IPDebrief

186.122.177.140

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

IP Intelligence Briefing: 186.122.177.140

Date: 2026-06-17

---

**1. Risk Profile**

- HTTP/HTTPS (nginx server), SSH (OpenSSH 8.9p1).

- TLS certificate issued to hestacp.vitolen.com (Hestia Control Panel).

---

**2. Threat Indicators**

- DNSSEC valid, no CAA records.

- TLS certificate has no critical extensions, self-signed: False.

- Subnet 186.122.177.0/24 has abuse density 1/10 (mostly clean).

- No BGP anomalies or route instability detected.

---

**3. Observation History**

- Geolocation inferred as San Francisco, CA (37.77°N, -122.42°W) with 45km accuracy.

- DNS listings show 8 total lists (3 high-severity), but no direct malicious ties.

- Network operator score: Minimal (0.13).

---

**4. Relationships & Subnet**

- Subnet 186.122.177.0/24 has 0 active IPs and 1 threat sibling (low abuse density).

- Linked to Telmex.net.ar (PTR record) and hestacp.vitolen.com (TLS certificate).

- No known malicious subnets or organizations in the same /24.

---

**5. Actionable Insights**

---

Recommendation: Flag for further investigation due to conflicting geolocation data and mobile network origin. No immediate mitigation required unless anomalous traffic is observed.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΊπŸ‡Έ United States
RegionCA
CitySan Francisco
TimezoneAmerica/Los_Angeles
Latitude37.77
Longitude-122.42

🏒 Ownership & Registration

OrganizationAMX Argentina S.A.
ASNAS11664
Network Nameβ€”
CIDR Block186.122.177.0/24
RIRLACNIC
Countryβ€”
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTRhost140.186-122-177.telmex.net.ar
Forward ConfirmedNo β€” PTR hostname does not resolve back to this IP (weak signal)
Forward Hostnameshost140.186-122-177.telmex.net.ar

πŸ” DNS Hygiene

Hygiene Score20% (Poor)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureMobile
Service PurposeWeb Server
Network TierUnknown β€” Insufficient routing data to classify
Mobile

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
80httptcpβ€”
443httpstcpβ€”
22sshtcp
Closed Ports25, 3389, 8080, 8443 (3 open / 7 scanned)
Servernginx
HTTP Titleβ€”
SSH VersionSSH-2.0-OpenSSH_8.9p1

πŸ” TLS Certificate

An expired certificate for CN=hestacp.vitolen.com, OU=IT, O=Hestia Control Panel, L=San Francisco, S=California, C=US was found on this IP. This may indicate a previously hosted website, a decommissioned service, or stale infrastructure.
⚠️
CN=hestacp.vitolen.com, OU=IT, O=Hestia Control Panel, L=San Francisco, S=California, C=US
Issued by CN=hestacp.vitolen.com, OU=IT, O=Hestia Control Panel, L=San Francisco, S=California, C=US
Self-signed: Yes
SANsNone
Valid From2023-12-01T18:49:47+00:00
Valid Until2024-11-30T18:49:47+00:00 (expired)
TLS ProtocolTls13
Cipher SuiteTLS_AES_128_GCM_SHA256
Signature Algorithmsha256RSA
Validity Period365 days
Serial Number282FC43CC0D0486F31F1E519413776956C88DB22
Thumbprint8E12536E540290E8A55732E65D22871AB6397913

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
28%
24
routing
27%
23
services
28%
24
ownership
24%
34
reputation
26%
13
geolocation
31%
23
Overall27%1221
Coverage: 6/6 dimensions Β· Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

πŸ“… Observation Timeline πŸ”„ Fresh

First Seen2026-05-07 23:04:01 UTC
Last Seen2026-06-26 18:10:55 UTC
Profile Built2026-06-25 10:43:16 UTC
Data FreshnessFresh
Signal Types26
Total Observations28
πŸ” 26 signal types Β· 28 observations collected
This report is generated from 26+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.