IPDebrief

173.249.31.64

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP Intelligence Briefing: 173.249.31.64/32

Classification: Low Risk

Report Date: Current

Status: Active Monitoring

## Executive Summary

IP address 173.249.31.64 is a low-risk Contabo cloud hosting infrastructure endpoint located in Lauterbourg, Grand Est, Germany. The IP exhibits no malicious indicators, maintains a risk score of 25/100, and presents as a standard virtual machine instance with no active services. No immediate defensive action required.

## Technical Profile

AttributeValue
**IP Address**173.249.31.64/32
**Risk Score**25 (Low Risk)
**Provider**Contabo (ASN 51167)
**Organization**Johannes Selg
**Location**Lauterbourg, Grand Est, DE
**Infrastructure Type**CloudCompute / Hosting
**DNS Resolution**vmi433744.contaboserver.net
**Open Ports**None detected
**Service Status**Firewalled / No Services

## Threat Assessment

Malicious Activity Indicators:

Control Plane Data:

## Network Neighborhood Analysis

Subnet: 173.249.31.64/24

Neighbor IPs:

All neighboring IPs maintain low-risk profiles consistent with the primary subject.

## Observation History

Total Observations: 19 signals

Recent Activity: 2026-06-17 (most recent)

Threat Persistence: 0 days (no persistent malicious activity)

Ownership Changes: 0

Historical signal analysis indicates stable network characteristics with no escalation in risk profile. Signal types observed include operator scoring, routing analysis, service enumeration, ownership verification, reputation assessment, and geolocation confirmation.

## Entity Relationships

Detected Relationships: 40

No anomalous relationships detected between this IP and known threat actors, campaigns, or malicious infrastructure.

## Recommended Actions

Security Posture: Standard monitoring

Firewall Rules: None required (low risk)

Threat Blocking: Not recommended

The IP address demonstrates characteristics consistent with legitimate cloud hosting infrastructure. No immediate blocking or mitigation actions warranted based on current threat intelligence.

## Analyst Notes

This Contabo hosting IP represents typical cloud infrastructure behavior with no indicators of compromise. The absence of open ports, combined with low-risk scoring and clean threat feed associations, supports classification as benign network traffic. Continue routine monitoring but no escalation required.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ฉ๐Ÿ‡ช Germany
RegionBY
CityNuremberg
TimezoneEurope/Berlin
Latitude51.17
Longitude10.45

๐Ÿข Ownership & Registration

OrganizationJohannes Selg
ASNAS51167
Network Nameโ€”
CIDR Block173.249.30.0/23
RIRARIN
Countryโ€”
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTRvmi433744.contaboserver.net
Forward ConfirmedYes โ€” FCrDNS verified
Forward Hostnamesvmi433744.contaboserver.net

๐Ÿ” DNS Hygiene

Hygiene Score40% (Fair)
SPFNot configured
DMARCNot configured
FCrDNSVerified
DNSSECValid
CAANot configured

โ˜๏ธ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeWeb Server
Network TierHosting โ€” Infrastructure provider without advanced routing
CloudHosting

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
80httptcpโ€”
443httpstcpโ€”
22sshtcp
Closed Ports25, 3389, 8080, 8443 (3 open / 7 scanned)
ServerCouchDB/3.5.0 (Erlang OTP/26)
HTTP Titleโ€”
SSH VersionSSH-2.0-OpenSSH_8.2p1 Ubuntu-4ubuntu0.13

๐Ÿ” TLS Certificate

๐Ÿ”’
CN=db.fumagaskiya.com
Issued by CN=YR1, O=Let's Encrypt, C=US
Self-signed: No
SANsdb.fumagaskiya.com
Valid From2026-06-05T19:47:21+00:00
Valid Until2026-09-03T19:47:20+00:00
TLS ProtocolTls13
Cipher SuiteTLS_AES_256_GCM_SHA384
Signature Algorithmsha256RSA
Validity Period89 days
Serial Number06E37FA3F892D3A87700BCA3E7E82BBF69EF
Thumbprint642CFAA7FFA4BDAA60DB82CBBD8D4884BDF3C6CC

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
25%
23
routing
32%
23
services
35%
23
ownership
26%
34
reputation
27%
13
geolocation
30%
23
Overall29%1219
Coverage: 6/6 dimensions ยท Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (70%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-05-07 23:03:55 UTC
Last Seen2026-06-27 02:14:50 UTC
Profile Built2026-06-28 02:21:32 UTC
Data FreshnessLive
Signal Types26
Total Observations34
๐Ÿ” 26 signal types ยท 34 observations collected
This report is generated from 26+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.