Developers can check API Specification here:
curl -H "Authorization: Bearer <API_KEY>" https://api.maltiverse.com/ip/187.159.5.239
import requests
import json
url = 'https://api.maltiverse.com/ip/187.159.5.239'
response = requests.get(url)
print(json.dumps(response.json(), indent=4, sort_keys=True))
$url = 'https://api.maltiverse.com/ip/187.159.5.239'
$headers = @{Authorization=("Bearer {0}" -f "<API_KEY>")}
$response = Invoke-RestMethod $url -Headers $headers
Write-Output $response
{
"as_name": "AS8151 UNINET",
"as_number": "8151",
"asn_cidr": "187.159.0.0/21",
"asn_country_code": "MX",
"asn_date": "2007-12-06 00:00:00",
"asn_registry": "lacnic",
"blacklist": [
{
"count": 2,
"description": "Mail Spammer",
"first_seen": "2020-10-19 03:33:06",
"last_seen": "2025-03-23 03:21:06",
"source": "Barracuda"
},
{
"count": 1,
"description": "Malicious Host",
"first_seen": "2020-10-18 00:00:00",
"last_seen": "2020-10-18 00:00:00",
"source": "HoneyDB"
}
],
"cidr": [
"187.144.0.0/12"
],
"city": "Mexico City",
"classification": "suspicious",
"country_code": "MX",
"creation_time": "2020-10-19 03:33:06",
"email": [
"gccips@reduno.com.mx",
"gccips1@reduno.com.mx",
"abuse@uninet.net.mx"
],
"ip_addr": "187.159.5.239",
"ip_version": 4,
"is_cdn": false,
"is_cnc": false,
"is_distributing_malware": false,
"is_hosting": false,
"is_iot_threat": false,
"is_known_attacker": false,
"is_known_scanner": false,
"is_mining_pool": false,
"is_open_proxy": false,
"is_sinkhole": false,
"is_tor_node": false,
"is_vpn_node": false,
"last_updated": "2012-02-27 00:00:00",
"location": {
"lat": 19.4326077,
"lon": -99.133208
},
"modification_time": "2025-03-23 03:21:07",
"number_of_blacklisted_domains_resolving": 0,
"number_of_domains_resolving": 0,
"number_of_offline_malicious_urls_allocated": 0,
"number_of_online_malicious_urls_allocated": 0,
"number_of_whitelisted_domains_resolving": 0,
"postal_code": "06060",
"registrant_name": "UNINET",
"scoring_executed_time": "2025-03-23 03:21:07",
"type": "ip"
}