IPDebrief

135.136.181.10

IP Intelligence Dossier
Your IP: 216.73.216.5
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

## IP Intelligence Briefing: 135.136.181.10/32

Classification: Low Risk (Score: 25)

Date: Analysis based on latest available data

Executive Summary

Target 135.136.181.10 is a low-risk, single-service host IP with minimal threat indicators. The IP resolves to disarray.com, operates an SSH service (port 22), and maintains a clean neighborhood profile. No evidence of malicious activity or active abuse campaigns.

Key Indicators

Network Context

The IP resides in subnet 135.136.181.0/24 with a clean abuse density rating of 0.0. No neighboring IPs in the /24 show elevated risk scores. The subnet classification is "clean" with zero threat siblings observed.

Historical Trends

Analysis of 15 observations indicates stable, benign behavior:

Relationship Graph

Security Recommendations

1. Firewall/Network: No blocking required based on current risk profile. Standard SSH port monitoring advised.

2. Monitoring: Observe for unexpected port changes or service additions.

3. DNS: Forward resolution for disarray.com requires verification; monitor for DNS hijacking indicators.

4. Threat Intel: No active campaigns or known attacker associations identified.

Conclusion

IP 135.136.181.10 presents minimal threat to defensive operations. The low risk score (25), clean neighborhood profile, and absence of blacklisting beyond a single DNSBL entry indicate benign infrastructure. SOC analysts may treat with standard monitoring protocols and no immediate mitigation actions required.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ซ๐Ÿ‡ฎ Finland
Regionโ€”
Cityโ€”
TimezoneEurope/Helsinki
Latitudeโ€”
Longitudeโ€”

๐Ÿข Ownership & Registration

OrganizationFIRST-SERVER-MNT
ASNAS204339
Network NameFirst-Server-VL
CIDR Block135.136.181.0/24
RIRARIN
CountryFI
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTRdisarray.com
Forward ConfirmedNo โ€” PTR hostname does not resolve back to this IP (weak signal)
Forward Hostnamesdisarray.com

๐Ÿ” DNS Hygiene

Hygiene Score20% (Poor)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECValid
CAANot configured

โ˜๏ธ Network Classification

InfrastructureUnknown
Service PurposeSingle-Service Host
Network TierUnknown โ€” Insufficient routing data to classify
No specific classification

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
22sshtcp
Closed Ports25, 80, 443, 3389, 8080, 8443 (1 open / 7 scanned)
Serverโ€”
HTTP Titleโ€”
SSH VersionSSH-2.0-OpenSSH_9.6p1 Ubuntu-3ubuntu13

๐Ÿ” TLS Certificate

๐Ÿ”’
No certificate
Issued by โ€”
N/A
SANsNone
Valid Fromโ€”
Valid Untilโ€”

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
35%
22
routing
25%
11
services
25%
11
ownership
0%
00
reputation
25%
11
geolocation
25%
11
Overall22%66
Coverage: 5/6 dimensions ยท Data sufficiency: partial
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-07-27 21:53:53 UTC
Last Seen2026-08-01 01:41:30 UTC
Profile Built2026-07-30 14:09:06 UTC
Data FreshnessLive
Signal Types20
Total Observations20
๐Ÿ” 20 signal types ยท 20 observations collected
This report is generated from 20+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.