# IP Intelligence Briefing: 185.43.17.183/32
## Executive Summary
IP 185.43.17.183 is assigned to Italian hosting provider ARPITEL (ASN 42764) and presents a Moderate Risk profile (Risk Score: 65/100). The address is geolocated to Foggia, Apulia, Italy. No active services or open ports are detected; the IP is currently firewalled. No threat indicators are present, and the address is not classified as a known attacker, Tor exit, or spam source.
## Ownership and Network Classification
- Organization: Area Tecnica (ARPITEL)
- ASN: 42764
- CIDR Block: 185.43.16.0/23
- RIR: RIPE
- Location: Italy (Apulia, Foggia) โ 41.46°N, 15.56°E
- DNS PTR: 185-43-17-183.ip295.fastwebnet.it
- Forward Resolution: Confirmed (1 hostname)
The IP resolves to a FastwebNet infrastructure domain, indicating it is part of a larger Italian telecommunications network.
## Threat Profile
- Overall Risk Score: 65 (Moderate)
- Abuse Confidence Score: Not applicable
- Blacklist Count: 0
- DNSBL Listed: 3 of 8 total lists
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
- Threat Indicators: None observed
- Known Campaigns: None correlated
The moderate risk score is primarily driven by the IP's classification as a firewalled/no-service address with limited historical threat persistence.
## Service and Behavioral Analysis
- Open Ports: None detected
- TLS Certificate: None
- HTTP Title: None
- Server Banner: None
- Connection Type: Firewalled / No Services
- Network Role: Residential/Hosting infrastructure
- Cloud/CDN/Proxy: Not identified
## Historical Signal Observation
Analysis of 16 signal observations reveals:
- Observation Count: 16 total signals
- Most Recent: 2026-07-30
- Geolocation Consensus: Italy (IT) with medium confidence (0.52)
- Ownership Changes: 0 (stable)
- Threat Persistence Days: 0 (no persistent malicious activity)
- Persistently Malicious: No
- RTT Analysis: Average 176.2ms, minimum 151ms, maximum 224ms; 5 probes conducted
- Geo Plausibility: Validated
The IP demonstrates stable ownership with no evidence of escalating malicious behavior over time.
## Subnet Neighborhood Analysis
The /24 subnet (185.43.17.0/24) contains:
- Total Siblings: 8 neighbor IPs
- Abuse Density: 0 (low)
- Risk Distribution:
- High Risk: 0
- Medium Risk: 4
- Low Risk: 3
Notable Neighbors:
| IP Address | Risk Score | Authority Score |
|---|---|---|
| 185.43.17.30 | 55 | 60 |
| 185.43.17.37 | 55 | 60 |
| 185.43.17.89 | 55 | 60 |
| 185.43.17.53 | 40 | 60 |
| 185.43.17.21 | 30 | 60 |
| 185.43.17.171 | 30 | 60 |
| 185.43.17.243 | 15 | 60 |
| 185.43.17.196 | N/A | N/A |
The subnet shows moderate neighborhood risk with several medium-risk neighbors, but no high-risk classifications.
## Relationship Graph
- DNS Associations: 185-43-17-183.ip295.fastwebnet.it (3 entries)
- Network Association: ARPITEL
## Recommended Actions
Based on the risk profile:
1. Monitor: Continue monitoring for service changes or new threat indicators
2. No Immediate Block Required: No active threat indicators or known malicious activity
3. Contextual Review: Consider correlating with any observed connections to medium-risk neighbors (185.43.17.30, 185.43.17.37, 185.43.17.89) if relevant to investigation
4. DNSBL Monitoring: 3 of 8 DNSBL lists flag this IP; review specific lists if receiving deliverability issues
## Conclusion
IP 185.43.17.183 is a firewalled residential/hosting address under Italian provider ARPITEL with a moderate risk score but no active threat indicators. The subnet demonstrates low abuse density. No immediate blocking or mitigation actions are required; however, contextual correlation with medium-risk neighbors is advised if the IP appears in suspicious connection logs.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Area Tecnica |
| ASN | AS42764 |
| Network Name | ARPITEL |
| CIDR Block | 185.43.16.0/23 |
| RIR | RIPE |
| Country | IT |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | 185-43-17-183.ip295.fastwebnet.it |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | 185-43-17-183.ip295.fastwebnet.it |
๐ DNS Hygiene
| Hygiene Score | 80% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 โ Basic operator with some routing infrastructure |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 0% | 0 | 0 |
| reputation | 0% | 0 | 0 |
| geolocation | 0% | 0 | 0 |
| Overall | 12% | 3 | 3 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-07-29 04:30:10 UTC |
| Last Seen | 2026-07-30 23:20:14 UTC |
| Profile Built | 2026-07-30 20:07:30 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 20 |
Full dossier details are available via our API.