# IP Intelligence Briefing: 193.122.89.44/32
## Executive Summary
IP 193.122.89.44 is associated with Oracle Public Cloud infrastructure (ASN 31898, OC-195 network). The IP carries a moderate risk score of 55/100 with no active threat indicators. Evidence suggests cloud infrastructure usage with no open services detected.
## Ownership and Infrastructure
- Organization: Oracle Public Cloud
- ASN: 31898
- Network: OC-195 (193.122.0.0/16)
- RIR: RIPE
- Network Classification: Cloud provider infrastructure
## Geolocation and Network Positioning
- Reported Locations: Saudi Arabia (SA) / Jeddah and United States (WA)
- Geographic Consensus: False (multiple sources with conflicting data)
- Control Plane: Origin ASN 31898, BGP prefix 193.122.64.0/19
- Route Stability: Unstable (isRouteStable: false)
- Traceroute: 30 hops with 20 timeouts, transit through Comcast networks
## Threat Intelligence Assessment
- Risk Score: 55/100 (Moderate Risk)
- Blacklist Count: 0
- DNSBL Listed: 3 of 8 total lists
- Known Attacker: No
- Tor Exit Node: No
- Spam Source: No
- Known Campaigns: None correlated
- Threat Persistence: 0 days (not persistently malicious)
- Abuse Confidence Score: Not available
## Network Neighborhood Analysis
- Subnet: 193.122.89.0/24
- Abuse Density: 0% (clean classification)
- Active Siblings: 0
- Threat Siblings: 0
- Total Siblings: 1
- Inherited Risk: 0
## DNS and Service Analysis
- PTR Records: None
- Forward Resolution: Failed
- Hosted Domains: 0
- Open Ports: None detected
- TLS Certificate: None
- HTTP Title: None
- Service Purpose: Firewalled / No Services
## Historical Observations
Fourteen signal observations recorded. Recent activity (2026-07-30) confirms Oracle Public Cloud ownership. Geolocation signals show inconsistency between Saudi Arabian and United States reporting. Traceroute observations indicate the IP was unreachable during probing attempts.
## Inter-Entity Relationships
- Network Relationship: Same network (OC-195)
- Related Entities: 1 relationship identified
## Recommended Security Actions
Based on the elevated risk score (55/100), the following controls are recommended:
| Platform | Recommended Action |
|---|---|
| iptables | `iptables -A INPUT -s 193.122.89.44 -j DROP` |
| nftables | `nft add rule inet filter input ip saddr 193.122.89.44 drop` |
| nginx | `deny 193.122.89.44;` |
| pfSense | Block 193.122.89.44/32 |
| Cloudflare WAF | Block via expression: `ip.src eq 193.122.89.44` |
| AWS WAF | Block 193.122.89.44/32 |
## Analyst Notes
The IP operates within Oracle Cloud infrastructure. While the abuse density in the /24 subnet is clean (0%), the IP's moderate risk score warrants monitoring. The geographic inconsistency and DNS resolution failures suggest either misconfiguration or cloud routing complexities. No active threat indicators were identified, but the recommendation to block stems from the elevated risk classification.
Classification: Cloud Infrastructure / Moderate Risk
Action Level: Monitor / Block (per risk score recommendation)
Last Updated: 2026-07-30
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Oracle Public Cloud |
| ASN | AS31898 |
| Network Name | OC-195 |
| CIDR Block | 193.122.0.0/16 |
| RIR | RIPE |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 35% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 19% | 2 | 2 |
| ownership | 27% | 2 | 3 |
| reputation | 17% | 1 | 2 |
| geolocation | 33% | 2 | 4 |
| Overall | 24% | 10 | 16 |
| Data Coherence | Mostly Consistent (80%) β 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-07-25 14:52:56 UTC |
| Last Seen | 2026-08-13 06:44:25 UTC |
| Profile Built | 2026-08-12 19:58:46 UTC |
| Data Freshness | Live |
| Signal Types | 23 |
| Total Observations | 24 |
Full dossier details are available via our API.