IPDebrief

192.0.96.247

IP Intelligence Dossier
Your IP: 216.73.217.131
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

Observations recorded for IP 192.0.96.247/32 spanned from September 3 to September 21, 2026. The address was attributed to Automattic, Inc (ASN 2635) and resolved to the host api.akismet.com. The endpoint operated as a Web Server on ports 80 and 443, running nginx with a Let's Encrypt certificate for rest.akismet.com.

Threat assessment classified the reputation as Low Risk with a score of 25. While the address was not listed as a known attacker or Tor exit node, it was recorded on one DNS blacklist entry. Behavioral analysis showed no WAF violations or honeypot strikes. However, the system flagged the address as a Suspicious Host with unknown intent.

A significant data contradiction was identified between claimed geolocation (Ashburn, US) and RTT physics, which indicated a distance of 6312km versus an observed RTT of 27ms. Attribution confidence was moderate (55%), but overall confidence remained low (31.59%). Due to signal contradictions and insufficient intent classification, the recommended action was to monitor the address.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΊπŸ‡Έ United States
RegionVirginia
CityAshburn
Timezoneβ€”
Latitude39.05
Longitude-77.49

🏒 Ownership & Registration

OrganizationAutomattic, Inc
ASNAS2635
Network NameAUTOMATTIC
CIDR Block192.0.64.0/18
RIRARIN
CountryUnited States
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTRapi.akismet.com
Forward ConfirmedYes β€” FCrDNS verified
Forward Hostnamesapi.akismet.com

πŸ” DNS Hygiene

Hygiene Score80% (Excellent)
SPF2/2 domains
DMARC2/2 domains
FCrDNSVerified
DNSSECNot signed
CAAPresent
Domains Checked2 domains

☁️ Network Classification

InfrastructureUnknown
Service PurposeWeb Server
Network TierUnknown β€” Insufficient routing data to classify
No specific classification

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
80httptcpβ€”
443httpstcpβ€”
Servernginx
HTTP Titleβ€”

πŸ” TLS Certificate

πŸ”’
CN=rest.akismet.com
Issued by CN=YE2, O=Let's Encrypt, C=US
Self-signed: No
SANs*.rest.akismet.comrest.akismet.com
Valid From2026-08-30T19:47:13+00:00
Valid Until2026-11-28T19:47:12+00:00

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
33%
24
routing
33%
1107
services
38%
25
ownership
27%
24
reputation
28%
13
geolocation
33%
24
Overall32%10127
Coverage: 6/6 dimensions Β· Data sufficiency: sufficient
Data CoherenceMostly Consistent (80%) β€” 1 contradiction(s)
AttributionModerate (55%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid
⚠ Claimed geolocation contradicts RTT physics measurement

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-09-03 21:36:19 UTC
Last Seen2026-09-21 08:57:42 UTC
Profile Built2026-09-21 09:06:55 UTC
Data FreshnessLive
Signal Types25
Total Observations140
πŸ” 25 signal types Β· 140 observations collected
This report is generated from 25+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.