IPDebrief

178.79.173.199

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

IP Intelligence Briefing: 178.79.173.199

Date: 2026-06-05

---

**1. Profile Summary**

- Open ports: 80 (HTTP), 443 (HTTPS), 22 (SSH)

- TLS Certificate: Issued to `api.mindup.co.za` (Let’s Encrypt), valid for HTTPS.

- Server Banner: `Apache/2.4.58 (Ubuntu)`

---

**2. Observation History**

- HTTP 401 Unauthorized responses detected.

- TLS 1.3 with cipher `TLS_AES_256_GCM_SHA384`.

- SSH banner: `SSH-2.0-OpenSSH_9.6p1`.

- No active scans or DNS anomalies.

---

**3. Relationships & Network Context**

- `178-79-173-199.ip.linodeusercontent.com` (Linode-managed hostname).

- Subnet `178.79.173.199/24` (abuse density: 0, classified as "mostly clean").

- Linked to Linode’s `LINODE-UK` network (cloud provider infrastructure).

---

**4. Neighborhood Analysis**

---

**5. Key Findings & Recommendations**

- Validate the TLS certificate’s validity and ensure it aligns with the server’s operational context.

- Monitor SSH and HTTP logs for unauthorized access attempts.

- Confirm Linode’s security practices for cloud instances.

Conclusion: This IP appears to be a legitimate cloud-hosted server with no immediate malicious activity. However, the mismatched TLS certificate and HTTP 401 responses warrant further investigation to rule out misconfigurations or potential attack vectors.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡¬πŸ‡§ United Kingdom
RegionENG
CityLondon
TimezoneEurope/London
Latitude51.51
Longitude-0.13

🏒 Ownership & Registration

OrganizationLinode Abuse Support
ASNAS63949
Network Nameβ€”
CIDR Block178.79.128.0/18
RIRRIPE
Countryβ€”
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR178-79-173-199.ip.linodeusercontent.com
Forward ConfirmedYes β€” FCrDNS verified
Forward Hostnames178-79-173-199.ip.linodeusercontent.com

πŸ” DNS Hygiene

Hygiene Score80% (Excellent)
SPFPresent
DMARCPresent
FCrDNSVerified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeWeb Server
Network TierHosting β€” Infrastructure provider without advanced routing
CloudHosting

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
80httptcpβ€”
443httpstcpβ€”
22sshtcp
Closed Ports25, 3389, 8080, 8443 (3 open / 7 scanned)
ServerApache/2.4.58 (Ubuntu)
HTTP Titleβ€”
SSH VersionSSH-2.0-OpenSSH_9.6p1 Ubuntu-3ubuntu13.5

πŸ” TLS Certificate

πŸ”’
CN=api.mindup.co.za
Issued by CN=E8, O=Let's Encrypt, C=US
Self-signed: No
SANsapi.mindup.co.zaapps.mindup.co.za
Valid From2026-04-24T21:28:00+00:00
Valid Until2026-07-23T21:27:59+00:00
TLS ProtocolTls13
Cipher SuiteTLS_AES_256_GCM_SHA384
Signature Algorithmsha384ECDSA
Validity Period89 days
Serial Number0691B3F51ED0CD2FF1C972C864A2552CFBF0
Thumbprint77431EF3F96263DF8C6B1A6CDF977BFEBA81DA50

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
25%
24
routing
35%
23
services
28%
23
ownership
28%
34
reputation
27%
13
geolocation
23%
22
Overall28%1219
Coverage: 6/6 dimensions Β· Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (70%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-05-10 04:11:38 UTC
Last Seen2026-06-27 16:59:00 UTC
Profile Built2026-06-28 17:03:57 UTC
Data FreshnessLive
Signal Types25
Total Observations31
πŸ” 25 signal types Β· 31 observations collected
This report is generated from 25+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.