IPDebrief

144.31.237.91

IP Intelligence Dossier
Your IP: 216.73.217.131
{ } JSON 🔧 Full Actions API
🤖 Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IPDEBRIEF INTELLIGENCE BRIEFING

Target: 144.31.237.91/32

Date: Analysis conducted

Classification: High Risk

---

## EXECUTIVE SUMMARY

The IP address 144.31.237.91 was classified as High Risk (70/100) during analysis. The address is registered to ETERNITY-NETWORK (ASN 212743) within the 144.31.237.0/24 block and demonstrated Tor exit node indicators. The IP maintains a firewalled posture with no open services observed.

---

## OWNERSHIP AND REGISTRATION

---

## GEOLOCATION

---

## THREAT PROFILE

---

## NETWORK CHARACTERISTICS

---

## TEMPORAL ANALYSIS

---

## SUBNET NEIGHBORHOOD (144.31.237.0/24)

---

## RELATIONSHIPS

---

## OBSERVATION HISTORY

Recent signals indicate:

---

## RECOMMENDED ACTIONS

Access Control

Action: Consider enhanced verification for anonymous traffic

Severity: Medium

Rationale: Tor exit indicators observed; traffic may bypass standard authentication mechanisms

Monitoring

Action: Increase logging verbosity and review recent activity from this IP

Severity: High

Rationale: Elevated risk score (70/100) warrants enhanced visibility

Firewall Implementation

---

## ANALYST NOTES

The IP address 144.31.237.91 is registered to ETERNITY-NETWORK but demonstrates Tor exit node behavior. Despite being geolocated to New York, US, some historical observations indicated NL (Netherlands). The subnet shows zero abuse density with no sibling threats. The firewalled state with no open services suggests the IP may serve as an anonymous relay rather than a hosting endpoint. Enhanced logging and monitoring are recommended due to the High Risk classification and Tor exit node characteristics.

---

END OF BRIEFING

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

Country🇳🇱 Netherlands
RegionLimburg
CityEygelshoven
TimezoneEurope/Amsterdam
Latitude52.13
Longitude5.29

🏢 Ownership & Registration

OrganizationAbuse contact role object
ASNAS212743
Network NameETERNITY-NETWORK
CIDR Block144.31.237.0/24
RIRARIN
CountryNL
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR RecordNo PTR
Forward ConfirmedNo — PTR hostname does not resolve back to this IP (weak signal)

🔐 DNS Hygiene

Hygiene Score20% (Poor)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureUnknown
Service PurposeWeb Server
Network TierUnknown — Insufficient routing data to classify
Tor

🔌 Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
ServerWeb server detected
HTTP Title—

🔐 TLS Certificate

🔒
No certificate
Issued by —
N/A
SANsNone
Valid From—
Valid Until—
TLS ProtocolTls13
Cipher SuiteTLS_AES_256_GCM_SHA384
Signature Algorithmsha256RSA
Validity Period89 days

🛡️ Public Network Snapshot

Origin ASNAS212743
Network Prefix144.31.237.0/24
Route mappingFound
HSTSNot detected
CSPNot detected
HTTP/2Enabled

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
33%
26
routing
8%
11
services
28%
24
ownership
23%
24
reputation
26%
15
geolocation
17%
23
Overall23%1023
Coverage: 6/6 dimensions · Data sufficiency: sufficient
Data CoherenceMostly Consistent (80%) — 1 contradiction(s)
AttributionLow (35%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid
⚠ Geo sources disagree on country: US, NL

📅 Observation Timeline 🔄 Live

First Seen2026-07-12 02:15:15 UTC
Last Seen2026-09-04 13:03:19 UTC
Profile Built2026-09-04 13:09:45 UTC
Data FreshnessLive
Signal Types22
Total Observations34
🔍 22 signal types · 34 observations collected
This report is generated from 22+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API 🔧 Actions API 📧 Enterprise Access

❓ Frequently Asked Questions About 144.31.237.91

Who owns the IP address 144.31.237.91?

144.31.237.91 is registered to Abuse contact role object. The address falls within the 144.31.237.0/24 network block. Registration is held at ARIN.

Where is 144.31.237.91 located?

Geolocation data places 144.31.237.91 in Eygelshoven, Limburg, Netherlands. The local time zone is Europe/Amsterdam. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.

Is 144.31.237.91 malicious or safe?

144.31.237.91 currently carries a moderate risk assessment, meaning some indicators warrant caution, but the evidence is mixed. This assessment is generated from continuously collected signals and can change over time.

Is 144.31.237.91 a VPN, proxy, or data center address?

144.31.237.91 is classified as the Tor network based on network ownership and behavioural analysis.

🏘️ Related IP Addresses

Nearby addresses in 144.31.237.0/24

Browse related networks

ℹ️ About This Report

All data shown is publicly available network metadata — IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.