# IP Intelligence Briefing: 193.8.186.29/32
Date: 2026-07-29
Classification: Moderate Risk
Status: Active Monitoring
## Executive Summary
IP address 193.8.186.29 is assigned to ASN 201002 (CojuhariSolutions) within the 193.8.186.0/24 block under RIPE RIR. The address carries a risk score of 55 (Moderate Risk) and is currently firewalled with no active services detected. While no active threat indicators are present, the IP appears on three DNSBL lists out of eight total lists evaluated.
## Risk Assessment
| Metric | Value |
|---|---|
| **Risk Score** | 55 (Moderate Risk) |
| **Provider Score** | 0 |
| **Authority Score** | 0 |
| **Stability Score** | 0 |
| **Abuse Confidence** | N/A |
| **DNSBL Listings** | 3/8 |
| **Open Ports** | 0 |
| **Tor Exit** | No |
## Geolocation Analysis
Primary geolocation signals indicate New York, US. However, historical observations show conflicting data with one signal originating from Great Britain (GB). Alienvault-OTX data associates the IP with Ashburn, VA, US. This geolocation inconsistency warrants continued monitoring.
## Network Profile
- Organization: CojuhariSolutions
- CIDR Block: 193.8.186.0/24
- Network Role: Firewalled / No Services
- Connection Type: Infrastructure
- Cloud/CDN/VPN: No
- Mobile/Residential: No
## Service Enumeration
No open ports detected. TLS certificate resolution failed. HTTP service title and server banner unavailable. The IP appears to be properly firewalled with no active services exposed.
## Threat Indicators
- Known Attacker: No
- Spam Source: No
- Threat Feeds: None
- Known Campaigns: None
- Certificate Matches: 0
- Correlated IPs: 0
## Neighborhood Analysis
The /24 subnet (193.8.186.0/24) demonstrates low overall risk with zero abuse density. Of five total sibling IPs:
- 2 Active siblings
- 0 Threat siblings
Neighbor risk scores:
- 193.8.186.31: Risk 0
- 193.8.186.33: Risk 0
- 193.8.186.35: Risk 25
- 193.8.186.37: Risk 25
## Observation History
Fifteen observations recorded. Key findings:
- Recent subnet classification consistently reports "clean" with 0 abuse density
- One Alienvault-OTX signal flagged the IP with threat persistence indicators (39 pulses)
- No persistent malicious activity detected
- Ownership changes: 0
## Relationship Graph
Two relationships identified, both classified as "Same Network" pointing to CojuhariSolutions. No hostnames, organizations, or certificates detected outside the network scope.
## Recommended Actions
Based on the moderate risk profile and DNSBL listings, the following actions are recommended:
1. Firewall Rule: Monitor inbound traffic from 193.8.186.29
2. DNSBL Review: Investigate listing sources for 3 DNSBL entries
3. Geolocation Verification: Verify actual physical location due to conflicting signals
4. Neighbor Monitoring: Monitor 193.8.186.35 and 193.8.186.37 for potential coordinated activity
## Conclusion
IP 193.8.186.29 presents a moderate risk profile with no active exploitation or malicious activity currently observed. The primary concerns are DNSBL listings and geolocation inconsistencies. The subnet environment remains relatively clean. Continued observation is recommended to verify service status and geolocation accuracy.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Abuse-C Role |
| ASN | AS201002 |
| Network Name | CojuhariSolutions |
| CIDR Block | 193.8.186.0/24 |
| RIR | RIPE |
| Country | GB |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Single-Service Host |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 22 | ssh | tcp | |
| Closed Ports | 25, 80, 443, 3389, 8080, 8443 (1 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
| SSH Version | SSH-2.0-OpenSSH_8.9p1 Ubuntu-3ubuntu0.16 |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 0% | 0 | 0 |
| reputation | 0% | 0 | 0 |
| geolocation | 0% | 0 | 0 |
| Overall | 12% | 3 | 3 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-07-24 08:18:28 UTC |
| Last Seen | 2026-07-29 22:27:15 UTC |
| Profile Built | 2026-07-29 22:40:10 UTC |
| Data Freshness | Live |
| Signal Types | 18 |
| Total Observations | 18 |
Full dossier details are available via our API.