IP Intelligence Briefing: 185.193.212.133
*Generated from IPDebrief analysis tools*
---
**1. Risk Profile**
- Risk Score: 0 (Low Risk)
- Provider Score: 0
- Authority Score: 0
- Stability Score: 0
- Threat Indicators: No malicious activity detected (no known campaigns, spam, or abuse).
- Network Role: Firewalled with no open services or TLS/HTTP activity.
---
**2. Ownership & Geolocation**
- ISP: Rahanet ISP (AF)
- Geolocation:
- Country: US
- City: New York
- Latitude/Longitude: Unavailable (null values)
- Timezone: America/New_York
- Notes: ISP registration appears inconsistent with geolocation (Rahanet ISP is based in Afghanistan, but IP maps to the US).
---
**3. Threat Observations**
- History:
- No significant changes in risk signals over time.
- DNS resolution: No PTR records or domain associations.
- Threat Feeds: Not listed in any blacklists or threat intelligence sources.
---
**4. Network Relationships**
- Subnet: 185.193.212.0/24
- Neighbors:
- No neighboring IPs found in the subnet (likely a /24 with limited active hosts).
- Connections: No BGP routes or IRR records detected.
---
**5. Security Actions**
- Recommended Actions:
- No firewall rules or security actions required based on current risk profile.
- Verify geolocation discrepancies (ISP vs. IP location).
---
**6. Summary**
The IP 185.193.212.133 is associated with a low-risk ISP (Rahanet) and shows no signs of malicious activity. However, the geolocation data (US/New York) conflicts with the ISPβs registered location (Afghanistan). Further investigation into the ISPβs network configuration or IP allocation accuracy is recommended. No immediate action is needed, but monitor for unexpected DNS or network changes.
*Tools used: ipdebrief_profile, ipdebrief_history, ipdebrief_relationships, ipdebrief_neighbors, ipdebrief_actions.*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | IRT-RAHANET-ISP-AF |
| ASN | AS135376 |
| Network Name | RAHANET-ISP-AF |
| CIDR Block | 185.193.212.0/24 |
| RIR | RIPE |
| Country | AF |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown β Insufficient routing data to classify |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 0% | 0 | 0 |
| routing | 0% | 0 | 0 |
| services | 0% | 0 | 0 |
| ownership | 27% | 2 | 3 |
| reputation | 0% | 0 | 0 |
| geolocation | 13% | 1 | 1 |
| Overall | 6% | 3 | 4 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-06-03 06:16:04 UTC |
| Last Seen | 2026-06-12 19:48:54 UTC |
| Profile Built | 2026-06-12 19:53:50 UTC |
| Data Freshness | Live |
| Signal Types | 15 |
| Total Observations | 15 |
Full dossier details are available via our API.