Estonia (EE) Threat Intelligence

EE

Estonia has 3,885 malicious IP addresses with 71,607 abuse reports. Top threat categories include tcp scan, suspicious activity, high threat, malware distribution, spam. Top attacking networks: Orion Network Limited (1,136 IPs), WS Telecom Inc (372 IPs), Telia Eesti AS (228 IPs). Data collected since 2024-04-28, last activity 2026-09-23.

Threat Assessment: Estonia exhibits moderate cyber threat activity, with a notable number of malicious IPs across multiple attack categories. The dominant attack types are tcp scan, suspicious activity, high threat. The majority of threats originate from networks operated by Orion Network Limited and WS Telecom Inc.

Total Reports
71,607
Unique IPs
3,885
First Seen
2024-04-28
Last Activity
2026-09-23

Top Threat Categories

Tcp Scan 9,651
Suspicious Activity 5,971
High Threat 1,577
Malware Distribution 1,219
Spam 743

Top Attacking Networks

AS58065 Orion Network Limited
1,136 IPs
AS209372 WS Telecom Inc
372 IPs
AS3249 Telia Eesti AS
228 IPs

Most Reported IPs in Estonia

83.166.50.15 970 reports
85.29.246.199 934 reports
37.157.91.62 866 reports
109.206.241.199 726 reports
213.35.128.24 550 reports

Access this data via API

Get Estonia threat intelligence programmatically.

curl https://ip.wayscloud.services/api/country/EE

View full API documentation

See how we classify and verify threats →

Check any IP from Estonia

Look up threat intelligence for a specific IP address.

Related: Country Threat Ranking Country Risk Trends → Top Malicious IPs → AS58065 Intelligence AS209372 Intelligence AS3249 Intelligence Global Attack Trends Detect Malicious Traffic

Loading threat intelligence data...