IP address


.31669.40.207.89
Shodan(more info)
Passive DNS
Tags:
IP blacklists
Spamhaus SBL
69.40.207.89 is listed on the Spamhaus SBL blacklist.

Description: The Spamhaus Block List ("SBL") Advisory is a database of IP addresses from which Spamhaus does not recommend the acceptance of electronic mail.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2026-09-12 03:10:49.274000
Was present on blacklist at: 2026-09-12 03:10
Spamhaus DROP
69.40.207.89 is listed on the Spamhaus DROP blacklist.

Description: Spamhaus DROP (Don't Route Or Peer) list. Netblocks controlled by spammers or cyber criminals. The DROP lists are a tiny subset of the SBL, designed for use by firewalls and routing equipment to filter out the malicious traffic from these netblocks.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2026-09-12 03:10:49.274000
Was present on blacklist at: 2026-09-12 03:10
AbuseIPDB
69.40.207.89 is listed on the AbuseIPDB blacklist.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2026-09-18 04:00:00.611000
Was present on blacklist at: 2026-09-16 04:00, 2026-09-18 04:00

Threat categories

TLRoleCategoryDetails
68 src scan port: many
25 src

Warden events (250)
2026-09-18
ReconScanning (node.ce2b59): 13
2026-09-17
ReconScanning (node.ce2b59): 31
2026-09-16
ReconScanning (node.ce2b59): 30
2026-09-15
ReconScanning (node.ce2b59): 42
2026-09-14
ReconScanning (node.ce2b59): 61
2026-09-13
ReconScanning (node.ce2b59): 50
2026-09-12
ReconScanning (node.ce2b59): 23
DShield reports (IP summary, reports)
2026-09-13
Number of reports: 57
Distinct targets: 45
2026-09-14
Number of reports: 120
Distinct targets: 95
2026-09-15
Number of reports: 120
Distinct targets: 95
2026-09-16
Number of reports: 124
Distinct targets: 96
2026-09-17
Number of reports: 123
Distinct targets: 92
Origin AS
AS400992 - ZHOUYISAT-COMMUNICATIONS
BGP Prefix
69.40.207.0/24
geo
United States, Fremont
🕑 America/Los_Angeles
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
69.40.192.0 - 69.40.207.255
last_activity
2026-09-18 09:44:36
last_warden_event
2026-09-18 09:44:36
rep
0.31623371202964545
reserved_range
0
Shodan's InternetDB
Open ports: 22, 443, 2222
Tags:
CPEs: cpe:/o:canonical:ubuntu_linux, cpe:/a:openbsd:openssh:8.9p1
ts_added
2026-09-12 03:10:48.950000
ts_last_update
2026-09-18 09:46:30.304000

Warden event timeline

DShield event timeline

Presence on blacklists