If you're using the VM without assigning it's own public IP or other dedicated public IP via a NAT gateway or Azure Firewall, then the source IPs you pick up in Azure from the default internet access that is provided are well used and abused by others. Their reputation is better than the source IPs used by a consumer VPN but not much better. Microsoft are not in a hurry to fix the reputation of the default internet access IPs as they would prefer to rent you your own dedicated public IP.