# IPDEBRIEF INTELLIGENCE BRIEFING
Target: 172.233.164.234/32
Classification: Low Risk
Generated: Intelligence Summary Report
---
## EXECUTIVE SUMMARY
Target IP 172.233.164.234 is identified as a Linode cloud compute infrastructure address with a low-risk profile (Risk Score: 25). The IP shows no malicious indicators, no blacklist associations, and operates within a clean neighborhood subnet. No immediate defensive action required.
---
## NETWORK ATTRIBUTES
| Attribute | Value |
|---|---|
| **IP Address** | 172.233.164.234 |
| **ASN** | 63949 |
| **Organization** | Linode |
| **Network Range** | 172.232.0.0/13 |
| **Geolocation** | US, Florida, Miami |
| **Network Role** | CloudCompute Provider |
| **Infrastructure Type** | Cloud Hosting |
---
## THREAT ASSESSMENT
Risk Classification: Low Risk (Score: 25/100)
Key Indicators
- Blacklist Status: Not listed (0 blacklists)
- Abuse Confidence: None detected
- Campaign Association: No matches
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
Network Classification
- Services: Firewalled / No Services (ports: none)
- CDN: No
- VPN/Proxy: No
- Hosting: Yes (CloudCompute)
- Mobile/Residential: No
- Bogon: No
---
## OBSERVATION HISTORY
Signal history indicates consistent low-risk behavior over the observation period (20 recent observations):
- August 5, 2026: Subnet classification "clean" with 0 abuse density
- Operator Score: 0.1304 (Minimal)
- Campaign Likelihood: None
- Service Scans: No open ports detected
- Threat Persistence: No persistent malicious activity observed
Temporal analysis shows 0 ownership changes and no threat observation events. The IP maintains a stable, benign profile.
---
## NEIGHBORHOOD ANALYSIS
Subnet: 172.233.164.234/24
Abuse Density: 0 (Clean)
Classification: Clean
Total Siblings: 1 active sibling
Threat Siblings: 0
The /24 subnet shows no abuse concentration. Risk distribution across neighboring IPs is minimal to zero. No correlated malicious activity in the immediate network vicinity.
---
## RELATIONSHIP GRAPH
Seven relationships identified, all pointing to Linode network infrastructure:
- Same Network: LINODE (7 instances)
No additional relationships detected to hostnames, organizations, certificates, or external entities beyond the Linode network infrastructure.
---
## RECOMMENDED ACTIONS
Current Risk Level: Low Risk (25/100)
Recommended Actions:
- No specific firewall rules generated
- No blocking required at this time
- Monitor for any behavioral changes
- Continue standard threat intelligence monitoring
Note: This IP represents legitimate cloud infrastructure. Blocking may impact legitimate services. Monitor for any changes in behavior or threat indicators.
---
## TECHNICAL NOTES
- Control Plane: BGP prefix 172.233.160.0/19, origin ASN 63949
- DNSSEC: Valid
- DNSBL Listed: 1/8 total lists (minor listing)
- ICMP Validation: Blocked (unable to validate geolocation via ICMP)
- Traceroute: 30 hops, transit networks include Comcast
---
Status: No action required
Next Review: Monitor for behavioral changes or new threat indicators
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Linode |
| ASN | AS63949 |
| Network Name | LINODE |
| CIDR Block | 172.232.0.0/13 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | 172-233-164-234.ip.linodeusercontent.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | 172-233-164-234.ip.linodeusercontent.com |
π DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 30% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 19% | 2 | 2 |
| ownership | 27% | 2 | 3 |
| reputation | 17% | 1 | 2 |
| geolocation | 27% | 2 | 3 |
| Overall | 22% | 10 | 14 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-07-27 03:35:45 UTC |
| Last Seen | 2026-08-12 21:13:59 UTC |
| Profile Built | 2026-08-12 21:17:23 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 25 |
Full dossier details are available via our API.