IPDebrief

192.72.56.178

IP Intelligence Dossier
Your IP: 216.73.217.131
{ } JSON 🔧 Full Actions API
🤖 Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# Intelligence Briefing: 192.72.56.178/32

Classification: Moderate Risk / Low Immediate Threat

Date: 2026-07-23

---

## Executive Summary

IP address 192.72.56.178 is associated with SEEDNET-NET (Anti-Spammer NCIC, ASN 4780) in Taiwan. The IP carries a moderate risk score of 55/100 but demonstrates no active threat indicators, no open services, and clean neighborhood classification. The address is currently firewalled with no detectable services.

---

## Technical Profile

Ownership & Registration:

Geolocation:

Network Services:

---

## Threat Assessment

Current Threat Indicators:

Control Plane Analysis:

---

## Neighborhood Analysis

Subnet: 192.72.56.178/24

The /24 subnet demonstrates no elevated abuse activity. No neighboring IPs in the subnet show threat indicators.

---

## Observation History

Analysis Period: Recent observations from 2026-07-23

Total Observations: 16

Key Historical Signals:

---

## Relationship Graph

Identified Relationships:

The IP shows no relationships to external organizations, certificates, or suspicious hostnames beyond its own DNS records.

---

## Recommended Actions

Immediate: No blocking or filtering recommended. The IP demonstrates benign characteristics with no active threat indicators.

Monitoring: Continue standard monitoring. The moderate risk score (55) may warrant inclusion in baseline traffic patterns rather than active blocking.

Firewall Rules: No specific rules required. Allow or block based on organizational policy, not threat intelligence.

---

## Conclusion

192.72.56.178 is a legitimate IP address associated with Taiwanese ISP infrastructure. The moderate risk score reflects general ISP-level risk rather than specific malicious activity. No immediate threat mitigation is required. The IP is currently inactive with no open services, making it a low-priority target for defensive operations.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

Country🇹🇼 Taiwan
Region—
City—
TimezoneAsia/Taipei
Latitude23.70
Longitude120.96

🏢 Ownership & Registration

OrganizationAnti-Spammer NCIC
ASNAS4780
Network NameSEEDNET-NET
CIDR Block192.72.56.0/23
RIRARIN
CountryTW
Abuse Contact—

🌐 DNS Intelligence

PTRh178-192-72-56.seed.net.tw
Forward ConfirmedNo — PTR hostname does not resolve back to this IP (weak signal)
Forward Hostnamesh178-192-72-56.seed.net.tw

🔐 DNS Hygiene

Hygiene Score20% (Poor)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureUnknown
Service PurposeWeb Server
Network TierUnknown — Insufficient routing data to classify
No specific classification

🔌 Services & Open Ports

PortServiceProtocolBanner
80httptcp—
443httpstcp—
Closed Ports22, 25, 3389, 8080, 8443 (2 open / 7 scanned)
ServerWeb server detected
HTTP Title—

🔐 TLS Certificate

A self-signed certificate was detected. This is common for development servers, internal services, or IoT devices.
⚠️
CN=localhost
Issued by CN=localhost
Self-signed: Yes
SANsNone
Valid From2021-08-19T19:48:25+00:00
Valid Until2031-08-17T19:48:25+00:00
TLS ProtocolTls12
Cipher SuiteTLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
Signature Algorithmsha256RSA
Validity Period3650 days

🛡️ Public Network Snapshot

Origin ASNAS4780
Network Prefix192.72.32.0/19
Route mappingFound
HSTSNot detected
CSPNot detected
HTTP/2Not detected

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
25%
11
routing
25%
11
services
25%
11
ownership
0%
00
reputation
0%
00
geolocation
17%
11
Overall15%44
Coverage: 4/6 dimensions · Data sufficiency: partial
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

📅 Observation Timeline 🔄 Live

First Seen2026-07-04 11:16:10 UTC
Last Seen2026-09-13 23:03:08 UTC
Profile Built2026-09-14 02:32:53 UTC
Data FreshnessLive
Signal Types22
Total Observations31
🔍 22 signal types · 31 observations collected
This report is generated from 22+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API 🔧 Actions API 📧 Enterprise Access

❓ Frequently Asked Questions About 192.72.56.178

Who owns the IP address 192.72.56.178?

192.72.56.178 is registered to Anti-Spammer NCIC. The address falls within the 192.72.56.0/23 network block. Registration is held at ARIN.

Where is 192.72.56.178 located?

Geolocation data places 192.72.56.178 in Taiwan. The local time zone is Asia/Taipei. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.

Is 192.72.56.178 malicious or safe?

192.72.56.178 currently carries a high risk assessment, meaning indicators associated with malicious or abusive activity have been observed. This assessment is generated from continuously collected signals and can change over time.

What is the hostname for 192.72.56.178?

The reverse DNS (PTR) record for 192.72.56.178 is h178-192-72-56.seed.net.tw. This hostname is not forward-confirmed, so it should be treated as a weak signal.

What ports are open on 192.72.56.178?

Responsive ports observed on 192.72.56.178 include 80, 443. Port visibility reflects the most recent scan and may change as the host's configuration or firewall rules change.

🏘️ Related IP Addresses

Browse related networks

ℹ️ About This Report

All data shown is publicly available network metadata — IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.