IP Intelligence Briefing: 173.249.24.216
*Generated via IPDebrief Analysis*
---
**1. Core Profile**
- Risk Assessment:
- Overall Risk Score: 25 (Low Risk)
- Threat Indicators: No malicious activity detected (no malware, phishing, or exploit campaigns).
- Network Classification: Cloud Compute (Contabo), firewalled with no exposed services.
- Geolocation: Germany (DE), Lauterbourg, 51.17°N, 10.45°E.
- Ownership:
- ISP/Provider: Contabo (AS51167).
- Organization: Johannes Selg, registered with ARIN.
- Subnet: 173.249.24.0/23 (part of 173.249.0.0/19).
- DNS & Services:
- PTR Hostname: `vmi3332476.contaboserver.net` (likely a virtual machine identifier).
- Open Ports: None detected.
- TLS/HTTP: No certificate or web server banner observed.
---
**2. Observation History**
- Recent Activity:
- Scanned on 2026-06-12 with no open ports or TLS services.
- DNS resolution confirmed for `contaboserver.net` (no email auth records).
- No persistent threats or ownership changes detected.
- Threat Trends:
- No abuse confidence scores or DNSBL listings.
- Subnet abuse density: 1/24 (low risk).
---
**3. Network Relationships**
- Connected Entities:
- DNS: Linked to `vmi3332476.contaboserver.net` (Contabo-hosted VM).
- Network: Same provider (Contabo) and subnet.
- No CDN/VPN/Proxy Associations: Indicates a direct cloud instance.
---
**4. Neighborhood Analysis**
- Subnet (173.249.24.0/24):
- Abuse Density: 0% (clean).
- Neighbors: No active or risky sibling IPs detected.
---
**5. Threat Summary**
- Current Status: Low-risk, non-malicious IP.
- Recommendations:
- Monitor for unexpected service exposure (e.g., open ports, TLS certificates).
- Verify DNS resolution for `contaboserver.net` to confirm legitimacy.
- No immediate action required, but maintain baseline monitoring.
Conclusion: This IP is a legitimate Contabo cloud instance with no signs of compromise. No further action is needed unless new activity emerges.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Johannes Selg |
| ASN | AS51167 |
| Network Name | CONTABO |
| CIDR Block | 173.249.0.0/19 |
| RIR | ARIN |
| Country | DE |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | vmi3332476.contaboserver.net |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | vmi3332476.contaboserver.net |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 โ Basic operator with some routing infrastructure |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 31% | 2 | 4 |
| routing | 32% | 2 | 3 |
| services | 19% | 2 | 2 |
| ownership | 32% | 3 | 4 |
| reputation | 26% | 1 | 3 |
| geolocation | 19% | 2 | 2 |
| Overall | 26% | 12 | 18 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-06-02 12:03:30 UTC |
| Last Seen | 2026-06-21 08:37:22 UTC |
| Profile Built | 2026-06-21 08:39:29 UTC |
| Data Freshness | Live |
| Signal Types | 26 |
| Total Observations | 27 |
Full dossier details are available via our API.