connected devices with weak or default security configurations. Attackers leveraging this address are actively probing for unpatched firmware, factory-default credentials, and exposed management interfaces on IoT infrastructure. The concrete real-world risk involves compromise of connected devices for botnet recruitment, credential harvesting, or pivoting into adjacent enterprise networks through compromised IoT entry points.
Site operators should block or heavily restrict inbound access from this address at the network perimeter, enforce strong unique credentials and firmware updates on all IoT management interfaces, implement network segmentation to isolate IoT devices from critical infrastructure, and deploy monitoring tools such as fail2ban to detect and block automated attack patterns targeting connected devices.