IP Intelligence Briefing: 185.255.212.56
*Generated via IPDebrief tools: Profile, History, Relationships, Neighbors*
---
**1. Risk Profile**
- Risk Score: 55 (Moderate Risk)
- Ownership: ASN 200475 (IPACCT-MNT, Bulgaria)
- Geolocation: Burgas, Bulgaria (Karnobat)
- Threat Indicators: No active malicious activity, no known campaigns, no spam, or Tor exit nodes.
- Network Role: Firewalled / No Services (no open ports, no TLS/HTTP services).
- DNS: PTR hostname `185.255.212.56.ip.karnobat.net` linked to `karnobat.net` (SPF/DMArc configured).
---
**2. Observation History**
- Recent Activity (June 11, 2026):
- DNS geolocation confirmed (Bulgaria, Karnobat).
- Operator score: 0.13 (Minimal risk).
- Listed in 3/8 DNSBLs (moderate risk).
- Trend: No persistent threats; no observed scans or enumeration.
---
**3. Relationships**
- Network: Part of BG-KARNOBATNET (ASN 200475).
- DNS Associations:
- Multiple PTR records pointing to `karnobat.net`.
- No Link to Malicious Entities: No correlated IPs, campaigns, or certificates.
---
**4. Neighborhood Analysis**
- Subnet: 185.255.212.0/24 (28 total IPs).
- Abuse Density: 10.7% (3 high-risk neighbors, 24 medium, 1 low).
- Notable Neighbors:
- 185.255.212.75 (80 risk score), 185.255.212.137 (80 risk score), 185.255.212.178 (80 risk score).
- 185.255.212.191 (0 risk score, potentially dormant).
---
**5. Recommendations**
- Monitor: Track DNSBL listings and subnet abuse density.
- Firewall: Consider blocking high-risk neighbors (e.g., 185.255.212.75, 137, 178) if they are not internal.
- Verify: Confirm ownership of `karnobat.net` and ensure SPF/DMArc records are valid.
- Investigate: Check if 185.255.212.191 is a dormant host or misconfigured device.
---
Note: No immediate action required for 185.255.212.56 itself, but vigilance is advised due to surrounding subnet risks.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | IPACCT-MNT |
| ASN | AS200475 |
| Network Name | BG-KARNOBATNET |
| CIDR Block | 185.255.212.0/23 |
| RIR | RIPE |
| Country | BG |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | 185.255.212.56.ip.karnobat.net |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | 185.255.212.56.ip.karnobat.net |
๐ DNS Hygiene
| Hygiene Score | 60% (Good) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 13% | 1 | 1 |
| routing | 13% | 1 | 1 |
| services | 13% | 1 | 1 |
| ownership | 27% | 2 | 3 |
| reputation | 0% | 0 | 0 |
| geolocation | 13% | 1 | 1 |
| Overall | 13% | 6 | 7 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-27 13:17:10 UTC |
| Last Seen | 2026-06-11 10:07:43 UTC |
| Profile Built | 2026-06-11 10:17:06 UTC |
| Data Freshness | Live |
| Signal Types | 17 |
| Total Observations | 17 |
Full dossier details are available via our API.