# INTELLIGENCE BRIEFING: 147.45.39.93/32
## EXECUTIVE SUMMARY
IP 147.45.39.93 presents as LOW RISK (score: 25/100) with no active threat indicators. The address belongs to DHOST (ASN 209207), a data hosting provider, and currently shows no malicious activity. Route stability concerns and geographic inconsistencies warrant monitoring but do not indicate immediate threat.
## OWNERSHIP & ATTRIBUTION
- Organization: DHOST
- Netname: DHOST_NET
- ASN: 209207
- CIDR Block: 147.45.39.0/24
- RIR: ARIN
- Abuse Contact: abuse@dhost.su (available via RDAP)
- Registration: Historical data indicates stable ownership with zero ownership changes observed
## GEOGRAPHIC ANALYSIS
- Primary Location: Russia (RU)
- Secondary Location: Germany (DE) - detected in historical observations
- Accuracy Radius: 5000km
- Status: Geographic inconsistencies detected across probes; geoPlausible flag set to false
- Assessment: Geographic reporting conflicts may indicate proxy usage or multi-region infrastructure
## THREAT ASSESSMENT
- Risk Score: 25/100
- Reputation: Low Risk
- Threat Indicators: None detected
- Blacklist Status: 0 current blacklists; 1 historical listing across 8 total DNSBLs
- Known Campaigns: None identified
- Attacker Classification: Not flagged as known attacker, Tor exit, spam source, or proxy
- Is Tor Exit: False
- Is Known Attacker: False
- Is Spammer: False
## NETWORK CHARACTERISTICS
- Service Status: Firewalled / No Services
- Open Ports: None detected
- DNS Records: No PTR hostnames; forward resolution count: 0
- Email Authentication: No SPF, DMARC, or TXT records configured
- Route Stability: False (route changes detected within 30-day window)
- RPKI/IRR: Inconsistent status; delegation age not available
## NEIGHBORHOOD ANALYSIS
- Subnet: 147.45.39.0/24
- Abuse Density: 0 (clean)
- Threat Siblings: 0
- Active Siblings: 0
- Total Siblings: 1
- Classification: Clean
- Inherited Risk: 0
- Assessment: No neighboring IPs identified with threat indicators; subnet demonstrates low abuse activity
## RELATIONSHIP GRAPH
- Same Network: DHOST_NET (multiple entries)
- External Links: None detected
- Hostnames/Certificates: No associated external entities
## OBSERVATION HISTORY
- Total Observations: 12
- Threat Persistence: 0 days
- Observation Count: 0
- Recent Signals:
- Ownership: Stable (0 changes)
- Classification: Clean
- Abuse Density: 0
- Geographic data shows country field changes (DE → RU)
## RECOMMENDATIONS
- Immediate Action: None required
- Monitoring Priority: Low
- Firewall Rules: Not recommended at this time (risk score below threshold)
- Continued Observation: Monitor geographic inconsistencies and route stability issues
- Assessment: IP exhibits characteristics of legitimate data hosting infrastructure with no active threat indicators
## SOC ACTION
This IP requires standard monitoring but does not warrant immediate blocking or escalation. The low risk score (25/100), clean neighborhood classification, and absence of threat indicators support continued observation. Geographic inconsistencies and route stability should be noted for periodic review.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | DHOST |
| ASN | AS209207 |
| Network Name | DHOST_NET |
| CIDR Block | 147.45.39.0/24 |
| RIR | ARIN |
| Country | DE |
| Abuse Contact | Available via RDAP |
🌐 DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No — PTR hostname does not resolve back to this IP (weak signal) |
🔐 DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
☁️ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown — Insufficient routing data to classify |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | — |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | None |
| Valid From | — |
| Valid Until | — |
🛡️ Public Network Snapshot
| Origin ASN | AS209207 |
| Network Prefix | 147.45.39.0/24 |
| Route mapping | Found |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 0% | 0 | 0 |
| reputation | 0% | 0 | 0 |
| geolocation | 25% | 1 | 1 |
| Overall | 16% | 4 | 4 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-07-08 19:10:41 UTC |
| Last Seen | 2026-08-30 12:58:24 UTC |
| Profile Built | 2026-08-29 07:16:55 UTC |
| Data Freshness | Live |
| Signal Types | 14 |
| Total Observations | 16 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 147.45.39.93
Who owns the IP address 147.45.39.93?
147.45.39.93 is registered to DHOST. The address falls within the 147.45.39.0/24 network block. Registration is held at ARIN.
Where is 147.45.39.93 located?
Geolocation data places 147.45.39.93 in Russia. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 147.45.39.93 malicious or safe?
147.45.39.93 currently carries a low risk assessment, meaning no significant threat indicators have been observed. This assessment is generated from continuously collected signals and can change over time.