IPDebrief

147.93.157.83

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP INTELLIGENCE BRIEFING: 147.93.157.83/32

Date: 2026-06-23

IP Address: 147.93.157.83/32

Analysis Status: Complete

---

## EXECUTIVE SUMMARY

IP 147.93.157.83 presents a LOW RISK profile with a risk score of 25. The address operates as a web server infrastructure under ASN 141995 (Johannes Selg), hosting web services on ports 80 and 443. While individual risk is minimal, the /24 subnet (147.93.157.0/24) exhibits moderate abuse density (0.5) with two threat-sibling IPs identified. No active malicious campaigns or persistent threat indicators were observed.

---

## OWNERSHIP & NETWORK CLASSIFICATION

---

## TECHNICAL PROFILE

ComponentDetails
**Open Ports**TCP/80 (HTTP), TCP/443 (HTTPS)
**Server Software**Caddy
**DNS PTR Hostname**vmi3212337.contaboserver.net
**Forward Resolution**mail.neutize.com
**Email Authentication**SPF: Yes, DMARC: Yes
**TLS Certificate**Not resolved/available
**DNSBL Status**Listed on 1 of 8 total lists

---

## RISK ASSESSMENT

MetricValueAssessment
**Risk Score**25Low Risk
**Abuse Confidence**None reported-
**Known Attacker**No-
**Spam Source**No-
**Tor Exit Node**No-
**Threat Persistence**0 daysNo persistent malicious activity
**Campaign Correlation**NoneNo known campaign associations

---

## NEIGHBORHOOD ANALYSIS (147.93.157.0/24)

Neighbor Risk Distribution:

IP AddressRisk ScoreAuthority ScoreThreat Level
147.93.157.8325-Low
147.93.157.1822560Low
147.93.157.1944060Medium
147.93.157.252050Low

---

## OBSERVATION HISTORY

---

## RELATIONSHIP GRAPH

---

## RECOMMENDED ACTIONS

Current Risk Level: LOW

Recommended Action: MONITOR

No immediate firewall blocking or blocking actions recommended based on current risk profile. However, the following conditions warrant continued monitoring:

1. Subnet-Wide Monitoring: Two neighboring IPs in the /24 subnet show elevated risk (147.93.157.194 with score 40)

2. DNSBL Monitoring: IP is listed on 1 of 8 DNSBL listsβ€”verify reason for listing

3. Geolocation Verification: Coordinate discrepancy (Germany vs Singapore) should be validated

4. Threat Sibling Monitoring: Monitor 147.93.157.182 and 147.93.157.194 for potential coordinated activity

---

## ANALYST NOTES

This IP address represents standard web hosting infrastructure with no immediate malicious indicators. The low risk score (25) and clean classification support continued monitoring rather than blocking. The presence of threat siblings in the same /24 subnet suggests potential for coordinated activity; recommend periodic neighborhood re-assessment. No specific firewall rules generatedβ€”standard defensive posture appropriate for this risk level.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡©πŸ‡ͺ Germany
Regionβ€”
CitySingapore
TimezoneEurope/Berlin
Latitude51.17
Longitude10.45

🏒 Ownership & Registration

OrganizationJohannes Selg
ASNAS141995
Network Nameβ€”
CIDR Blockβ€”
RIRARIN
Countryβ€”
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTRvmi3212337.contaboserver.net
Forward ConfirmedYes β€” FCrDNS verified
Forward Hostnamesmail.neutize.com

πŸ” DNS Hygiene

Hygiene Score80% (Excellent)
SPFPresent
DMARCPresent
FCrDNSVerified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureUnknown
Service PurposeWeb Server
Network TierTier 3 β€” Basic operator with some routing infrastructure
No specific classification

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
80httptcpβ€”
443httpstcpβ€”
Closed Ports22, 25, 3389, 8080, 8443 (2 open / 7 scanned)
ServerCaddy
HTTP Titleβ€”

πŸ” TLS Certificate

πŸ”’
No certificate
Issued by β€”
N/A
SANsNone
Valid Fromβ€”
Valid Untilβ€”

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
26%
24
routing
13%
11
services
26%
24
ownership
24%
23
reputation
26%
13
geolocation
32%
23
Overall25%1018
Coverage: 6/6 dimensions Β· Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (70%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-05-07 23:03:44 UTC
Last Seen2026-06-22 16:33:52 UTC
Profile Built2026-06-22 16:40:45 UTC
Data FreshnessLive
Signal Types23
Total Observations25
πŸ” 23 signal types Β· 25 observations collected
This report is generated from 23+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.