IPDebrief

217.154.47.221

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP INTELLIGENCE BRIEFING

Subject: 217.154.47.221/32

Classification: LOW RISK

Generated: 2026-06-25

---

## EXECUTIVE SUMMARY

The IP address 217.154.47.221 is a cloud-hosted web server infrastructure asset operated by IONOS SE (AS8560) with geolocation anchored to Worcester, England. Current risk assessment indicates LOW RISK (Score: 25/100) with no active threat indicators or known malicious activity. The asset exhibits standard web server characteristics with HTTPS termination and SSH access enabled.

---

## OWNERSHIP & INFRASTRUCTURE

AttributeValue
**ASN**AS8560 (IONOS SE)
**Organization**IONOS SE
**Geolocation**Worcester, England, GB
**CIDR Block**217.154.47.0/24
**BGP Origin**217.154.47.0/24 via AS34549โ†’AS8560
**Network Type**Cloud Infrastructure (gb-wtr-ionos-cloud-bhx1)
**Registration**RIR: RIPE

---

## NETWORK SERVICES & FINGERPRINT

---

## THREAT ASSESSMENT

Current Status

Historical Signals (31 observations)

---

## NEIGHBORHOOD ANALYSIS

Subnet: 217.154.47.0/24

Classification: mostly_clean

Abuse Density: 1/100 (minimal)

Total Siblings: 1 active

Threat Siblings: 1

Inherited Risk: 2/100

The immediate /24 neighborhood demonstrates minimal abuse density, consistent with cloud hosting infrastructure patterns.

---

## RELATIONSHIP GRAPH

Total Relationships: 122

Primary Associations:

---

## SECURITY ACTIONS RECOMMENDED

Current Risk Level: Low (25/100)

Recommendations: None required at this time. Standard defensive measures apply:

---

## INTELLIGENCE CONCLUSION

IP 217.154.47.221 represents a benign cloud infrastructure asset with established web server functionality. The low risk score (25), absence of threat indicators, and clean neighborhood profile support continued monitoring without immediate defensive action. The single proxy-related historical signal requires contextual evaluation but does not elevate current threat posture.

Analyst Notes: Asset appears to be part of IONOS SE cloud hosting infrastructure. No evidence of command-and-control activity, spam source behavior, or known attack patterns. Standard SOC monitoring protocols apply.

---

*Intelligence produced by IPDebrief® Security Intelligence Platform*

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ฌ๐Ÿ‡ง United Kingdom
RegionEngland
CityWorcester
TimezoneEurope/London
Latitude51.50
Longitude-0.12

๐Ÿข Ownership & Registration

OrganizationAS8560-MNT
ASNAS8560
Network Nameโ€”
CIDR Block217.154.47.0/24
RIRRIPE
Countryโ€”
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTRip217.154.47-221.pbiaas.com
Forward ConfirmedYes โ€” FCrDNS verified
Forward Hostnamesip217.154.47-221.pbiaas.com

๐Ÿ” DNS Hygiene

Hygiene Score80% (Excellent)
SPFPresent
DMARCPresent
FCrDNSVerified
DNSSECValid
CAANot configured

โ˜๏ธ Network Classification

InfrastructureUnknown
Service PurposeWeb Server
Network TierUnknown โ€” Insufficient routing data to classify
No specific classification

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
443httpstcpโ€”
22sshtcp
Closed Ports25, 80, 3389, 8080, 8443 (2 open / 7 scanned)
Serverโ€”
HTTP Titleโ€”
SSH VersionSSH-2.0-OpenSSH_9.6p1 Ubuntu-3ubuntu13.16

๐Ÿ” TLS Certificate

๐Ÿ”’
No certificate
Issued by โ€”
N/A
SANsNone
Valid Fromโ€”
Valid Untilโ€”

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
22%
24
routing
15%
22
services
28%
24
ownership
24%
23
reputation
22%
13
geolocation
27%
23
Overall23%1119
Coverage: 6/6 dimensions ยท Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (70%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-05-07 23:05:38 UTC
Last Seen2026-06-25 01:03:28 UTC
Profile Built2026-06-25 01:10:10 UTC
Data FreshnessLive
Signal Types28
Total Observations28
๐Ÿ” 28 signal types ยท 28 observations collected
This report is generated from 28+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.