79.135.105.204
Classification: Malicious
79.135.105.204 is a malicious IP address. Reported by 4 threat sources, last seen 2026-09-02. Network: AS212238 PROTONVPN.
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| VPN ProtonVPN | Maltiverse Threat Observatory | 2025-07-22 19:23:09 | 2026-09-02 09:46:07 | anomalous-activity anonymization country_code:br country_code:mx country_code:ni industry:education-and-nonprofits industry:financial-services industry:healthcare-and-pharmaceutical malicious-activity | |
| HTTP Spammer | StopForumSpam.com | 2025-03-01 07:18:38 | 2026-06-22 09:28:40 | malicious-activity | |
| Proxy | IPWhois.io | 2024-11-28 06:47:43 | 2025-01-31 10:17:55 | anonymization | |
| Suspicious Host | AbuseIPDB | 2024-11-27 11:50:03 | 2024-11-27 11:50:03 | anomalous-activity |
Tags
bot abuse port:1194 port:51820 port:992 port:5555 port:500 port:4500 port:1701 port:1723 port:443 port:823 port:4569 port:5060Whois information
- AS name
- AS212238 PROTONVPN
- AS registry
- ripencc
- AS date
- 2007-10-31 00:00:00
- AS CIDR
- 79.135.105.0/24
- City
- Marseille
- Postal code
- 13000
- Country
- FR — France 🇫🇷
- First indexed
- 2024-11-28 06:47:40
- Last updated
- 2026-09-02 16:05:21
Malicious IPs in the same CIDR
79.135.105.168 79.135.105.141 79.135.105.1 79.135.105.152 79.135.105.44 79.135.105.81 79.135.105.194 79.135.105.46 79.135.105.2 79.135.105.204 79.135.105.84 79.135.105.160