IPDebrief

195.46.183.181

IP Intelligence Dossier
Your IP: 216.73.216.5
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

## IP Intelligence Briefing: 195.46.183.181

Classification: Moderate Risk (Score: 50)

Date of Analysis: 2026-07-31

Report Type: Defensive Threat Intelligence

---

Executive Summary

IP address 195.46.183.181 is a firewalled infrastructure IP in Russia (RU) under ASN 3216 (SOVINTEL-MNT). The address shows moderate risk scoring (50/100) but exhibits no active threat indicators, no open services, and resides in a clean subnet with zero abuse density. The IP is associated with the RU-CITY-LINE-Interface-IP-pool-NET network and resolves to a dial-in hostname in Kemerovo.

---

Ownership and Network Context

---

Risk Assessment

MetricValue
Risk Score50 (Moderate)
Provider Score0
Authority Score0
Stability Score0
DNSBL Listed2 of 8 lists
Open PortsNone
Active ThreatsNone

Key Observations:

---

Neighborhood Analysis

Subnet 195.46.183.0/24 shows:

No neighboring IPs in the /24 show elevated risk signals, indicating this IP exists in isolation from broader subnet abuse activity.

---

Historical Signal Activity

Observation Count: 18 signals recorded (latest: 2026-07-31T02:09:04)

Recent Signal Types:

Temporal Analysis:

---

Relationship Graph

Associated Entities:

No additional certificate, organization, or external entity relationships identified.

---

Recommended Actions

Firewall Rules (Block Recommended):

```bash

# iptables

iptables -A INPUT -s 195.46.183.181 -j DROP

# nftables

nft add rule inet filter input ip saddr 195.46.183.181 drop

# nginx

deny 195.46.183.181;

# pfSense

195.46.183.181/32

# Cloudflare WAF

Expression: ip.src eq 195.46.183.181

Action: block

# AWS WAF

Addresses: ["195.46.183.181/32"]

```

Operational Notes:

---

Conclusion

195.46.183.181 is a firewalled residential dial-in IP in Russia with moderate risk scoring. No active malicious activity, campaigns, or threat indicators are present. The IP exists in a clean subnet with no neighboring abuse activity. Standard blocking is recommended based on the moderate risk score, but no emergency threat response is warranted.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ท๐Ÿ‡บ Russia
RegionKhabarovsk
CityMoscow
Timezoneโ€”
Latitude48.45
Longitude135.09

๐Ÿข Ownership & Registration

OrganizationSOVINTEL-MNT
ASNAS3216
Network NameRU-CITY-LINE-Interface-IP-pool-NET
CIDR Block195.46.183.0/24
RIRRIPE
CountryRU
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTRts1-a181.Kemerovo.dial.rol.ru
Forward ConfirmedYes โ€” FCrDNS verified
Forward Hostnamests1-a181.Kemerovo.dial.rol.ru

๐Ÿ” DNS Hygiene

Hygiene Score60% (Good)
SPFPresent
DMARCNot configured
FCrDNSVerified
DNSSECValid
CAANot configured

โ˜๏ธ Network Classification

InfrastructureUnknown
Service PurposeFirewalled / No Services
Network TierTier 3 โ€” Basic operator with some routing infrastructure
No specific classification

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverโ€”
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
No certificate
Issued by โ€”
N/A
SANsNone
Valid Fromโ€”
Valid Untilโ€”

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
25%
11
routing
25%
11
services
25%
11
ownership
0%
00
reputation
0%
00
geolocation
25%
11
Overall16%44
Coverage: 4/6 dimensions ยท Data sufficiency: partial
Data CoherenceConsistent (100%)
AttributionModerate (70%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-07-30 11:03:39 UTC
Last Seen2026-08-01 04:25:30 UTC
Profile Built2026-07-31 02:17:21 UTC
Data FreshnessLive
Signal Types21
Total Observations21
๐Ÿ” 21 signal types ยท 21 observations collected
This report is generated from 21+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.