## IPDebrief Intelligence Briefing: 185.247.137.252/32
Subject: IP Address Analysis - 185.247.137.252/32
Date: 2023-10-26
Source Data: [List data sources used, e.g., Passive DNS, Shodan, VirusTotal, AbuseIPDB]
Intelligence Narrative:
The IP address 185.247.137.252/32 was first observed online on [Date] and is registered to [Registrar Name].
Observed Activity:
* Website: [List any website(s) hosted on the IP address, if available]
* Services: [List any services running on the IP address, e.g., HTTP, SSH, FTP]
* Geolocation: [City, Region, Country]
* ASN: [Autonomous System Number]
* ISP: [Internet Service Provider]
Threat Intelligence Indicators:
* [List any threat intelligence indicators associated with the IP address, e.g., malware detections, malicious activity reports, association with known threat actors]
Relationships:
* [List any known relationships between the IP address and other IPs, domains, or organizations]
Neighborhood Data:
* [Describe the general reputation of the IP address's neighborhood based on the surrounding IPs, e.g., high density of malicious IPs, known botnets, compromised servers]
Recommendations:
* [Based on the gathered intelligence, provide specific recommendations for the SOC team, e.g., monitor the IP address for suspicious activity, block the IP address, investigate potential connections to known threats]
Please note: This briefing is based solely on the data collected from the specified tools. Further investigation may reveal additional information.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Driftnet Hostmaster |
| ASN | AS211298 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | RIPE |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | r4-252-fc.monitoring.internet-measurement.com |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | r4-252-fc.monitoring.internet-measurement.com |
๐ DNS Hygiene
| Hygiene Score | 80% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Single-Service Host |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | โ |
| Closed Ports | 22, 25, 443, 3389, 8080, 8443 (1 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 30% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 24% | 2 | 3 |
| ownership | 28% | 2 | 3 |
| reputation | 19% | 1 | 3 |
| geolocation | 19% | 2 | 2 |
| Overall | 22% | 10 | 16 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-08 05:01:57 UTC |
| Last Seen | 2026-06-25 02:35:53 UTC |
| Profile Built | 2026-06-25 02:45:18 UTC |
| Data Freshness | Live |
| Signal Types | 23 |
| Total Observations | 24 |
Full dossier details are available via our API.