# IP Intelligence Briefing: 176.97.192.83/32
Date: 2026-07-22
Risk Classification: Moderate Risk (Score: 40)
Status: Active monitoring required
## Executive Summary
IP address 176.97.192.83 is assigned to MELBICOM-MNT under RIPE NCC, registered to network block LT-MELBICOM-20211022. The IP shows moderate risk characteristics with 2 DNSBL listings out of 8 total blacklist sources. No open services were detected during probe, and the subnet exhibits minimal abuse density.
## Technical Profile
| Attribute | Value |
|---|---|
| ASN | 8849 |
| Organization | MELBICOM-MNT |
| Network | 176.97.192.0/24 |
| RIR | RIPE |
| Geolocation | Lagos, Nigeria (6.45°N, 3.39°E) |
| Timezone | Africa/Lagos |
| Network Role | Firewalled / No Services |
## Threat Indicators
- DNSBL Listings: 2/8 (Low-Moderate exposure)
- Known Attacker: No
- Spam Source: No
- Tor Exit Node: No
- Known Campaigns: None detected
- Threat Persistence: 0 days
- Abuse Confidence Score: Not assigned
## Network Context
Subnet Analysis (176.97.192.0/24):
- Abuse Density: 0.0 (Clean)
- Active Siblings: 0
- Threat Siblings: 0
- Classification: Clean
Relationship Graph:
- Primary association: LT-MELBICOM-20211022 (Same Network)
- No external entity relationships detected
## Observed Behavior
Services: No open ports detected; no TLS certificates, HTTP banners, or service fingerprints identified.
Historical Signals (10 observations):
- ASN and organization data consistently reported as MELBICOM-MNT
- Geolocation sources show minor discrepancies (Lagos vs. Vilnius)
- Operator score: 0.1304 (Minimal)
- DNSSEC validated: Yes
- Route stability: False (0 route changes in 30 days)
## Recommended Actions
Immediate:
- Monitor for service activation on previously closed ports
- Review DNSBL listing reasons for 2 blacklist entries
Firewall Rules (Risk Score 40):
```bash
# iptables
iptables -A INPUT -s 176.97.192.83 -j DROP
# nftables
nft add rule inet filter input ip saddr 176.97.192.83 drop
# pfSense
pass in on any from 176.97.192.83/32
```
## Intelligence Assessment
This IP exhibits characteristics of a residential or infrastructure endpoint with no active service exposure. The moderate risk score primarily derives from DNSBL presence rather than active threat behavior. The subnet environment remains clean with no correlated malicious activity. Continuous monitoring is advised pending any service activation or reputation degradation.
Confidence Level: Moderate
Data Sources: RIPE, DNSBL, Geolocation feeds, Control plane analysis
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | MELBICOM-MNT |
| ASN | AS8849 |
| Network Name | LT-MELBICOM-20211022 |
| CIDR Block | 176.97.192.0/24 |
| RIR | RIPE |
| Country | NG |
| Abuse Contact | Available via RDAP |
🌐 DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No — PTR hostname does not resolve back to this IP (weak signal) |
🔐 DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
☁️ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown — Insufficient routing data to classify |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | — |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | None |
| Valid From | — |
| Valid Until | — |
🛡️ Public Network Snapshot
| Origin ASN | AS8849 |
| Network Prefix | 176.97.192.0/24 |
| Route mapping | Found |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 35% | 2 | 2 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 0% | 0 | 0 |
| reputation | 25% | 1 | 1 |
| geolocation | 0% | 0 | 0 |
| Overall | 18% | 5 | 5 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-07-02 04:21:13 UTC |
| Last Seen | 2026-08-22 11:26:10 UTC |
| Profile Built | 2026-08-29 10:59:59 UTC |
| Data Freshness | Live |
| Signal Types | 13 |
| Total Observations | 14 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 176.97.192.83
Who owns the IP address 176.97.192.83?
176.97.192.83 is registered to MELBICOM-MNT. The address falls within the 176.97.192.0/24 network block. Registration is held at RIPE.
Where is 176.97.192.83 located?
Geolocation data places 176.97.192.83 in Lagos, Lagos, Nigeria. The local time zone is Africa/Lagos. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 176.97.192.83 malicious or safe?
176.97.192.83 currently carries a moderate risk assessment, meaning some indicators warrant caution, but the evidence is mixed. This assessment is generated from continuously collected signals and can change over time.