Malicious IPs in United Arab Emirates

IPv4 networks located in United Arab Emirates that are currently flagged for malicious activity, aggregated from multiple external and internal threat intelligence sources. Snapshot of (UTC), updated daily.

Flagged IPv4 networks
100
#35 of 176 countries
Per million allocated IPv4
13.6
#31 of 77 countries
Flagged IPv4 addresses
640
ranges count at most as a /24
Allocated IPv4 addresses
7,351,296
RIR delegation statistics

United Arab Emirates at a glance

The United Arab Emirates had 100 flagged IPv4 networks in the snapshot of 2026-10-10, rank #35 of 176 countries by absolute count. Relative to its allocated IPv4 space that is 13.6 flagged networks per million addresses, rank #31 of 77, close to the median of 10.6 across all rated countries. The largest category is brute force sources with 45% of the flagged networks, followed by other malicious networks (30%). The three networks (ASNs) with the most flagged IPs hold 82% of them, led by EMIRATES-INTERNET EMIRATES TELECOMMUNICATIONS GROUP COMPANY (ETISALAT GROUP) PJSC (AS5384). Another 7 flagged IPv6 networks are located in the United Arab Emirates.

Malicious activity in United Arab Emirates by category

A network listed in several categories counts once, in the most specific one. Also flagged: 7 IPv6 networks.

  • Brute force sources in United Arab Emirates

    45 (45%)

    45 flagged networks, #37 of 159 countries for brute force sources. Sources of password guessing against SSH, mail, FTP and web logins. Brute Force Sources by Country

  • Other malicious networks in United Arab Emirates

    30 (30%)

    30 flagged networks, #24 of 147 countries for other malicious networks. Addresses and ranges reported as malicious without a more specific category. Other Malicious Networks by Country

  • Botnet hosts in United Arab Emirates

    16 (16%)

    16 flagged networks, #22 of 126 countries for botnet hosts. Infected hosts taking part in a botnet. Botnet Hosts by Country

  • Spam sources in United Arab Emirates

    8 (8%)

    8 flagged networks, #21 of 85 countries for spam sources. Sources of email spam. Spam Sources by Country

  • C2 servers in United Arab Emirates

    1 (1%)

    1 flagged network, #35 of 52 countries for C2 servers. Command-and-control servers, payload hosts and other attacker-run infrastructure. C2 Servers by Country

Networks with the most flagged IPs in United Arab Emirates

Autonomous systems announcing the flagged networks located in United Arab Emirates.

#NetworkFlagged networks
1AS5384EMIRATES-INTERNET EMIRATES TELECOMMUNICATIONS GROUP COMPANY (ETISALAT GROUP) PJSC53
2AS15802DU-AS1 Emirates Integrated Telecommunications Company PJSC21
3AS31898ORACLE-BMC-31898 - Oracle Corporation8
4AS8075MICROSOFT-CORP-MSN-AS-BLOCK - Microsoft Corporation5
5AS9009M247 M247 Europe SRL4
6AS44947AMWAJ AMWAJ ALKHYR COMMERCIAL BROKERS CO.2
7AS135377UCLOUD-HK-AS-AP - UCLOUD INFORMATION TECHNOLOGY (HK) LIMITED2
8AS393406DIGITALOCEAN-AS393406 - DigitalOcean, LLC1
9AS14956ROUTERHOSTING - RouterHosting LLC1
10AS45102ALIBABA-CN-NET - Alibaba (US) Technology Co., Ltd.1

Compare United Arab Emirates with other countries

Ranked by flagged networks per million allocated IPv4 addresses.

Countries ranked next to the United Arab Emirates by rate

#CountryNetworksPer million
29Nigeria4614.3
30Bulgaria6013.8
31United Arab Emirates10013.6
32Ecuador3613.2
33Thailand11713.1
34Brazil93311.4

Questions about United Arab Emirates

How many malicious IP addresses are there in the United Arab Emirates?
On 2026-10-10, 100 IPv4 networks (/24 blocks) located in the United Arab Emirates were flagged for malicious activity, with 640 listed IPv4 addresses and 7 IPv6 networks. Each /24 counts once, however many of its addresses are listed.
Which networks in the United Arab Emirates host the most flagged IPs?
EMIRATES-INTERNET EMIRATES TELECOMMUNICATIONS GROUP COMPANY (ETISALAT GROUP) PJSC (AS5384, 53 networks), DU-AS1 Emirates Integrated Telecommunications Company PJSC (AS15802, 21 networks), ORACLE-BMC-31898 - Oracle Corporation (AS31898, 8 networks). Large hosting providers appear because attackers rent their servers, not necessarily because of the operator.

Query this data per IP via the API

Look up threat categories, reputation score, ASN and geolocation for any address in United Arab Emirates or anywhere else with one API call.