IP Intelligence Briefing: 185.238.231.29
*Generated via IPDebrief tools: profile, history, relationships, and neighbors analysis*
---
**1. Core Profile**
- Risk Score: 25 (Low Risk)
- Ownership: Registered to netutils-mnt (ASN 206092, RIPE) with netname IPXO. Abuse contact available via RDAP.
- Geolocation:
- Country: Spain (ES) | City: Mostoles
- Discrepancy: Conflicting country codes (ES vs. GB) in geolocation data.
- Network Role: Firewalled / No Services (no open ports, TLS/HTTP services, or banners detected).
- Threat Indicators: No malicious activity detected (no indicators, blacklists, or campaigns).
---
**2. Observation History**
- Recent Activity:
- Stable for 30 days with no persistent malicious behavior.
- DNSSEC validation confirmed, but 1 DNSBL listing (potential spam or abuse risk).
- Geolocation Consistency: Mixed results (some probes suggest Spain, others UK).
---
**3. Relationships**
- Connected Entities:
- Linked to IPXO (same network).
- No DNS, certificates, or hostnames associated.
- Network Classification: Infrastructure type unspecified; appears residential or enterprise.
---
**4. Neighborhood Analysis**
- Subnet: 185.238.231.0/24
- Abuse Density: 0% (low risk across siblings).
- Neighbor Risk: All 100 IPs in the subnet have identical risk scores (25/100), suggesting a homogeneous, low-risk network.
---
**5. Key Flags**
- DNSBL Listing: One DNSBL entry (potential spam or abuse risk).
- Geolocation Inconsistency: Mixed country codes may indicate misconfiguration or spoofing.
- No Active Threats: No malicious indicators, scans, or campaigns detected.
---
**6. Recommended Actions**
- Monitor: Track DNSBL status and geolocation consistency for anomalies.
- Investigate: Verify geolocation discrepancies and confirm DNSBL context (e.g., false positives).
- No Blocking: No immediate action required due to low risk profile.
Conclusion: 185.238.231.29 appears legitimate with no current threats. Focus on resolving geolocation inconsistencies and monitoring DNSBL status. No firewall rules or takedown actions recommended.
*Generated by IPDebrief | © 2026 Jason Alberino*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | netutils-mnt |
| ASN | AS206092 |
| Network Name | IPXO |
| CIDR Block | 185.238.230.0/23 |
| RIR | RIPE |
| Country | GB |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 0% | 0 | 0 |
| reputation | 0% | 0 | 0 |
| geolocation | 0% | 0 | 0 |
| Overall | 12% | 3 | 3 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-06-06 07:27:08 UTC |
| Last Seen | 2026-06-13 11:37:53 UTC |
| Profile Built | 2026-06-13 11:47:40 UTC |
| Data Freshness | Live |
| Signal Types | 15 |
| Total Observations | 15 |
Full dossier details are available via our API.