IP Intelligence Briefing: 158.173.67.100
Date: 2026-06-17
---
**1. IP Profile**
- Risk Score: 25 (Low Risk)
- Ownership:
- ASN: 212238
- Organization: *VPN Consumer Brussels, Belgium*
- RIR: ARIN
- Geolocation:
- Country: Belgium (BE)
- City: Brussels
- Coordinates: 51.26°N, 4.85°E
- Accuracy Radius: 134 km
- Threat Indicators:
- No known malicious activity, spam, or attacker associations.
- Not listed in DNSBLs or threat feeds.
- Network Role:
- Firewalled / No Services
- BGP Prefix: 158.173.67.0/24
- DNSSEC Valid, no open ports.
---
**2. Observation History**
- Latest Observation: 2026-06-17 (Confidence: 0.30)
- Key Trends:
- Consistent "Minimal" risk rating across 19 observations.
- Geolocation data stable, with no recent changes.
- No spikes in threat signals or network anomalies.
- Subnet Abuse Density: 0.2 (mostly clean).
---
**3. Relationships**
- Linked Entities:
- Subnet: *BRUSSELS-BE-158-173-67-0* (14 relationships).
- No direct ties to hostnames, organizations, or certificates.
- Network Classification:
- Subnet classified as "mostly_clean" with 80 total IPs.
---
**4. Neighborhood Analysis**
- Subnet: 158.173.67.0/24
- Neighbor Risk:
- 80 total IPs, 49 active.
- 16 threat siblings (20% of subnet).
- Risk Distribution:
- 80 IPs with risk scores of 25 (low risk).
- 16 IPs flagged as potential threats (higher authority scores).
- Abuse Density: 0.2 (low).
---
**5. Recommendations**
- Monitor Subnet: The 16 threat siblings in the subnet warrant closer scrutiny for potential lateral movement or coordinated activity.
- Verify DNSSEC: Confirm DNSSEC validity and check for DNS misconfigurations.
- Network Segmentation: Ensure firewalled subnets are isolated to prevent lateral spread.
- Baseline Activity: Establish baseline traffic patterns for the subnet to detect anomalies.
---
Summary: 158.173.67.100 is a low-risk IP owned by a Belgian VPN provider, with no direct malicious indicators. While the IP itself is clean, the subnet contains 16 potentially risky neighbors. SOC teams should monitor the subnet for emerging threats and verify network segmentation controls.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | VPN Consumer Brussels, Belgium |
| ASN | AS212238 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | ARIN |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 26% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 15% | 2 | 2 |
| ownership | 24% | 2 | 3 |
| reputation | 26% | 1 | 3 |
| geolocation | 21% | 2 | 2 |
| Overall | 21% | 10 | 15 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-07 23:03:49 UTC |
| Last Seen | 2026-06-22 18:40:46 UTC |
| Profile Built | 2026-06-22 18:48:12 UTC |
| Data Freshness | Live |
| Signal Types | 19 |
| Total Observations | 21 |
Full dossier details are available via our API.