IPDebrief

185.200.116.219

IP Intelligence Dossier
Your IP: 216.73.216.5
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP Intelligence Briefing: 185.200.116.219/32

Date: Current Analysis

Classification: Low Risk / No Active Threat Indicators

---

## Executive Summary

IP address 185.200.116.219 is a low-risk infrastructure endpoint belonging to M247-LTD-Singapore (ASN 9009). The IP shows no active threat indicators, no open services, and is classified as clean within its /24 subnet. No immediate defensive action is required.

---

## Ownership and Geolocation

FieldValue
**ASN**9009
**Organization**GLOBALAXS-MNT (M247-LTD-Singapore)
**CIDR Block**185.200.116.0/24
**Country**Singapore (SG)
**RIR**RIPE
**Abuse Contact**abuse@m247.ro

---

## Risk Assessment

MetricValueAssessment
**Overall Risk Score**25Low Risk
**Provider Score**0N/A
**Authority Score**0N/A
**Blacklist Count**0Clean
**Known Attacker**NoNot flagged
**Tor Exit Node**NoFalse
**Spam Source**NoFalse
**Abuse Confidence**N/ANot scored

---

## Network Role and Services

No TLS certificates, HTTP banners, or service responses observed.

---

## DNS and Control Plane

ParameterValue
**Reverse DNS**219.116.200.185.in-addr.arpa
**Forward Resolution**Not confirmed
**Hosted Domains**None
**DNSBL Listings**1 of 8 lists
**Route Stability**False (route changes detected)
**DNSSEC**Valid
**Hop Count**12 hops

---

## Neighborhood Analysis (185.200.116.0/24)

MetricValue
**Abuse Density**0 (Clean)
**Total Siblings**4
**Active Siblings**2
**Threat Siblings**0
**Risk Distribution**0 High, 0 Medium, 3 Low

Known Neighbors:

---

## Historical Signals

Total Observations: 17 signals recorded

Recent Activity: 2026-07-29 (most recent)

Ownership Changes: 0

Threat Persistence Days: 0

Persistently Malicious: No

Observed signals include network role classification, DNS associations, provider information, and subnet classification. No escalation in threat posture detected.

---

## Relationships

---

## Recommended Actions

Current Status: No action required. The IP is classified as low risk with no active threat indicators.

Monitoring Recommendation: Continue passive monitoring. The subnet shows no abuse density, and the IP itself has no open services or blacklisting.

Firewall Rules: None recommended. Standard allow rules may be applied if legitimate traffic is expected.

---

## Intelligence Narrative

IP 185.200.116.219 is a passive infrastructure endpoint under M247-LTD-Singapore's management in Singapore. The address shows no evidence of malicious activity, with zero blacklist hits and no open ports or services. The /24 subnet maintains a clean profile with zero abuse density and no threat-adjacent siblings. Historical signals indicate stable ownership with no persistence indicators. The IP does not require defensive mitigation and may be considered benign for SOC monitoring purposes.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΈπŸ‡¬ Singapore
RegionSector
CitySingapore
TimezoneAsia/Singapore
Latitude1.29
Longitude103.85

🏒 Ownership & Registration

OrganizationGLOBALAXS-MNT
ASNAS9009
Network NameM247-LTD-Singapore
CIDR Block185.200.116.0/24
RIRRIPE
CountrySG
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR219.116.200.185.in-addr.arpa
Forward ConfirmedNo β€” PTR hostname does not resolve back to this IP (weak signal)
Forward Hostnames219.116.200.185.in-addr.arpa

πŸ” DNS Hygiene

Hygiene Score20% (Poor)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureUnknown
Service PurposeFirewalled / No Services
Network TierUnknown β€” Insufficient routing data to classify
No specific classification

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverβ€”
HTTP Titleβ€”

πŸ” TLS Certificate

πŸ”’
No certificate
Issued by β€”
N/A
SANsNone
Valid Fromβ€”
Valid Untilβ€”

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
25%
11
routing
25%
11
services
25%
11
ownership
0%
00
reputation
0%
00
geolocation
0%
00
Overall12%33
Coverage: 3/6 dimensions Β· Data sufficiency: partial
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-07-22 13:24:00 UTC
Last Seen2026-08-01 16:33:20 UTC
Profile Built2026-07-29 13:55:03 UTC
Data FreshnessLive
Signal Types19
Total Observations19
πŸ” 19 signal types Β· 19 observations collected
This report is generated from 19+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.