IP address


.00040.134.95.27h27.95.134.40.dynamic.ip.windstream.net
Shodan(more info)
Passive DNS
Tags: Dynamic IP IP in hostname Scanner
IP blacklists
Spamhaus SBL CSS
40.134.95.27 was recently listed on the Spamhaus SBL CSS blacklist, but currently it is not.

Description: The Spamhaus CSS is part of the SBL. CSS listings will have return code 127.0.0.3 to differentiate from regular SBL listings, which have return code 127.0.0.2.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2025-05-01 22:00:40.300000
Was present on blacklist at: 2025-03-13 22:00, 2025-03-20 22:00
DataPlane TELNET login
40.134.95.27 is listed on the DataPlane TELNET login blacklist.

Description: DataPlane.org is a community-powered Internet data, feeds,<br>and measurement resource for operators, by operators. IPs trying<br>an unsolicited login via TELNET password authentication.
Type of feed: primary (feed detail page)

Last checked at: 2025-03-23 15:10:08.445000
Was present on blacklist at: 2025-03-14 19:10, 2025-03-15 03:10, 2025-03-15 07:10, 2025-03-15 15:10, 2025-03-15 19:10, 2025-03-16 03:10, 2025-03-16 07:10, 2025-03-16 15:10, 2025-03-16 19:10, 2025-03-17 03:10, 2025-03-17 07:10, 2025-03-17 15:10, 2025-03-17 19:10, 2025-03-18 03:10, 2025-03-18 07:10, 2025-03-18 15:10, 2025-03-18 19:10, 2025-03-19 07:10, 2025-03-19 15:10, 2025-03-19 19:10, 2025-03-20 03:10, 2025-03-20 07:10, 2025-03-20 15:10, 2025-03-20 19:10, 2025-03-21 03:10, 2025-03-21 07:10, 2025-03-21 15:10, 2025-03-21 19:10, 2025-03-22 03:10, 2025-03-22 07:10, 2025-03-22 15:10, 2025-03-22 19:10, 2025-03-23 03:10, 2025-03-23 07:10, 2025-03-23 15:10
Warden events (31)
2025-03-16
ReconScanning (node.9c1411): 9
2025-03-15
ReconScanning (node.9c1411): 9
2025-03-14
ReconScanning (node.9c1411): 11
2025-03-13
ReconScanning (node.9c1411): 2
OTX pulses
[602bc528f447d628d41494f2] 2021-02-16 13:14:16.945000 | Ka's Honeypot visitors
Author name:Kapppppa
Pulse modified:2025-04-13 15:50:35.932000
Indicator created:2025-03-14 17:57:30
Indicator role:bruteforce
Indicator title:Telnet Login attempt
Indicator expiration:2025-04-13 17:00:00
Origin AS
AS7029 - WINDSTREAM
BGP Prefix
40.134.88.0/21
geo
United States, Canton
🕑 America/New_York
hostname
h27.95.134.40.dynamic.ip.windstream.net
hostname_class
['ip_in_hostname', 'dynamic']
Address block ('inetnum' or 'NetRange' in whois database)
40.134.0.0 - 40.135.255.255
last_activity
2025-04-13 16:36:41.674000
last_warden_event
2025-03-16 13:38:13
rep
0.0
reserved_range
0
ts_added
2025-03-13 22:00:36.136000
ts_last_update
2025-05-03 22:00:40.133000

Warden event timeline

DShield event timeline

Presence on blacklists

OTX pulses