27.79.2.42

Classification: Malicious

27.79.2.42 is a malicious IP address. Reported by 5 threat sources, last seen 2026-09-04. Network: AS7552 Viettel Group.

Current activity

  • Known attacker — Seen launching attacks over the Internet.
  • Known scanner — Seen scanning hosts over the Internet.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
ET COMPROMISED Known Compromised or Hostile Host Traffic UDP Emerging Threats 2026-08-08 10:01:21 2026-09-04 10:01:22 compromised malicious-activity
ET COMPROMISED Known Compromised or Hostile Host Traffic TCP Emerging Threats 2026-08-08 10:01:20 2026-09-04 10:01:21 compromised malicious-activity
SSH Attacker Blocklist.net.ua 2026-08-06 16:05:46 2026-08-06 16:05:46 attacker malicious-activity
SSH Attacker Blocklist.de 2026-08-06 14:02:33 2026-08-06 14:02:33 attacker malicious-activity
Bruteforce AbuseIPDB 2026-08-06 11:32:18 2026-08-06 13:51:56 attacker malicious-activity
SSH Attacker AbuseIPDB 2026-08-06 11:32:18 2026-08-06 13:51:56 attacker malicious-activity
Port Scanner AbuseIPDB 2026-08-06 11:33:38 2026-08-06 13:43:14 anomalous-activity attacker malicious-activity reconnaissance
HTTP Attacker AbuseIPDB 2026-08-06 13:37:28 2026-08-06 13:37:28 attacker malicious-activity
Malicious Host HoneyDB 2026-08-06 00:00:00 2026-08-06 00:00:00 attacker malicious-activity

Tags

ssh bruteforce bot abuse

Whois information

AS name
AS7552 Viettel Group
Registrant
Viettel Group
City
Hanoi
Country
VN — Viet Nam 🇻🇳
First indexed
2026-08-06 14:02:33
Last updated
2026-09-04 10:01:42