IP Intelligence Briefing: 153.76.17.197
Date: 2026-06-10
---
**1. Core Profile**
- Risk Score: Moderate (50/100)
- Ownership:
- ASN: 3257 (GTT Communications Inc.)
- Organization: GOCODEIT-MNT
- Country: United States (VA, Ashburn)
- Geolocation:
- City: Ashburn, VA
- Coordinates: 39.02°N, -77.54°E
- Timezone: America/New_York
- Network Role: Unknown (no services, no CDN/VPN hosting)
---
**2. Threat & Behavior**
- Malicious Indicators: None detected (no abuse confidence scores, no blacklists, no campaigns).
- DNS Security: DNSSEC valid, no CAA records.
- BGP:
- Prefix: 153.76.16.0/21
- RPKI state: Not reported
- DNSBL Listings: 2 out of 8 lists (low-severity).
---
**3. Observation History (Last 30 Days)**
- Geolocation Inference:
- Confirmed as CA (Canada) via multi-signal inference (52% confidence).
- Network Changes:
- BGP prefix stable (153.76.16.0/21).
- DNS Activity:
- No resolved domains or email auth records.
- Traffic Patterns:
- No anomalies in TLS/HTTP scans or honeypot hits.
---
**4. Network Neighbors**
- Subnet: 153.76.17.0/24
- Neighbor IPs (3 total):
- 153.76.17.23 (50/100 risk)
- 153.76.17.139 (50/100 risk)
- 153.76.17.155 (50/100 risk)
- Abuse Density: 0% (no malicious neighbors).
---
**5. Relationships**
- Shared Network:
- Subnet: 153.76.16.0/21 (GOCODEIT-MNT, GTT Communications).
- No Known Connections: No linked hostnames, certificates, or organizations.
---
**6. Recommendations**
- Monitoring: Track DNSBL status and BGP route stability.
- Firewall: No immediate action required; no malicious indicators.
- Context: Located in a data center hub (Ashburn), likely non-malicious but monitor for unexpected behavior.
Note: No evidence of active threats. Maintain standard network hygiene practices.
---
*Generated via IPDebrief threat intelligence platform.*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | GOCODEIT-MNT |
| ASN | AS3257 |
| Network Name | CA-GOCODEIT-19910923 |
| CIDR Block | 153.76.0.0/19 |
| RIR | APNIC |
| Country | CA |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Single-Service Host |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 22 | ssh | tcp | |
| Closed Ports | 25, 80, 443, 3389, 8080, 8443 (1 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
| SSH Version | SSH-2.0-OpenSSH_9.6p1 Ubuntu-3ubuntu13.16 |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 13% | 1 | 1 |
| routing | 13% | 1 | 1 |
| services | 13% | 1 | 1 |
| ownership | 30% | 2 | 3 |
| reputation | 0% | 0 | 0 |
| geolocation | 13% | 1 | 1 |
| Overall | 14% | 6 | 7 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-23 06:21:14 UTC |
| Last Seen | 2026-06-10 05:13:59 UTC |
| Profile Built | 2026-06-10 05:38:06 UTC |
| Data Freshness | Live |
| Signal Types | 15 |
| Total Observations | 15 |
Full dossier details are available via our API.