IP address


.07069.40.207.89
Shodan(more info)
Passive DNS
Tags:
IP blacklists
Spamhaus SBL
69.40.207.89 was recently listed on the Spamhaus SBL blacklist, but currently it is not.

Description: The Spamhaus Block List ("SBL") Advisory is a database of IP addresses from which Spamhaus does not recommend the acceptance of electronic mail.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2026-09-26 03:10:50.811000
Was present on blacklist at: 2026-09-12 03:10, 2026-09-19 03:10, 2026-09-26 03:10
Spamhaus DROP
69.40.207.89 was recently listed on the Spamhaus DROP blacklist, but currently it is not.

Description: Spamhaus DROP (Don't Route Or Peer) list. Netblocks controlled by spammers or cyber criminals. The DROP lists are a tiny subset of the SBL, designed for use by firewalls and routing equipment to filter out the malicious traffic from these netblocks.
Type of feed: secondary (DNSBL) (feed detail page)

Last checked at: 2026-09-26 03:10:50.811000
Was present on blacklist at: 2026-09-12 03:10, 2026-09-19 03:10, 2026-09-26 03:10
AbuseIPDB
69.40.207.89 was recently listed on the AbuseIPDB blacklist, but currently it is not.

Description: AbuseIPDB is a project managed by Marathon Studios Inc.<br>Lists IPs performing a malicious activity (DDoS, spam, phishing...)
Type of feed: primary (feed detail page)

Last checked at: 2026-09-24 04:00:00.618000
Was present on blacklist at: 2026-09-16 04:00, 2026-09-18 04:00, 2026-09-22 04:00, 2026-09-24 04:00

Threat categories

TLRoleCategoryDetails
69 src scan port: many
25 src —

Warden events (496)
2026-09-24
ReconScanning (node.ce2b59): 19
2026-09-23
ReconScanning (node.ce2b59): 44
2026-09-22
ReconScanning (node.ce2b59): 45
2026-09-21
ReconScanning (node.ce2b59): 44
2026-09-20
ReconScanning (node.ce2b59): 46
2026-09-19
ReconScanning (node.ce2b59): 31
2026-09-18
ReconScanning (node.ce2b59): 30
2026-09-17
ReconScanning (node.ce2b59): 31
2026-09-16
ReconScanning (node.ce2b59): 30
2026-09-15
ReconScanning (node.ce2b59): 42
2026-09-14
ReconScanning (node.ce2b59): 61
2026-09-13
ReconScanning (node.ce2b59): 50
2026-09-12
ReconScanning (node.ce2b59): 23
DShield reports (IP summary, reports)
2026-09-13
Number of reports: 57
Distinct targets: 45
2026-09-14
Number of reports: 120
Distinct targets: 95
2026-09-15
Number of reports: 120
Distinct targets: 95
2026-09-16
Number of reports: 124
Distinct targets: 96
2026-09-17
Number of reports: 123
Distinct targets: 92
2026-09-18
Number of reports: 86
Distinct targets: 68
2026-09-19
Number of reports: 86
Distinct targets: 68
2026-09-20
Number of reports: 113
Distinct targets: 81
2026-09-21
Number of reports: 36
Distinct targets: 29
2026-09-22
Number of reports: 51
Distinct targets: 36
2026-09-23
Number of reports: 55
Distinct targets: 38
2026-09-24
Number of reports: 24
Distinct targets: 18
2026-09-25
Number of reports: 24
Distinct targets: 18
Origin AS
AS400992 - ZHOUYISAT-COMMUNICATIONS
BGP Prefix
69.40.207.0/24
geo
United States, Fremont
🕑 America/Los_Angeles
hostname
(null)
Address block ('inetnum' or 'NetRange' in whois database)
69.40.192.0 - 69.40.207.255
last_activity
2026-09-24 09:59:21
last_warden_event
2026-09-24 09:59:21
rep
0.07026339733710019
reserved_range
0
Shodan's InternetDB
Open ports: 22, 443, 2222
Tags: –
CPEs: cpe:/o:canonical:ubuntu_linux, cpe:/a:openbsd:openssh:8.9p1
ts_added
2026-09-12 03:10:48.950000
ts_last_update
2026-10-01 03:10:51.431000

Warden event timeline

DShield event timeline

Presence on blacklists