IPDebrief

196.51.187.106

IP Intelligence Dossier
Your IP: 216.73.216.5
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

## Intelligence Briefing: 196.51.187.106

Executive Summary

IP address 196.51.187.106 presents a Low Risk profile (Risk Score: 25) with no active threat indicators. The address is associated with South Africa (ZA), classified as "clean" with minimal neighborhood abuse density. No malicious activity or service enumeration observed.

Ownership & Network Classification

Geolocation Data

Threat Intelligence Assessment

Network Neighborhood Analysis

Service & Port Scan Results

Control Plane & Routing

Traceroute Analysis

Historical Signal Observations

Relationship Graph

Recommended Actions

No immediate blocking required. The IP address presents minimal threat characteristics:

1. Monitor: Continue routine monitoring; no active threats detected

2. Allow Traffic: Standard network access permitted

3. Geolocation Verification: Consider enhanced geolocation validation due to 800km accuracy radius

4. DNSBL Review: Investigate single DNSBL listing for context if needed

SOC Analyst Notes

This IP represents a low-risk, passive network asset with no observable malicious activity. The South African origin and organizational attribution (ORG-ECSC1-AFRINIC) align with legitimate infrastructure patterns. The single DNSBL listing warrants periodic review but does not indicate active abuse. No firewall rules or blocking measures recommended at this time.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΏπŸ‡¦ South Africa
Regionβ€”
CityBoston
TimezoneAfrica/Johannesburg
Latitudeβ€”
Longitudeβ€”

🏒 Ownership & Registration

OrganizationOlabisi Adunni
ASNAS400463
Network NameORG-ECSC1-AFRINIC
CIDR Block196.51.0.0/16
RIRAFRINIC
CountryZA
Abuse Contactβ€”

🌐 DNS Intelligence

PTR RecordNo PTR
Forward ConfirmedNo β€” PTR hostname does not resolve back to this IP (weak signal)

πŸ” DNS Hygiene

Hygiene Score20% (Poor)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureUnknown
Service PurposeSingle-Service Host
Network TierUnknown β€” Insufficient routing data to classify
No specific classification

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
8080http-alttcpβ€”
Closed Ports22, 25, 80, 443, 3389, 8443 (1 open / 7 scanned)
Serversquid/3.5.20
HTTP Titleβ€”

πŸ” TLS Certificate

πŸ”’
No certificate
Issued by β€”
N/A
SANsNone
Valid Fromβ€”
Valid Untilβ€”

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
25%
11
routing
25%
11
services
25%
11
ownership
25%
11
reputation
0%
00
geolocation
0%
00
Overall16%44
Coverage: 4/6 dimensions Β· Data sufficiency: partial
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-07-24 20:34:00 UTC
Last Seen2026-07-30 01:03:02 UTC
Profile Built2026-07-30 01:15:32 UTC
Data FreshnessLive
Signal Types16
Total Observations16
πŸ” 16 signal types Β· 16 observations collected
This report is generated from 16+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.