IP Intelligence Briefing: 185.15.169.46/32
*Generated via IPDebrief Analysis*
---
**1. Core Profile**
- Risk Score: 80 (High Risk)
- Ownership:
- ASN: 57558 (DONATO CONTE / METIS-V4-USER)
- Country: Italy (IT)
- Region: Basilicate, City: Tito
- Network Role: Firewalled / No Services
- Threat Indicators: No direct malicious activity detected.
- DNS:
- PTR Hostname: `host046-169-015-185.retemetis.net`
- No email authentication (SPF/DKIM) records.
- Control Plane:
- BGP Prefix: `185.15.168.0/22`
- DNSSEC Valid: Yes
- DNSBL Listings: 4/8 total lists (moderate risk).
---
**2. Observation History**
- Recent Activity (Last 30 Days):
- 15 observations, including:
- High-severity threat (2 listings, likely DNS-based).
- ASN registration details (METIS-V4-USER).
- Geolocation inference (Italy, confidence: 52%).
- DNSSEC and TLS certificate checks (low score, 0.3).
- Trend: No persistent malicious behavior detected.
---
**3. Network Relationships**
- Key Associations:
- DNS: Linked to `host046-169-015-185.retemetis.net` (repeated).
- Subnet: Part of `METIS-V4-USER` (185.15.169.0/24).
- Neighbors: 36 IPs in subnet (6 high-risk, 25 medium, 5 low).
---
**4. Subnet Neighborhood**
- Abuse Density: 16.7% (moderate risk).
- High-Risk Neighbors:
- 185.15.169.16 (80 risk score)
- 185.15.169.97 (80 risk score)
- 185.15.169.216 (80 risk score)
- Low-Risk Neighbors:
- 185.15.169.81 (0 risk score)
- 185.15.169.122 (55 risk score)
---
**5. Recommendations**
- Monitor Subnet: High-risk neighbors (e.g., 185.15.169.16) warrant closer scrutiny.
- DNSSEC Validation: Confirm DNSSEC configuration for `retemetis.net` to mitigate spoofing risks.
- Network Segmentation: Isolate high-risk subnets to limit lateral movement.
- Threat Feeds: Cross-reference with DNSBLs for potential abuse (4/8 listings).
Note: No direct malicious activity detected, but the subnetโs abuse density and DNSSEC anomalies suggest potential misconfigurations or shared infrastructure risks.
---
*End of Briefing*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | DONATO CONTE |
| ASN | AS57558 |
| Network Name | METIS-V4-USER |
| CIDR Block | 185.15.169.0/24 |
| RIR | RIPE |
| Country | IT |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | host046-169-015-185.retemetis.net |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | host046-169-015-185.retemetis.net |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Web Server |
| Network Tier | Tier 3 โ Basic operator with some routing infrastructure |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | โ |
| 443 | https | tcp | โ |
| Closed Ports | 22, 25, 3389, 8080, 8443 (2 open / 7 scanned) | ||
| Server | lighttpd/1.4.39 |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 13% | 1 | 1 |
| routing | 13% | 1 | 1 |
| services | 13% | 1 | 1 |
| ownership | 30% | 2 | 3 |
| reputation | 0% | 0 | 0 |
| geolocation | 13% | 1 | 1 |
| Overall | 14% | 6 | 7 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-22 09:12:06 UTC |
| Last Seen | 2026-06-09 20:01:45 UTC |
| Profile Built | 2026-06-09 20:22:01 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 20 |
Full dossier details are available via our API.