Afghanistan (AF) Threat Intelligence

AF

Afghanistan has 691 malicious IP addresses with 56,092 abuse reports. Top threat categories include tcp scan, high threat, suspicious activity, malware distribution, severe abuse. Top attacking networks: AFGHANTELECOM GOVERNMENT COMMUNICATION NETWORK (250 IPs), Datacamp Limited (43 IPs), TELECOM DEVELOPMENT COMPANY AFGHANISTAN (36 IPs). Data collected since 2025-10-13, last activity 2026-10-04.

Threat Assessment: Afghanistan has a relatively low level of observed cyber threat activity. The dominant attack types are tcp scan, high threat, suspicious activity. The majority of threats originate from networks operated by AFGHANTELECOM GOVERNMENT COMMUNICATION NETWORK and Datacamp Limited.

Total Reports
56,092
Unique IPs
691
First Seen
2025-10-13
Last Activity
2026-10-04

Top Threat Categories

Tcp Scan 13,367
High Threat 5,822
Suspicious Activity 4,059
Malware Distribution 2,179
Severe Abuse 228

Top Attacking Networks

AS55330 AFGHANTELECOM GOVERNMENT COMMUNICATION NETWORK
250 IPs
AS212238 Datacamp Limited
43 IPs
AS45178 TELECOM DEVELOPMENT COMPANY AFGHANISTAN
36 IPs

Most Reported IPs in Afghanistan

74.118.81.174 1,141 reports
149.54.40.222 1,105 reports
149.54.40.182 994 reports
149.54.51.74 970 reports
149.54.62.162 968 reports

Access this data via API

Get Afghanistan threat intelligence programmatically.

curl https://ip.wayscloud.services/api/country/AF

View full API documentation

See how we classify and verify threats →

Check any IP from Afghanistan

Look up threat intelligence for a specific IP address.

Related: Country Threat Ranking Country Risk Trends → Top Malicious IPs → AS55330 Intelligence AS212238 Intelligence AS45178 Intelligence Global Attack Trends Detect Malicious Traffic

Loading threat intelligence data...