IPDebrief

2.20.152.7

IP Intelligence Dossier
Your IP: 216.73.217.34
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

Intelligence Briefing: IP 2.20.152.7

Subject: Network Profile and Threat Assessment

Date: 2026-09-06

Status: Low Risk (Score 25)

Overview

The IP address 2.20.152.7 was observed with a Low Risk reputation. Ownership records identify the address as part of the AKAMAI-PA network (ASN 16625) under the Akamai infrastructure provider. The network role is classified as a Web Server.

Technical Services

The host served HTTP (port 80) and HTTPS (port 443) traffic. A TLS certificate associated with the IP was issued to Microsoft Corporation (Subject: *.xboxlive.com). DNS records resolved to `a2-20-152-7.deploy.static.akamaitechnologies.com`.

Geolocation and Anomalies

Geolocation data presented significant contradictions. While one source located the IP in Boston, US-MA, another reported the Netherlands. RTT measurements (avg 15.2ms) violated physics for the reported distance (5663km), indicating a claim of geolocation contradicts RTT physics measurements.

Threat Indicators

No active threat indicators were present. Abuse confidence scores were unavailable, blacklist counts remained at zero, and the IP was not identified as a known attacker, spam source, or Tor exit node. Three specific contradictions were identified regarding geolocation physics, source consensus, and certificate region alignment.

Assessment and Recommendation

Overall confidence in the profile was Low (0.325) due to data inconsistencies and signal contradictions. The profile was labeled as "Contradictory" with a coherence score of 48. Operational analysis recommended a Rate-Limit action with medium severity due to the unreliable profile.

Observation Window

Signals ranged from 2026-08-29 to 2026-09-06. No WAF violations, honeypot hits, or total incidents were recorded.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ณ๐Ÿ‡ฑ Netherlands
RegionUS-MA
CityBoston
TimezoneEurope/Amsterdam
Latitude52.13
Longitude5.29

๐Ÿข Ownership & Registration

OrganizationAKAM1-RIPE-MNT
ASNAS16625
Network NameAKAMAI-PA
CIDR Block2.20.144.0/20
RIRRIPE
CountryEU
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTRa2-20-152-7.deploy.static.akamaitechnologies.com
Forward ConfirmedYes โ€” FCrDNS verified
Forward Hostnamesa2-20-152-7.deploy.static.akamaitechnologies.com

๐Ÿ” DNS Hygiene

Hygiene Score60% (Good)
SPF1/2 domains
DMARC1/2 domains
FCrDNSVerified
DNSSECNot signed
CAANot configured
Domains Checked2 domains

โ˜๏ธ Network Classification

InfrastructureUnknown
Service PurposeWeb Server
Network TierHosting โ€” Infrastructure provider without advanced routing
No specific classification

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
80httptcpโ€”
443httpstcpโ€”
Closed Ports22, 25, 3389, 8080, 8443 (2 open / 7 scanned)
ServerAkamaiGHost
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
CN=*.xboxlive.com, O=Microsoft Corporation, L=Redmond, S=WA, C=US
Issued by CN=Microsoft TLS G2 ECC CA OCSP 06, O=Microsoft Corporation, C=US
Self-signed: No
SANs*.xboxlive.com
Valid From2026-08-13T17:59:38+00:00
Valid Until2027-02-27T17:59:38+00:00
TLS ProtocolTls13
Cipher SuiteTLS_AES_256_GCM_SHA384
Signature Algorithmsha384ECDSA
Validity Period198 days
Serial Number61000472936238414FA63B91B6000000047293
Thumbprint58C3E1FBFC408D600BDD652358AC077DFD789FA4

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
38%
25
routing
13%
11
services
33%
24
ownership
27%
23
reputation
22%
13
geolocation
19%
22
Overall25%1018
Coverage: 6/6 dimensions ยท Data sufficiency: sufficient
Data CoherenceContradictory (48%) โ€” 3 contradiction(s)
AttributionLow (40%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid
โš  Claimed geolocation contradicts RTT physics measurement
โš  Geo sources disagree on country: NL, US
โš  TLS certificate claims US but primary geo says NL

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-08-29 05:08:09 UTC
Last Seen2026-09-06 19:44:03 UTC
Profile Built2026-09-09 19:47:44 UTC
Data FreshnessLive
Signal Types27
Total Observations39
๐Ÿ” 27 signal types ยท 39 observations collected
This report is generated from 27+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.