IP Intelligence Briefing: 173.239.214.185/32
*Generated via IPDebrief tools: Profile, History, Relationships, Neighbors*
---
**1. Core Profile**
- Risk Score: 25 (Low Risk)
- Provider: Private Customer (ASN 62240, ARIN-registered)
- Geolocation: United States (NJ), inferred with 0.35 confidence.
- Threat Status: No malicious indicators, no spam, no Tor exit node.
- Network Role: Firewalled / No Services (no open ports, no TLS/HTTP services).
- Ownership: Subnet "LOGICWEB" (173.239.214.0/24) under private entity.
---
**2. Observation History**
- Last 30 Days: 13 observations, with geolocation and control plane data.
- Key Trends:
- Stable geolocation in the US (NJ) with moderate accuracy (2500 km).
- Control plane shows "Minimal" operator risk (0.13 score).
- No significant changes in threat or network behavior.
---
**3. Relationships**
- Linked Entities:
- Same network: "LOGICWEB" (173.239.214.0/24).
- No DNS, services, or certificate relationships.
- Threat Correlation: No known campaigns or malicious activity tied to this IP.
---
**4. Neighborhood Analysis**
- Subnet: 173.239.214.0/24 (45 total IPs, 5 active).
- Risk Distribution:
- 16 IPs with medium risk (25β40), 28 low risk.
- 20 IPs in subnet flagged as "threat siblings" (higher risk).
- Abuse Density: 0.4444 (moderate risk in subnet).
---
**5. Recommendations**
- Monitor Subnet: Due to mixed risk in the 173.239.214.0/24 subnet, watch for unusual traffic patterns.
- No Immediate Actions: No firewall rules or security actions recommended for this IP.
- Verify Neighbors: Investigate higher-risk neighbors (e.g., 173.239.214.6, 173.239.214.8) for potential lateral movement.
---
Conclusion: 173.239.214.185 is a low-risk IP with no direct malicious activity. However, its subnet contains mixed risk, warranting closer scrutiny. No immediate defensive actions required, but ongoing monitoring is advised.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Private Customer |
| ASN | AS62240 |
| Network Name | LOGICWEB |
| CIDR Block | 173.239.214.0/24 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | β |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown β Insufficient routing data to classify |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 32% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 18% | 2 | 2 |
| ownership | 19% | 2 | 2 |
| reputation | 26% | 1 | 3 |
| geolocation | 32% | 2 | 3 |
| Overall | 23% | 10 | 15 |
| Data Coherence | Mostly Consistent (80%) β 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-07 23:03:55 UTC |
| Last Seen | 2026-06-22 21:25:44 UTC |
| Profile Built | 2026-06-22 21:28:29 UTC |
| Data Freshness | Live |
| Signal Types | 18 |
| Total Observations | 19 |
Full dossier details are available via our API.