79.135.105.204

Classification: Malicious

79.135.105.204 is a malicious IP address. Reported by 4 threat sources, last seen 2026-09-02. Network: AS212238 PROTONVPN.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
VPN ProtonVPN Maltiverse Threat Observatory 2025-07-22 19:23:09 2026-09-02 09:46:07 anomalous-activity anonymization country_code:br country_code:mx country_code:ni industry:education-and-nonprofits industry:financial-services industry:healthcare-and-pharmaceutical malicious-activity
HTTP Spammer StopForumSpam.com 2025-03-01 07:18:38 2026-06-22 09:28:40 malicious-activity
Proxy IPWhois.io 2024-11-28 06:47:43 2025-01-31 10:17:55 anonymization
Suspicious Host AbuseIPDB 2024-11-27 11:50:03 2024-11-27 11:50:03 anomalous-activity

Tags

bot abuse port:1194 port:51820 port:992 port:5555 port:500 port:4500 port:1701 port:1723 port:443 port:823 port:4569 port:5060

Whois information

AS name
AS212238 PROTONVPN
AS registry
ripencc
AS date
2007-10-31 00:00:00
AS CIDR
79.135.105.0/24
City
Marseille
Postal code
13000
Country
FR — France 🇫🇷
First indexed
2024-11-28 06:47:40
Last updated
2026-09-02 16:05:21

Malicious IPs in the same CIDR

79.135.105.168 79.135.105.141 79.135.105.1 79.135.105.152 79.135.105.44 79.135.105.81 79.135.105.194 79.135.105.46 79.135.105.2 79.135.105.204 79.135.105.84 79.135.105.160