Is 115.127.0.158 malicious?

IP reputation report for 115.127.0.158: blocklist detections, geolocation, ASN, WHOIS and security posture, aggregated from 100+ threat intelligence sources.

115.127.0.158 is listed on 39 threat intelligence sources

Detected by 39 threat intelligence sources in the isMalicious dataset — review before trusting this IP.

Threat verdict

VerdictListed on blocklists

Appears on threat intelligence blocklists — treat with caution.

Blocklist detections39 sources
Categoriesabuse, attack, malware, proxy, suspicious, phishing, malicious, botnet, attacks
Confidence score100/100

Aggregated confidence across the sources reporting this indicator.

First seen2026-06-19
Last updated2026-06-19

Detections

  • FireHOL - Blocklist Net Uaabuse
  • FireHOL - Firehol Level4attack
  • T145 - Black Mirror IPv4 Blocklistmalware
  • Bitwire - Inbound Blocklistmalware
  • bitwire‑it IP blocklist – bad IPs updated every 2hmalware
  • FireHOL - Firehol Anonymousproxy
  • FireHOL - Firehol Proxiesproxy
  • FireHOL - Socks Proxyproxy
  • FireHOL - Socks Proxy 1dproxy
  • FireHOL - Socks Proxy 30dproxy
  • FireHOL - Socks Proxy 7dproxy
  • IPsum Level 1suspicious
  • IPsum – malicious IP feedmalware
  • ThreatHive - Hive Blocklist
  • IPsum - Malicious IPsmalware
  • Blocklist - All Attacks (48h)attack
  • Blocklist - All Mail attacks (48h)attack
  • Romain Marcoux - Malicious IPsphishing
  • Opendbl Net - Blocklistde All.listmalware
  • Romain Marcoux - Malicious Outgoing IPsphishing
  • IPsum Level 2suspicious
  • Threatview IP Blocklistmalicious
  • Malware-Filter - Botnet Filterbotnet
  • Malware-Filter - Botnet Filter IPsbotnet

+15 more sources in the full report.

Threat categories

Related malicious IPs on nearby networks