# INTELLIGENCE BRIEFING: 178.156.112.144/32
Classification: Moderate Risk | Date: Current | Status: Active Monitoring
---
## EXECUTIVE SUMMARY
IP address 178.156.112.144 is classified as Moderate Risk (Score: 40). The address is assigned to FIBRANET (AS211261) under organization JOSE MIGUEL GARCIA, located in Torredonjimeno, Spain (RIPE RIR). No active services are detected, indicating firewall protection or minimal service deployment. The IP demonstrates routing instability but maintains DNSSEC validation.
---
## OWNERSHIP & ATTRIBUTION
| Field | Value |
|---|---|
| **ASN** | 211261 |
| **Organization** | FIBRANET - Fibranet Tecnologia y Sistemas SL |
| **Country** | ES (Spain) |
| **City** | Torredonjimeno |
| **CIDR Block** | 178.156.112.0/24 |
| **RIR** | RIPE |
Historical records show ASN reassignment activity, with observations of AS29119 (SERVIHOSTING) and AS211261 (FIBRANET) in recent traffic patterns.
---
## THREAT POSTURE
- Risk Score: 40 (Moderate)
- Abuse Confidence: Not assessed
- Blacklist Count: 0
- Known Campaigns: None
- Tor/Proxy/CDN: Not identified
- Known Attacker: No
The IP shows no direct threat indicators. No malicious campaigns, attacker signatures, or spam source characteristics detected.
---
## NETWORK ENVIRONMENT
- Subnet Abuse Density: 66.67% (0.6667)
- Classification: Mostly Clean
- Threat Siblings: 2 out of 3 total siblings
- Inherited Risk Score: 5
Neighbor IPs:
| IP | Risk Score | Authority Score |
|---|---|---|
| 178.156.112.137 | 40 | 50 |
| 178.156.112.201 | 40 | 50 |
Network context indicates elevated neighborhood activity despite the target IP's moderate risk classification.
---
## CONTROL PLANE & ROUTING
- BGP Prefix: 178.156.112.0/24
- Route Stability: Unstable
- DNSSEC Valid: Yes
- DNSBL Listed: 2 of 8 lists
- Operator Score: 0.1304 (Minimal)
- RPKI State: Not assessed
- IRR Consistency: Not assessed
---
## SERVICES & INFRASTRUCTURE
- Open Ports: None detected
- HTTP Title/Server Banner: None
- TLS Certificate: None
- DNS Records: No PTR hostnames, no forward resolution
- Email Auth: SPF/DMARC not configured (no hosted domains)
- Service Purpose: Firewalled / No Services
---
## OBSERVATION HISTORY
Total Observations: 22 signals recorded
Recent activity indicates:
- ASN changes between AS29119 and AS211261
- Consistent geolocation attribution to Spain (ES)
- Multiple routing and reputation signal sources (Cymru, AlienVault-OTX)
- Recent observations from June 2026 timeframe
---
## RELATIONSHIP GRAPH
25 relationships identified, all associated with FIBRANET-SANGONERA network. Strong network-level correlation confirms infrastructure consistency within the FIBRANET ecosystem.
---
## SOC RECOMMENDATIONS
Priority: Monitor | Action: Standard logging advised
1. Monitor the subnet 178.156.112.0/24 for coordinated activity given 66.67% abuse density
2. Log inbound/outbound traffic from this IP; no immediate blocking required
3. Correlate with neighbors 178.156.112.137 and 178.156.112.201 for threat intelligence patterns
4. Review routing stability flags if unexpected traffic patterns emerge
5. No immediate firewall rules recommended based on current risk profile
---
*Intelligence generated from IPDebrief analysis. All data sourced from automated observation and threat intelligence feeds.*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | JOSE MIGUEL GARCIA |
| ASN | AS29119 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | RIPE |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 26% | 2 | 4 |
| routing | 25% | 1 | 1 |
| services | 15% | 2 | 2 |
| ownership | 24% | 2 | 3 |
| reputation | 23% | 1 | 3 |
| geolocation | 21% | 2 | 2 |
| Overall | 22% | 10 | 15 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-07 23:03:57 UTC |
| Last Seen | 2026-06-22 22:31:35 UTC |
| Profile Built | 2026-06-22 22:40:35 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 25 |
Full dossier details are available via our API.