IPDebrief

185.15.169.38

IP Intelligence Dossier
Your IP: 216.73.217.131
{ } JSON 🔧 Full Actions API
🤖 Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP INTELLIGENCE BRIEFING: 185.15.169.38/32

Classification: Low Risk | Reputation Score: 30 (0-100) | Report Date: Current

---

## EXECUTIVE SUMMARY

IP 185.15.169.38 presents as a low-risk web hosting endpoint operated by DONATO CONTE within the METIS-V4-USER subnet (185.15.169.0/24). The IP hosts a lighttpd web server with standard HTTP/HTTPS and SSH services. No active threat indicators detected. Recommended monitoring level: Standard.

---

## OWNERSHIP & GEOLOCATION

---

## NETWORK SERVICES & INFRASTRUCTURE

Analysis: The Ubiquiti certificate suggests this endpoint may be a Ubiquiti networking device rather than traditional web hosting. SSH access enabled.

---

## THREAT INTELLIGENCE

---

## SUBNET CONTEXT (185.15.169.0/24)

---

## OBSERVATION HISTORY

---

## CONTROL PLANE

---

## SOC RECOMMENDATIONS

IMMEDIATE ACTIONS

INVESTIGATION TRIGGERS

Investigate this IP if:

---

Analyst Notes: The Ubiquiti certificate and single-host naming convention suggest this is likely a network device endpoint rather than traditional web hosting. SSH access is enabled, which is acceptable for management interfaces but warrants monitoring for unauthorized access attempts. Subnet abuse density is moderate; consider correlating with high-risk neighbors for potential coordinated activity.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

Country🇺🇸 United States
RegionCA
CitySan Jose
TimezoneAmerica/Los_Angeles
Latitude36.78
Longitude-119.42

🏢 Ownership & Registration

OrganizationDONATO CONTE
ASNAS57558
Network NameMETIS-V4-USER
CIDR Block185.15.169.0/24
RIRRIPE
CountryIT
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTRhost038-169-015-185.retemetis.net
Forward ConfirmedYes — FCrDNS verified
Forward Hostnameshost038-169-015-185.retemetis.net

🔐 DNS Hygiene

Hygiene Score40% (Fair)
SPFNot configured
DMARCNot configured
FCrDNSVerified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureUnknown
Service PurposeWeb Server
Network TierTier 3 — Basic operator with some routing infrastructure
No specific classification

🔌 Services & Open Ports

PortServiceProtocolBanner
80httptcp—
443httpstcp—
22sshtcpBanner detected
Closed Ports25, 3389, 8080, 8443 (3 open / 7 scanned)
ServerWeb server detected
HTTP Title—

🔐 TLS Certificate

A self-signed certificate was detected. This is common for development servers, internal services, or IoT devices.
⚠️
E=support@ubnt.com, CN=UBNT-60:22:32:D8:35:F5, OU=Technical Support, O=Ubiquiti Networks Inc., L=San Jose, S=CA, C=US
Issued by E=support@ubnt.com, CN=UBNT-60:22:32:D8:35:F5, OU=Technical Support, O=Ubiquiti Networks Inc., L=San Jose, S=CA, C=US
Self-signed: Yes
SANsUBNT-60:22:32:D8:35:F5
Valid From2019-01-01T00:00:00+00:00
Valid Until2038-01-01T00:00:00+00:00
TLS ProtocolTls13
Cipher SuiteTLS_AES_256_GCM_SHA384
Signature Algorithmsha256RSA
Validity Period6940 days

🛡️ Public Network Snapshot

Origin ASNAS57558
Network Prefix185.15.168.0/22
Route mappingFound
HSTSNot detected
CSPNot detected
HTTP/2Not detected

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
23%
24
routing
8%
11
services
31%
25
ownership
23%
24
reputation
20%
13
geolocation
25%
24
Overall22%1021
Coverage: 3/6 dimensions · Data sufficiency: partial
Data CoherenceConsistent (100%)
AttributionModerate (70%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

📅 Observation Timeline 🔄 Live

First Seen2026-07-14 21:58:28 UTC
Last Seen2026-09-03 02:23:56 UTC
Profile Built2026-09-03 15:16:46 UTC
Data FreshnessLive
Signal Types25
Total Observations37
🔍 25 signal types · 37 observations collected
This report is generated from 25+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API 🔧 Actions API 📧 Enterprise Access

❓ Frequently Asked Questions About 185.15.169.38

Who owns the IP address 185.15.169.38?

185.15.169.38 is registered to DONATO CONTE. The address falls within the 185.15.169.0/24 network block. Registration is held at RIPE.

Where is 185.15.169.38 located?

Geolocation data places 185.15.169.38 in San Jose, CA, United States. The local time zone is America/Los_Angeles. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.

Is 185.15.169.38 malicious or safe?

185.15.169.38 currently carries a low risk assessment, meaning no significant threat indicators have been observed. This assessment is generated from continuously collected signals and can change over time.

What is the hostname for 185.15.169.38?

The reverse DNS (PTR) record for 185.15.169.38 is host038-169-015-185.retemetis.net. This hostname is forward-confirmed, meaning it resolves back to the same address.

What ports are open on 185.15.169.38?

Responsive ports observed on 185.15.169.38 include 80, 443, 22. Port visibility reflects the most recent scan and may change as the host's configuration or firewall rules change.

🏘️ Related IP Addresses

Nearby addresses in 185.15.169.0/24

Browse related networks

ℹ️ About This Report

All data shown is publicly available network metadata — IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.