Your IP: 216.73.216.123
๐ค Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.
IP Intelligence Briefing: 185.214.138.12
*Generated via IPDebrief Threat Intelligence Platform*
---
**1. Core Profile**
- Risk Score: Moderate (55/100)
- Ownership: Owned by Antonio Alcaraz (ASN 41368, ES-NEXTCOMUNICACIONES-IN).
- Geolocation: Spain (Andalusia, Los Gallardos), Latitude: 37.16, Longitude: -1.95.
- Threat Indicators: No direct malicious indicators (no blacklists, spam, or known attacker flags).
- Network Role: Unknown infrastructure type; no open ports or services detected.
- DNS: No SPF/DMArc records; DNSSEC valid.
---
**2. Observation History**
- 13 signals recorded over time, with mixed confidence levels (0.15โ0.85).
- Threat Signals: One observation flagged "has_threats" (value obscured).
- DNS Activity: BGP prefix 185.214.138.0/24 registered to TVALMANSA-ASN (Spotting Brands Technologies S.L.).
- DNSBL Listings: 3/8 DNSBL lists flagged.
---
**3. Network Relationships**
- Same Network: Linked to ES-NEXTCOMUNICACIONES-IN (ASN 41368).
- Neighbors:
- Subnet 185.214.138.0/24 contains 12 sibling IPs.
- High-risk neighbors: 4 IPs with risk scores โฅ80 (e.g., 185.214.138.24, 185.214.138.28).
- Abuse Density: 33% of subnet IPs flagged for abuse.
---
**4. Actionable Insights**
- Monitor Subnet: High-risk neighbors (e.g., 185.214.138.24) may indicate compromised infrastructure.
- Verify Ownership: Cross-check Antonio Alcaraz and ES-NEXTCOMUNICACIONES-IN for legitimacy.
- DNS Security: Validate DNSSEC and investigate DNSBL listings for potential spoofing.
- Network Segmentation: Isolate high-risk neighbors to prevent lateral movement.
- Threat Correlation: Investigate the obscured "has_threats" signal for potential campaign ties.
---
Recommendation: Prioritize monitoring the 185.214.138.0/24 subnet and high-risk neighbors. Validate DNSSEC and investigate DNSBL listings for spoofing risks. Use firewall rules to block high-risk IPs if they are not critical.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Antonio Alcaraz |
| ASN | AS41368 |
| Network Name | ES-NEXTCOMUNICACIONES-IN |
| CIDR Block | 185.214.138.0/23 |
| RIR | RIPE |
| Country | ES |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
No certificate
Issued by โ
N/A
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 13% | 1 | 1 |
| routing | 13% | 1 | 1 |
| services | 13% | 1 | 1 |
| ownership | 35% | 2 | 3 |
| reputation | 0% | 0 | 0 |
| geolocation | 13% | 1 | 1 |
| Overall | 15% | 6 | 7 |
Coverage: 5/6 dimensions ยท Data sufficiency: partial
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Fresh
| First Seen | 2026-05-18 21:27:41 UTC |
| Last Seen | 2026-06-19 23:43:44 UTC |
| Profile Built | 2026-06-18 15:44:19 UTC |
| Data Freshness | Fresh |
| Signal Types | 16 |
| Total Observations | 16 |
๐ 16 signal types ยท 16 observations collected
This report is generated from 16+ independent intelligence signals including
ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds,
behavioral fingerprinting, and more.
Full dossier details are available via our API.
Full dossier details are available via our API.
โน๏ธ About This Report
All data shown is publicly available network metadata โ IP addresses do not reliably identify individuals.
Assessments are probabilistic and should not be used as sole basis for access control decisions.
To report an issue or request data review, contact admin@ipdebrief.com.