IP Intelligence Briefing: 217.182.194.26
Date: 2026-06-12
---
**Risk Assessment**
- Overall Risk: Moderate (Risk Score: 50/100)
- Provider Risk: OVH (ASN 16276)
- Threat Indicators: No malicious activity detected in 30-day history.
- Subnet Abuse Density: 33.33% (mixed classification, 2 threat siblings in /24 subnet).
---
**Ownership & Geolocation**
- Organization: Octave Klaba (OVH)
- Country: France (FR)
- City: Roubaix
- Network Role: Cloud compute instance (OVH infrastructure).
- DNS:
- PTR hostname: `ns3076798.ip-217-182-194.eu`
- SPF record present; no DMARC or CAA records.
---
**Network & Security Controls**
- BGP Prefix: 217.182.0.0/16 (OVH)
- DNSSEC: Validated
- Firewall/Services: No open ports, no TLS certificates, no HTTP services.
- ICMP Validation: Blocked (traceroute failed, distance estimate: 500 km).
---
**Neighbor Analysis**
- Subnet: 217.182.194.26/24
- Active Neighbors (5 total):
- 1 high-risk (50/100), 4 low-risk (25/100).
- Notable: 217.182.194.25 (moderate risk).
- Subnet Abuse: 0.33 abuse density; mixed benign/malicious activity.
---
**Historical Trends**
- Recent Observations (2026-06-01 to 2026-06-12):
- No persistent threats; 0 malicious campaigns detected.
- DNSSEC and BGP stability flagged as "basic" risk.
- ICMP blocking may obscure geolocation accuracy.
---
**Actionable Intelligence**
1. Monitor Subnet: Track 217.182.194.24/24 for abnormal traffic patterns.
2. Verify DNS: Confirm SPF validity and investigate missing DMARC/CAA records.
3. Geolocation Validation: Use alternative methods (e.g., TLS fingerprints) to confirm location.
4. Firewall Rules: Consider blocking high-risk neighbors (e.g., 217.182.194.25) if traffic is observed.
Note: No immediate mitigation required, but continuous monitoring is advised due to subnet abuse density and ICMP blocking.
---
*Generated by IPDebrief Threat Intelligence Platform*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Octave Klaba |
| ASN | AS16276 |
| Network Name | FR-OVH-20010302 |
| CIDR Block | 217.182.0.0/16 |
| RIR | RIPE |
| Country | FR |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | ns3076798.ip-217-182-194.eu |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | ns3076798.ip-217-182-194.eu |
๐ DNS Hygiene
| Hygiene Score | 60% (Good) |
| SPF | Present |
| DMARC | Not configured |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 โ Basic operator with some routing infrastructure |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 21% | 2 | 2 |
| routing | 13% | 1 | 1 |
| services | 13% | 1 | 1 |
| ownership | 27% | 2 | 3 |
| reputation | 17% | 1 | 2 |
| geolocation | 27% | 2 | 3 |
| Overall | 20% | 9 | 12 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-31 17:24:09 UTC |
| Last Seen | 2026-06-21 06:37:17 UTC |
| Profile Built | 2026-06-21 06:39:44 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 22 |
Full dossier details are available via our API.