IPDebrief

178.214.77.71

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

IP Intelligence Briefing: 178.214.77.71

Date: 2026-06-11

---

**1. Core Profile**

- ASN: AS51336

- Organization: Hassan Saada (GEMZO)

- Registrar: RIPE NCC

- Geolocation: Marseille, France (latitude 32, longitude 35.25)

- No direct malicious activity detected.

- DNSBL listings (3/8) suggest potential abuse, but no confirmed spam/campaigns.

- Firewalled / No Services

- No open ports, no TLS/HTTP services, no banners.

- BGP prefix: 178.214.64.0/20 (GEMZO)

---

**2. Observation History**

- Recent (2026-06-11) geolocation data flagged the IP as in Palestine (PS) with high pulse counts (39) and threat indicators.

- Conflicting geolocation records (France vs. Palestine) may indicate misconfigured DNS or spoofing.

- DNSSEC validation is active, but 3/8 DNSBL lists flag the IP.

- No persistent malicious behavior detected over 30 days.

---

**3. Relationships**

- Linked to `ns8.gemzo.net` (same network, GEMZO).

- Part of GEMZO network (AS51336).

- No ties to Tor, CDN, or cloud infrastructure.

---

**4. Neighborhood Analysis**

- 178.214.77.7: Risk Score 0 (low risk).

- Subnet abuse density: 0% (no suspicious activity in immediate vicinity).

---

**5. Recommendations**

Next Steps: Correlate with internal logs for signs of DNS hijacking or geo-redirect attempts.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ซ๐Ÿ‡ท France
Regionโ€”
CityMarseille
TimezoneEurope/Paris
Latitude31.92
Longitude35.20

๐Ÿข Ownership & Registration

Organizationhassan saada
ASNAS51336
Network NameGEMZO
CIDR Block178.214.64.0/19
RIRRIPE
CountryPS
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTRns8.gemzo.net
Forward ConfirmedYes โ€” FCrDNS verified
Forward Hostnamesns8.gemzo.net

๐Ÿ” DNS Hygiene

Hygiene Score80% (Excellent)
SPFPresent
DMARCPresent
FCrDNSVerified
DNSSECValid
CAANot configured

โ˜๏ธ Network Classification

InfrastructureUnknown
Service PurposeFirewalled / No Services
Network TierTier 3 โ€” Basic operator with some routing infrastructure
No specific classification

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Serverโ€”
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
No certificate
Issued by โ€”
N/A
SANsNone
Valid Fromโ€”
Valid Untilโ€”

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
13%
11
routing
13%
11
services
13%
11
ownership
27%
23
reputation
0%
00
geolocation
19%
12
Overall14%68
Coverage: 5/6 dimensions ยท Data sufficiency: partial
Data CoherenceMostly Consistent (80%) โ€” 1 contradiction(s)
AttributionModerate (55%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid
โš  Geo sources disagree on country: PS, FR

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-05-27 13:17:00 UTC
Last Seen2026-06-19 11:33:35 UTC
Profile Built2026-06-11 10:06:42 UTC
Data FreshnessLive
Signal Types22
Total Observations22
๐Ÿ” 22 signal types ยท 22 observations collected
This report is generated from 22+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.