27.79.41.18

Classification: Malicious

27.79.41.18 is a malicious IP address. Reported by 3 threat sources, last seen 2026-09-03. Network: AS7552 Viettel Group.

Current activity

  • Known attacker — Seen launching attacks over the Internet.
  • IoT threat — Seen attacking IoT devices.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
SSH Attacker Blocklist.de 2026-04-18 10:01:58 2026-09-03 14:02:05 attacker malicious-activity
Malicious Host AbuseIPDB 2026-04-17 09:59:45 2026-05-30 07:27:07 compromised malicious-activity
Bruteforce AbuseIPDB 2026-04-17 03:12:03 2026-04-17 22:00:55 malicious-activity
SSH Attacker AbuseIPDB 2026-04-17 03:12:03 2026-04-17 22:00:55 malicious-activity
Port Scanner AbuseIPDB 2026-04-17 03:12:03 2026-04-17 14:23:01 anomalous-activity
Hacking AbuseIPDB 2026-04-17 09:59:45 2026-04-17 13:45:04 malicious-activity
HTTP Attacker AbuseIPDB 2026-04-17 10:06:37 2026-04-17 13:02:52 malicious-activity
FTP Attacker AbuseIPDB 2026-04-17 10:04:58 2026-04-17 13:00:34 malicious-activity
DDoS Attacker AbuseIPDB 2026-04-17 12:26:58 2026-04-17 12:26:58 malicious-activity
SQL Injection AbuseIPDB 2026-04-17 12:26:58 2026-04-17 12:26:58 malicious-activity
IMAP Attacker AbuseIPDB 2026-04-17 12:26:58 2026-04-17 12:26:58 malicious-activity
HTTP Scrapper AbuseIPDB 2026-04-17 12:26:58 2026-04-17 12:26:58 anomalous-activity
IoT Attacker AbuseIPDB 2026-04-17 12:26:58 2026-04-17 12:26:58 malicious-activity
Malicious Host HoneyDB 2026-04-17 00:00:00 2026-04-17 00:00:00 malicious-activity

Tags

ssh bruteforce bot

Whois information

AS name
AS7552 Viettel Group
Registrant
Viettel Group
City
Hue
Postal code
110905
Country
VN — Viet Nam 🇻🇳
First indexed
2026-04-18 00:06:21
Last updated
2026-09-03 14:02:06