IP 169.58.247.137 was classified as a Moderate Risk asset with a Risk Score of 60. The address resolved to a Contabo cloud infrastructure environment (ASN 51167) within Germany, although geolocation sources showed disagreement. Behavioral analysis confirmed the host as an active attacker triggered a honeypot trap associated with credential-stuffing attempts. Technical scanning identified open ports 80 (HTTP) and 22 (SSH) running on nginx/1.24.0. DNS hygiene assessment was Poor due to absent SPF and DMARC records. Given the honeypot hit and active attacker classification, the asset was flagged for high-severity blocking.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
| threat | | 2 | 13 |
| routing | | 4 | 5 |
| services | | 2 | 3 |
| ownership | | 3 | 4 |
| reputation | | 1 | 9 |
| geolocation | | 2 | 3 |
| Overall | 45% | 14 | 37 |
Coverage: 4/6 dimensions ยท Data sufficiency: partial
| Data Coherence | Mostly Consistent (80%) โ 1 contradiction(s) |
| Attribution | High (85%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
โ Geo sources disagree on country: US, DE
๐ 33 signal types ยท 91 observations collected
This report is generated from 33+ independent intelligence signals including
ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds,
behavioral fingerprinting, and more.
Full dossier details are available via our API.