IPDebrief

176.103.6.60

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IPDebrief Intelligence Briefing: 176.103.6.60/32

Classification: Moderate Risk

Date: 2026-06-25

Analyst: IPDebrief Intelligence Team

---

## Executive Summary

IP 176.103.6.60 is a Ukrainian residential address with a moderate risk score of 40. The address operates in a low-abuse-density subnet with minimal infrastructure footprint. Current threat indicators show two DNSBL listings and high-severity blacklist entries, though no active threat campaigns correlate with this IP.

---

## Network Identity & Ownership

The IP shows no evidence of hosting, proxy, CDN, or cloud infrastructure services.

---

## Threat Assessment

Risk Score: 40 (Moderate)

Threat Indicators:

Abuse Metrics:

The IP maintains a neutral threat posture with no correlation to active campaigns or attacker behavior patterns.

---

## Subnet Intelligence (176.103.6.60/24)

Neighborhood Profile:

Risk Distribution in Subnet:

The subnet demonstrates minimal abuse density. Two sibling addresses show elevated risk scores (70-80), but the target IP remains within the low-to-moderate risk envelope.

---

## Network Behavior & Services

Service Enumeration:

DNS Analysis:

Control Plane:

The IP exhibits no active service footprint, consistent with a firewalled or dormant address.

---

## Historical Observations (17 Total Signals)

Recent Activity:

Temporal Analysis:

The IP shows minimal threat persistence and no evidence of escalating risk over time.

---

## Relationship Graph

All 14 relationship entries indicate "Same Network" classification with target value "DIALOG-NET," confirming the IP belongs to the DIALOGNET infrastructure network.

---

## Recommended Security Actions

Current Status: No specific firewall rules recommended based on current risk profile.

Monitoring Recommendations:

---

## Conclusion

IP 176.103.6.60 represents a moderate-risk Ukrainian residential address operating within a low-abuse-density subnet. The address shows no active threat indicators, no service footprint, and no correlation with known malicious campaigns. The two DNSBL listings and high-severity blacklist entries warrant monitoring but do not indicate immediate threat. SOC analysts may classify this as low-priority for blocking but should maintain observation for service enumeration or threat activity emergence.

Action Priority: Monitor

Blocking Recommendation: Not Required at Present

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΊπŸ‡¦ Ukraine
RegionKharkivs’ka Oblast’
CityBalakliya
TimezoneEurope/Kyiv
Latitude49.46
Longitude36.87

🏒 Ownership & Registration

OrganizationDIALOGKOM-MNT
ASNAS56812
Network Nameβ€”
CIDR Block176.103.0.0/20
RIRRIPE
Countryβ€”
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR RecordNo PTR
Forward ConfirmedNo β€” PTR hostname does not resolve back to this IP (weak signal)

πŸ” DNS Hygiene

Hygiene Score20% (Poor)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureUnknown
Service PurposeWeb Server
Network TierUnknown β€” Insufficient routing data to classify
No specific classification

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
443httpstcpβ€”
Closed Ports22, 25, 80, 3389, 8080, 8443 (1 open / 7 scanned)
Serverβ€”
HTTP Titleβ€”

πŸ” TLS Certificate

πŸ”’
No certificate
Issued by β€”
N/A
SANsNone
Valid Fromβ€”
Valid Untilβ€”

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
33%
24
routing
13%
11
services
15%
22
ownership
27%
23
reputation
22%
13
geolocation
19%
22
Overall21%1015
Coverage: 6/6 dimensions Β· Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-05-10 04:11:36 UTC
Last Seen2026-06-25 22:32:22 UTC
Profile Built2026-06-25 23:08:24 UTC
Data FreshnessLive
Signal Types21
Total Observations21
πŸ” 21 signal types Β· 21 observations collected
This report is generated from 21+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.