91.217.249.7

Classification: Malicious

91.217.249.7 is a malicious IP address. Reported by 5 threat sources, last seen 2026-09-05. Network: AS206092 VPN Consumer Frankfurt, Germany.

Current activity

  • Known attacker โ€” Seen launching attacks over the Internet.
  • Open proxy โ€” Provides anonymization that can hide an attacker.
  • VPN node โ€” Provides anonymization that can hide an attacker.

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
DDoS Attacker Blocklist.net.ua 2026-02-27 12:29:09 2026-09-05 16:33:41 attacker malicious-activity
Empty reason Blocklist.net.ua 2026-09-04 16:35:54 2026-09-04 16:35:54 attacker malicious-activity
VPN IPWhois.io 2025-02-08 23:08:29 2026-09-03 21:03:52 anonymization vpn
Suspicious Host AbuseIPDB 2024-08-03 12:15:09 2026-06-07 18:45:06 anomalous-activity
Malicious Host AbuseIPDB 2026-04-21 22:41:15 2026-04-25 06:25:22 malicious-activity
HTTP Spammer StopForumSpam.com 2024-07-23 08:45:16 2026-04-13 14:42:14 malicious-activity
HTTP bot Blocklist.de 2025-10-31 18:47:04 2025-10-31 21:33:40 malicious-activity
Proxy IPWhois.io 2025-03-15 09:51:22 2025-06-06 06:16:23 anonymization

Tags

bot abuse attacker spam bruteforce

Whois information

AS name
AS206092 VPN Consumer Frankfurt, Germany
AS registry
ripencc
AS date
2019-11-11 00:00:00
AS CIDR
91.217.249.0/24
Registrant
VPN Consumer Frankfurt, Germany
City
Frankfurt am Main
Postal code
60311
Country
DE โ€” Germany ๐Ÿ‡ฉ๐Ÿ‡ช
First indexed
2024-07-23 08:45:16
Last updated
2026-09-05 16:33:42

Malicious IPs in the same CIDR

91.217.249.4 91.217.249.31 91.217.249.53 91.217.249.212 91.217.249.207 91.217.249.52 91.217.249.20 91.217.249.62 91.217.249.45 91.217.249.44 91.217.249.28 91.217.249.75 91.217.249.42 91.217.249.8 91.217.249.43 91.217.249.205 91.217.249.221 91.217.249.71 91.217.249.200 91.217.249.204 91.217.249.208 91.217.249.209 91.217.249.211 91.217.249.214 91.217.249.227