IPDebrief

172.232.221.148

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP Intelligence Briefing: 172.232.221.148/32

Classification: CLEAN / LOW RISK

Generated: Current Analysis Cycle

---

## Executive Summary

IP 172.232.221.148 is a Linode cloud infrastructure endpoint with no detected malicious indicators. The address demonstrates a clean threat profile across all observed metrics. No firewall blocking or security actions are recommended at this time.

---

## Infrastructure Profile

AttributeValue
**IP Address**172.232.221.148/32
**ASN**63949
**Organization**LINODE
**Network**172.232.0.0/13
**Country**IT (Italy)
**Region**Lombardy
**Infrastructure Type**CloudCompute
**Cloud Provider**Linode

Risk Scores:

---

## Network Role & Services

The IP is configured with no accessible services, indicating it is either a management endpoint or properly firewalled cloud infrastructure.

---

## DNS Intelligence

AttributeValue
**PTR Hostname**172.232.221.148.socradar-curiosity-wide-scan-project.socradar.com
**Forward Resolution**172.232.221.148.socradar-curiosity-wide-scan-project.socradar.com
**Domain**socradar.com
**SPF Record**Present
**DMARC Record**Present
**Forward Resolution Count**1

The DNS records indicate association with the Socradar scanning project infrastructure, suggesting this IP is part of a legitimate scanning or monitoring operation.

---

## Threat Indicators

IndicatorStatus
**Known Attacker**No
**Spam Source**No
**Tor Exit Node**No
**Proxy/VPN**No
**Blacklist Count**0
**Threat Feeds**None detected
**Campaign Likelihood**Not detected

DNSBL Listing: 0 entries across 8 total DNSBL lists checked

---

## Neighborhood Analysis (172.232.221.0/24)

MetricValue
**Subnet Classification**Clean
**Abuse Density**0
**Total Siblings**1
**Active Siblings**0
**Threat Siblings**0
**High Risk IPs**0
**Medium Risk IPs**0
**Low Risk IPs**0

The /24 subnet demonstrates no abuse indicators or malicious activity.

---

## Historical Observations

Total Observations: 19

Key Historical Findings:

Recent observations (June 2026 timeframe) indicate consistent, stable infrastructure classification with no degradation in security posture. The IP has maintained a clean classification throughout the observation period.

---

## Related Entities

DNS Associations:

Network Relationships:

No external threat relationships or malicious entity associations detected.

---

## Recommended Actions

Security Actions: None Required

The IP address 172.232.221.148 demonstrates a clean threat profile with no malicious indicators, blacklist entries, or suspicious activity patterns. No blocking rules or security measures are recommended.

---

Analysis Status: Complete

Confidence Level: High (based on comprehensive data collection across profile, history, relationships, and neighborhood analysis)

Recommendation: Monitor as normal cloud infrastructure; no immediate threat action required.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ฎ๐Ÿ‡น Italy
RegionLombardy
CityPA
Timezoneโ€”
Latitudeโ€”
Longitudeโ€”

๐Ÿข Ownership & Registration

OrganizationLinode
ASNAS63949
Network NameLINODE
CIDR Block172.232.0.0/13
RIRARIN
CountryUnited States
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTR172.232.221.148.socradar-curiosity-wide-scan-project.socradar.com
Forward ConfirmedYes โ€” FCrDNS verified
Forward Hostnames172.232.221.148.socradar-curiosity-wide-scan-project.socradar.com

๐Ÿ” DNS Hygiene

Hygiene Score80% (Excellent)
SPFPresent
DMARCPresent
FCrDNSVerified
DNSSECValid
CAANot configured

โ˜๏ธ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeFirewalled / No Services
Network TierTier 3 โ€” Basic operator with some routing infrastructure
CloudHosting

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Serverโ€”
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
No certificate
Issued by โ€”
N/A
SANsNone
Valid Fromโ€”
Valid Untilโ€”

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
24%
22
routing
17%
11
services
17%
11
ownership
35%
23
reputation
17%
12
geolocation
17%
11
Overall21%810
Coverage: 6/6 dimensions ยท Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (70%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-06-11 03:00:33 UTC
Last Seen2026-06-21 18:19:02 UTC
Profile Built2026-06-21 18:21:51 UTC
Data FreshnessLive
Signal Types18
Total Observations19
๐Ÿ” 18 signal types ยท 19 observations collected
This report is generated from 18+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.