IOC Radar
IPMediumSignal 0/100

40.118.131.195

Location
United StatesUnited States
San Francisco, California
ASN
AS8075
Microsoft Azure Cloud (westus)
First Seen
Mar 9, 2025
Last Seen
Apr 9, 2026
Mar 9
First Seen
470d ago
Apr 9
Last Seen
75d ago
3
Reports
source reports
0%
Confidence
medium
Found in 3 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
0%
Signal Score
0 / 100
IDS Rule
No
Threat Context
Tags

Network Information

CountryUSUnited States
RegionSan Francisco, California
ASNAS8075
OrganizationMicrosoft Azure Cloud (westus)

Feed Intelligence Summary

3 reports0% confidence
3
Source reports
0%
Confidence score
Category tags
indicatornetworkresearched

Activity Timeline

1 total obs
Apr 9Apr 9

Threat Activity Heatmap

· Peak: 2026-04-09
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Intelligence SummaryAI Generated

This Indicator of Compromise (IOC) for the IP address 40.118.131.195 currently presents a very low risk to the organization. With a score of 0.0 and an explicit "Yes" whitelist status across multiple threat intelligence feeds, there is no evidence to suggest malicious intent or ongoing hostile activity associated with this IP. Its inclusion in threat intelligence feeds, while noted, is primarily due to its whitelisted status, indicating it has been reviewed and deemed benign. Therefore, its pres…

Threat ScoreLow Risk
0
SIGNAL
Signal Score
0%
Confidence
3
Reports
First seenMar 9, 2025
Last seenApr 9, 2026
GeolocationUS
CountryUnited States
LocationSan Francisco, California
ASNAS8075
OrgMicrosoft Azure Cloud (westus)
Coords37.7830, -122.4170

VirusTotal

Not checked

WHOIS

description
Observed on T-Pot within last 24h; sensors=p0f, suricata; threshold?1; private IPs excluded.

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 year ago · Last seen 2 months ago
Appeared in 3 threat reports