IPDebrief

185.190.142.132

IP Intelligence Dossier
Your IP: 216.73.216.5
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# INTELLIGENCE BRIEFING: 185.190.142.132/32

Classification: LOW RISK

Date: 2026-07-29

Analyst: IPDebrief Intelligence Division

---

## EXECUTIVE SUMMARY

IP address 185.190.142.132 presents a low-risk profile with a risk score of 25/100. The address is associated with Contabo hosting infrastructure and shows no active threat indicators. No malicious campaigns, known attacker associations, or spam source designations were detected. No immediate action is recommended based on current intelligence.

---

## OWNERSHIP & REGISTRATION

FieldValue
**ASN**51167
**Organization**Johannes Selg
**NetName**TT-2021101302
**RIR**Ripe
**CIDR Block**185.190.142.0/23
**Abuse Contact**abuse@contabo.de
**Registration Date**N/A

The IP is registered under the Contabo brand, a German cloud computing provider. Ownership shows stability with zero recorded ownership changes.

---

## GEOLOCATION DATA

FieldValue
**Country**Germany (DE)
**City**Los Angeles
**Region**CA
**Coordinates**51.17, 10.45
**Timezone**Europe/Berlin
**Accuracy Radius**400 km
**Geo Consensus**True

*Note: Geolocation indicates Los Angeles, but network registration data suggests Munich, Germany. GeoValidation score shows geoPlausible: false with distance calculations pending.*

---

## NETWORK CLASSIFICATION

IndicatorStatus
**Infrastructure Type**Cloud Compute
**Provider**Contabo
**Is Cloud**Yes
**Is CDN**No
**Is VPN**No
**Is Proxy**No
**Is Tor**No
**Is Hosting**Yes
**Is Mobile**No
**Is Residential**No
**Is Bogon**No
**Open Ports**None detected
**Service Purpose**Firewalled / No Services

---

## THREAT INDICATORS

IndicatorValue
**Risk Score**25
**Abuse Confidence**N/A
**Tor Exit Node**No
**Known Attacker**No
**Spam Source**No
**Blacklist Count**0
**Pulsedive Risk**N/A
**Known Campaigns**None
**Threat Feeds**None

No active threat indicators detected. The IP is not associated with any known malicious campaigns or threat feeds.

---

## DNS ANALYSIS

FieldValue
**PTR Hostnames**vmi3385248.contaboserver.net
**Forward Resolution**vmi3385248.contaboserver.net
**Forward Confirmed**Yes
**Hosted Domains**None
**Email Auth**No SPF/DMARC
**TXT Record Count**0
**DNSBL Listed**1 of 8 lists

The IP resolves to a Contabo virtual machine identifier. DNS configuration shows no email authentication records. Listed on 1 of 8 DNSBL lists, though this appears to be false positive given the low-risk profile.

---

## SERVICE ANALYSIS

No open ports were detected during service scanning. The infrastructure is classified as "Firewalled / No Services," indicating either proper hardening or minimal service exposure. No TLS certificates, HTTP titles, or server banners were observed.

---

## OBSERVATION HISTORY

Total observations: 17

Recent Activity (July 29, 2026):

Temporal Analysis:

---

## NETWORK RELATIONSHIPS

DNS Associations:

Network Associations:

No additional relationships to organizations, certificates, or related entities were detected.

---

## NEIGHBORHOOD ANALYSIS

Subnet: 185.190.142.132/24

Abuse Density: 0

Classification: Low Risk

Total Siblings: 2

Neighbor IPRisk ScoreAuthority Score
185.190.142.152560
185.190.142.2022560

Both neighboring IPs maintain low-risk profiles. No high or medium-risk siblings detected in the immediate /24 subnet.

---

## CONTROL PLANE DATA

FieldValue
**Origin ASN**51167
**BGP Prefix**185.190.142.0/23
**Route Changes (30d)**0
**Route Stable**No
**isRouteStable**false
**isMoAS**No
**DNSSEC Valid**Yes
**hasCAA**No
**Operator Score**0.2609 (Basic)
**Delegation Age**N/A

---

## TRACEROUTE ANALYSIS

MetricValue
**Hop Count**12
**First Hop RTT**0.2 ms
**Last Hop RTT**118 ms
**Timed Out Hops**3
**Transit Networks**Comcast

---

## RECOMMENDED ACTIONS

Current Risk Score: 25 (Low Risk)

No specific security actions or firewall rules are recommended at this time. The IP presents minimal threat to defensive networks.

Monitoring Recommendations:

---

## CONCLUSION

IP 185.190.142.132 is a low-risk address associated with Contabo cloud infrastructure. No malicious activity, campaign associations, or threat indicators were detected. The IP operates as a standard

# INTELLIGENCE BRIEFING: 185.190.142.132/32

Classification: LOW RISK

Date: 2026-07-29

Analyst: IPDebrief Intelligence Division

---

## EXECUTIVE SUMMARY

IP address 185.190.142.132 presents a low-risk profile with a risk score of 25/100. The address is associated with Contabo hosting infrastructure and shows no active threat indicators. No malicious campaigns, known attacker associations, or spam source designations were detected. No immediate action is recommended based on current intelligence.

---

## OWNERSHIP & REGISTRATION

FieldValue
**ASN**51167
**Organization**Johannes Selg
**NetName**TT-2021101302
**RIR**Ripe
**CIDR Block**185.190.142.0/23
**Abuse Contact**abuse@contabo.de
**Registration Date**N/A

The IP is registered under the Contabo brand, a German cloud computing provider. Ownership shows stability with zero recorded ownership changes.

---

## GEOLOCATION DATA

FieldValue
**Country**Germany (DE)
**City**Los Angeles
**Region**CA
**Coordinates**51.17, 10.45
**Timezone**Europe/Berlin
**Accuracy Radius**400 km
**Geo Consensus**True

*Note: Geolocation indicates Los Angeles, but network registration data suggests Munich, Germany. GeoValidation score shows geoPlausible: false with distance calculations pending.*

---

## NETWORK CLASSIFICATION

IndicatorStatus
**Infrastructure Type**Cloud Compute
**Provider**Contabo
**Is Cloud**Yes
**Is CDN**No
**Is VPN**No
**Is Proxy**No
**Is Tor**No
**Is Hosting**Yes
**Is Mobile**No
**Is Residential**No
**Is Bogon**No
**Open Ports**None detected
**Service Purpose**Firewalled / No Services

---

## THREAT INDICATORS

IndicatorValue
**Risk Score**25
**Abuse Confidence**N/A
**Tor Exit Node**No
**Known Attacker**No
**Spam Source**No
**Blacklist Count**0
**Pulsedive Risk**N/A
**Known Campaigns**None
**Threat Feeds**None

No active threat indicators detected. The IP is not associated with any known malicious campaigns or threat feeds.

---

## DNS ANALYSIS

FieldValue
**PTR Hostnames**vmi3385248.contaboserver.net
**Forward Resolution**vmi3385248.contaboserver.net
**Forward Confirmed**Yes
**Hosted Domains**None
**Email Auth**No SPF/DMARC
**TXT Record Count**0
**DNSBL Listed**1 of 8 lists

The IP resolves to a Contabo virtual machine identifier. DNS configuration shows no email authentication records. Listed on 1 of 8 DNSBL lists, though this appears to be false positive given the low-risk profile.

---

## SERVICE ANALYSIS

No open ports were detected during service scanning. The infrastructure is classified as "Firewalled / No Services," indicating either proper hardening or minimal service exposure. No TLS certificates, HTTP titles, or server banners were observed.

---

## OBSERVATION HISTORY

Total observations: 17

Recent Activity (July 29, 2026):

Temporal Analysis:

---

## NETWORK RELATIONSHIPS

DNS Associations:

Network Associations:

No additional relationships to organizations, certificates, or related entities were detected.

---

## NEIGHBORHOOD ANALYSIS

Subnet: 185.190.142.132/24

Abuse Density: 0

Classification: Low Risk

Total Siblings: 2

Neighbor IPRisk ScoreAuthority Score
185.190.142.152560
185.190.142.2022560

Both neighboring IPs maintain low-risk profiles. No high or medium-risk siblings detected in the immediate /24 subnet.

---

## CONTROL PLANE DATA

FieldValue
**Origin ASN**51167
**BGP Prefix**185.190.142.0/23
**Route Changes (30d)**0
**Route Stable**No
**isRouteStable**false
**isMoAS**No
**DNSSEC Valid**Yes
**hasCAA**No
**Operator Score**0.2609 (Basic)
**Delegation Age**N/A

---

## TRACEROUTE ANALYSIS

MetricValue
**Hop Count**12
**First Hop RTT**0.2 ms
**Last Hop RTT**118 ms
**Timed Out Hops**3
**Transit Networks**Comcast

---

## RECOMMENDED ACTIONS

Current Risk Score: 25 (Low Risk)

No specific security actions or firewall rules are recommended at this time. The IP presents minimal threat to defensive networks.

Monitoring Recommendations:

---

## CONCLUSION

IP 185.190.142.132 is a low-risk address associated with Contabo cloud infrastructure. No malicious activity, campaign associations, or threat indicators were detected. The IP operates as a standard virtual machine endpoint with no observable exploit attempts, data exfiltration patterns, or command-and-control behavior.

Final Assessment:

End of Intelligence Briefing.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ฉ๐Ÿ‡ช Germany
RegionCA
CityLos Angeles
TimezoneEurope/Berlin
Latitude51.17
Longitude10.45

๐Ÿข Ownership & Registration

OrganizationJohannes Selg
ASNAS51167
Network NameTT-2021101302
CIDR Block185.190.142.0/23
RIRRIPE
CountryDE
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTRvmi3385248.contaboserver.net
Forward ConfirmedYes โ€” FCrDNS verified
Forward Hostnamesvmi3385248.contaboserver.net

๐Ÿ” DNS Hygiene

Hygiene Score40% (Fair)
SPFNot configured
DMARCNot configured
FCrDNSVerified
DNSSECValid
CAANot configured

โ˜๏ธ Network Classification

InfrastructureUnknown
Service PurposeFirewalled / No Services
Network TierTier 3 โ€” Basic operator with some routing infrastructure
No specific classification

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverโ€”
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
No certificate
Issued by โ€”
N/A
SANsNone
Valid Fromโ€”
Valid Untilโ€”

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
24%
22
routing
13%
11
services
19%
22
ownership
27%
23
reputation
17%
12
geolocation
24%
22
Overall21%1012
Coverage: 6/6 dimensions ยท Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (70%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-07-21 19:03:06 UTC
Last Seen2026-08-12 16:12:06 UTC
Profile Built2026-08-12 16:27:03 UTC
Data FreshnessLive
Signal Types23
Total Observations24
๐Ÿ” 23 signal types ยท 24 observations collected
This report is generated from 23+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.