IP Intelligence Briefing: 203.194.5.183
Date: 2026-05-30
---
**1. Core Profile**
- Risk Score: 80 (High Risk)
- Ownership: TPG Hostmaster (AS7545), Australia (Perth, Western Australia).
- Geolocation: Perth, WA, Australia (Latitude: -32.05, Longitude: 115.92).
- Network Role: Firewalled / No Services detected.
- Threat Indicators:
- Listed in 5/8 DNSBLs (high-risk domains).
- No open ports or TLS certificates detected.
- No known malicious campaigns or spam sources.
---
**2. Observation History**
- Last 30 Days:
- Consistent geolocation in Perth, WA.
- 5 DNSBL listings (e.g., Spamhaus, Barracuda).
- No persistent threat signals (e.g., malware, scans).
- Stability: Route instability detected (BGP changes).
---
**3. Relationships**
- Network: Part of TPG-AU (203.194.0.0/18).
- DNS:
- PTR hostname: `203-194-5-183.tpgi.com.au`.
- No email authentication (SPF/DKIM) records.
- Certificates: No TLS certificates or HTTP services detected.
---
**4. Neighborhood Analysis**
- Subnet: 203.194.5.0/24.
- Neighboring IPs: No active or risky siblings detected.
- Subnet Abuse Density: 0% (low risk).
---
**5. Actionable Insights**
- Monitor: Despite no active threats, the IPβs DNSBL listings and route instability warrant closer scrutiny.
- Investigate: Check if TPG Hostmasterβs network has broader abuse patterns.
- Mitigation: Block the IP in WAFs/IDS if it aligns with known malicious patterns.
---
Recommendation: This IP is owned by a legitimate provider but shows signs of historical abuse. SOC teams should monitor for unexpected traffic patterns or reclassification.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | TPG Hostmaster |
| ASN | AS7545 |
| Network Name | TPG-AU |
| CIDR Block | 203.194.0.0/18 |
| RIR | APNIC |
| Country | AU |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | 203-194-5-183.tpgi.com.au |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | 203-194-5-183.tpgi.com.au |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Single-Service Host |
| Network Tier | Unknown β Insufficient routing data to classify |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 22 | ssh | tcp | |
| Closed Ports | 25, 80, 443, 3389, 8080, 8443 (1 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
| SSH Version | SSH-2.0-dropbear_2018.76 ?~??T?????`9??????curve25519-sha256,curve25519-sha256@libssh.org,ecdh-sha2 |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 35% | 2 | 3 |
| routing | 22% | 1 | 1 |
| services | 30% | 2 | 3 |
| ownership | 27% | 2 | 3 |
| reputation | 26% | 1 | 3 |
| geolocation | 21% | 2 | 2 |
| Overall | 27% | 10 | 15 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Fresh
| First Seen | 2026-05-16 08:56:46 UTC |
| Last Seen | 2026-06-26 18:11:05 UTC |
| Profile Built | 2026-06-14 03:35:13 UTC |
| Data Freshness | Fresh |
| Signal Types | 19 |
| Total Observations | 21 |
Full dossier details are available via our API.