IPDebrief

198.98.56.118

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP Intelligence Briefing: 198.98.56.118/32

## Executive Summary

IP address 198.98.56.118 is a colocation hosting IP owned by FranTech Solutions (AS53667) located in New York, NY. The IP demonstrates a low-risk profile with no active threat indicators, though it is associated with a subnet containing multiple medium-to-high risk sibling IPs. The IP is firewalled with no open services, reducing immediate exploitation vectors.

## Network Profile

## Threat Assessment

## Behavioral Indicators

## Neighborhood Analysis (198.98.56.0/24)

Sibling IPs:

IP AddressRisk ScoreAuthority Score
198.98.56.2056560
198.98.56.2152550
198.98.56.2276550

## Relationship Graph

The IP maintains 15 network-level relationships, all associated with "PONYNET-06," indicating consistent network infrastructure placement within the Frantech network infrastructure.

## Observation History (18 records)

Recent signal observations indicate:

## Control Plane Data

## Recommended Security Actions

Based on the IP's risk profile and neighborhood context, the following actions are recommended:

1. Traffic Analysis: Monitor for connection attempts to this IP, particularly from external networks

2. Blocklist Verification: The IP shows recent high-severity blacklist listings; verify current status before blocking

3. Network Segmentation: Consider isolating this /24 subnet due to the presence of 2 high-risk sibling IPs

4. Geographic Filtering: Evaluate if New York-based hosting requires additional scrutiny based on threat intelligence

5. Log Monitoring: Monitor for any service enumeration attempts or connection anomalies

## Threat Intelligence Narrative

IP 198.98.56.118 operates as a firewalled colocation host with minimal direct threat indicators. However, the subnet environment contains multiple medium-to-high risk sibling IPs (198.98.56.205 and 198.98.56.227 both showing risk score 65). Recent blacklist activity with high severity ratings suggests potential reputation issues, though the current IP remains service-protected. The network infrastructure shows route instability and minimal operator validation, warranting enhanced monitoring. SOC teams should treat inbound connections cautiously while prioritizing investigation of the high-risk sibling IPs within the same subnet.

---

*Report generated: [Current Date]*

*Data Source: IPDebrief Intelligence Platform*

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΊπŸ‡Έ United States
RegionNY
CityNew York
Timezoneβ€”
Latitude40.61
Longitude-74.18

🏒 Ownership & Registration

OrganizationFranTech Solutions
ASNAS53667
Network Nameβ€”
CIDR Blockβ€”
RIRARIN
Countryβ€”
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR RecordNo PTR
Forward ConfirmedNo β€” PTR hostname does not resolve back to this IP (weak signal)

πŸ” DNS Hygiene

Hygiene Score20% (Poor)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeFirewalled / No Services
Network TierHosting β€” Infrastructure provider without advanced routing
Hosting

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverβ€”
HTTP Titleβ€”

πŸ” TLS Certificate

πŸ”’
No certificate
Issued by β€”
N/A
SANsNone
Valid Fromβ€”
Valid Untilβ€”

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
45%
25
routing
8%
11
services
21%
22
ownership
24%
23
reputation
31%
13
geolocation
27%
23
Overall26%1017
Coverage: 6/6 dimensions Β· Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-05-21 14:57:02 UTC
Last Seen2026-06-28 14:02:37 UTC
Profile Built2026-06-29 02:07:55 UTC
Data FreshnessLive
Signal Types18
Total Observations23
πŸ” 18 signal types Β· 23 observations collected
This report is generated from 18+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.