IPDebrief

184.75.221.59

IP Intelligence Dossier
Your IP: 216.73.216.5
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP INTELLIGENCE BRIEFING

Target: 184.75.221.59/32

Date: Current Analysis

Risk Score: 15 (Low Risk)

Classification: Commercial Infrastructure / Low Threat

---

## EXECUTIVE SUMMARY

IP 184.75.221.59 is a low-risk commercial address registered to Amanah Tech Inc. (ASN 32489) within the 184.75.208.0/20 CIDR block. The address shows no active malicious indicators, no open services, and no recent threat activity. Geolocation signals contain minor inconsistencies that warrant monitoring but do not indicate operational compromise.

---

## OWNERSHIP AND INFRASTRUCTURE

---

## THREAT ASSESSMENT

Current Indicators

Threat Feeds

---

## GEOLOCATION VALIDATION

Geolocation signals show conflicting data requiring analyst review:

This geographic inconsistency should be investigated during threat hunting operations, particularly if traffic patterns suggest a different origin than reported.

---

## NETWORK NEIGHBORHOOD ANALYSIS

Subnet: 184.75.221.0/24

MetricValue
Total Siblings10
Abuse Density0%
High Risk0
Medium Risk2
Low Risk8

Notable Neighbor: 184.75.221.171 (Risk Score: 55)

---

## OBSERVATION HISTORY

Total Signals Observed: 15

Analysis Period: Recent monitoring window

Key Historical Findings:

---

## RELATIONSHIP MAPPING

Connected Entities: 2

---

## RECOMMENDED ACTIONS

Based on current risk profile (Score: 15), the following actions are recommended:

Monitoring

Firewall/Blocking

Intelligence

---

## CONCLUSION

IP 184.75.221.59 presents minimal threat to organizational security posture. The address is part of a low-abuse-density subnet with no active malicious indicators. The primary concern is the geolocation validation failure and conflicting country signals, which should be noted for incident correlation purposes. No immediate blocking or remediation actions are warranted.

Analyst Notes: Monitor for changes in geolocation signals or emergence of threat indicators. Investigate if this IP appears in incident logs despite low-risk classification.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡จ๐Ÿ‡ฆ Canada
RegionUS-MA
CityBoston
Timezoneโ€”
Latitudeโ€”
Longitudeโ€”

๐Ÿข Ownership & Registration

OrganizationAmanah Tech Inc.
ASNAS32489
Network NameAMS4-NTBLK2
CIDR Block184.75.208.0/20
RIRARIN
CountryCanada
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTR RecordNo PTR
Forward ConfirmedNo โ€” PTR hostname does not resolve back to this IP (weak signal)

๐Ÿ” DNS Hygiene

Hygiene Score20% (Poor)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECValid
CAANot configured

โ˜๏ธ Network Classification

InfrastructureUnknown
Service PurposeFirewalled / No Services
Network TierUnknown โ€” Insufficient routing data to classify
No specific classification

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverโ€”
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
No certificate
Issued by โ€”
N/A
SANsNone
Valid Fromโ€”
Valid Untilโ€”

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
25%
11
routing
25%
11
services
25%
11
ownership
0%
00
reputation
0%
00
geolocation
0%
00
Overall12%33
Coverage: 3/6 dimensions ยท Data sufficiency: partial
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-07-25 08:45:04 UTC
Last Seen2026-08-01 16:33:19 UTC
Profile Built2026-07-30 03:17:35 UTC
Data FreshnessLive
Signal Types18
Total Observations18
๐Ÿ” 18 signal types ยท 18 observations collected
This report is generated from 18+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.