# IP INTELLIGENCE BRIEFING
Target: 194.163.160.229/32
Classification: Moderate Risk Cloud Infrastructure
Date: Current
---
## EXECUTIVE SUMMARY
IP 194.163.160.229 is a Contabo cloud VPS (ASN 51167) located in Lauterbourg, Grand Est, Germany. The address operates a cPanel-hosted web service (csb4success.com) with standard HTTP/HTTPS/SSH services. Risk score: 40 (moderate), primarily due to cloud hosting infrastructure and 2 DNSBL listings. Neighborhood abuse density is low (0%), with sibling IPs showing minimal threat indicators.
---
## INFRASTRUCTURE PROFILE
- ASN: 51167 (Johannes Selg, RIR: RIPE)
- Provider: Contabo (CloudCompute, Hosting infrastructure)
- BGP Prefix: 194.163.128.0/18
- Geolocation: 51.17, 10.45 (Lauterbourg, DE) โ 400km accuracy radius
- Ownership: Cloud VPS (is_cloud: true, is_hosting: true)
- Not Indicators: Not Tor, VPN, proxy, or residential
---
## DNS & CERTIFICATE INTELLIGENCE
- PTR Hostname: vmi1132873.contaboserver.net
- Forward Resolution: contaboserver.net โ vmi1132873.contaboserver.net
- TLS Certificate:
- Issuer: cPanel, Inc. Certification Authority (Houston, TX, US)
- Subject: csb4success.com
- SANs: csb4success.com, www.csb4success.com
- Email Security: No SPF, DMARC, or TXT records configured
---
## NETWORK SERVICES
| Port | Protocol | Service | Notes |
|---|---|---|---|
| 80 | TCP | HTTP | Web service |
| 443 | TCP | HTTPS | TLS/SSL enabled |
| 22 | TCP | SSH | OpenSSH_7.4 |
- Server Fingerprint: Apache
- HTTP Status: 301 redirect (redirecting to HTTPS)
- TLS Version: 1.1 (HTTP 1.1)
---
## THREAT INDICATORS
- Risk Score: 40 (Moderate)
- Threat Indicators: None detected
- Known Attacker: No
- Spam Source: No
- Tor Exit Node: No
- Blacklist Count: 2 DNSBL listings
- Campaign Likelihood: None
- Cert Matches: 0
- Correlated IPs: 0
---
## CONTROL PLANE DATA
- Route Stability: Unstable (isRouteStable: false)
- BGP Route Changes (30d): 0
- RPKI State: Not validated
- DNSSEC: Valid
- CAAA Records: None
- Operator Score: 0.2609 (Basic)
- Delegation Age: Not available
---
## OBSERVATION HISTORY (23 Signals)
- Recent Activity: June 2026 observations confirm consistent geographic inference (DE)
- DNS Signals: contaboserver.net and csb4success.com consistently resolved
- HTTP Fingerprinting: Apache server with 301 redirects to HTTPS
- Network Classification: Stable Contabo provider assignment
- Threat Persistence: 0 days (not persistently malicious)
---
## NEIGHBORHOOD ANALYSIS (/24 Subnet)
- Subnet: 194.163.160.0/24
- Abuse Density: 0%
- Classification: mostly_clean
- Total Siblings: 4 (all active)
- Threat Siblings: 3
- Sibling Risk Scores: All 25 (low-medium)
| Neighbor IP | Risk Score | Authority Score |
|---|---|---|
| 194.163.160.0 | 25 | 60 |
| 194.163.160.34 | 25 | 60 |
| 194.163.160.47 | 25 | 60 |
---
## RELATIONSHIP MAPPING (43 Relationships)
- DNS Associations: vmi1132873.contaboserver.net (multiple)
- Network Associations: CONTABO (multiple)
- Primary Link: Cloud hosting infrastructure
---
## RECOMMENDED ACTIONS
Based on risk profile and infrastructure type:
1. Monitoring: Track DNSBL listing status and certificate renewal for csb4success.com
2. Allow List Consideration: Low threat indicators; may be whitelisted for legitimate web traffic
3. Reputation Watch: Monitor for escalation in DNSBL counts or threat feed additions
4. Firewall Rules: Standard web server blocking (no aggressive rules required)
SOC Analyst Note: This IP represents standard cloud hosting infrastructure. The csb4success.com domain warrants monitoring but currently shows no malicious indicators. The 2 DNSBL listings may be due to legitimate web traffic reputation issues.
---
*Report generated via IPDebrief Intelligence Platform*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Johannes Selg |
| ASN | AS51167 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | RIPE |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | vmi1132873.contaboserver.net |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | vmi1132873.contaboserver.net |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | 0/2 domains |
| DMARC | 0/2 domains |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
| Domains Checked | 2 domains |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | โ |
| 443 | https | tcp | โ |
| 22 | ssh | tcp | |
| Closed Ports | 25, 3389, 8080, 8443 (3 open / 7 scanned) | ||
| Server | Apache |
| HTTP Title | โ |
| SSH Version | SSH-2.0-OpenSSH_7.4 |
๐ TLS Certificate
CN=csb4success.com was found on this IP. This may indicate a previously hosted website, a decommissioned service, or stale infrastructure.| SANs | csb4success.comwww.csb4success.com |
| Valid From | 2022-12-31T00:00:00+00:00 |
| Valid Until | 2023-03-31T23:59:59+00:00 (expired) |
| TLS Protocol | Tls13 |
| Cipher Suite | TLS_AES_256_GCM_SHA384 |
| Signature Algorithm | sha256RSA |
| Validity Period | 90 days |
| Serial Number | 413F847925496E2E01ACE1D520717AD6 |
| Thumbprint | 4D94D9B3169E9D48AE912231D25D86675765B8F0 |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 30% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 20% | 2 | 3 |
| ownership | 20% | 2 | 3 |
| reputation | 22% | 1 | 2 |
| geolocation | 25% | 2 | 2 |
| Overall | 22% | 10 | 14 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-23 12:22:48 UTC |
| Last Seen | 2026-06-28 21:25:28 UTC |
| Profile Built | 2026-06-29 09:28:56 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 23 |
Full dossier details are available via our API.