Thinking Process:
1. Analyze the Request:
* Role: IP intelligence analyst for IPDebrief (legitimate cybersecurity threat intelligence platform).
* Task: Generate an intelligence briefing for IP `31.58.244.121/32`.
* Input: A JSON profile containing overview, ownership, geolocation, threat indicators, network role, mobile carrier, DNS, and services data.
* Constraints:
* Answer concisely.
* Do not mention internal tools.
*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | Farhad Soltani |
| ASN | AS56971 |
| Network Name | CloudBackbone |
| CIDR Block | 31.58.244.0/24 |
| RIR | RIPE |
| Country | NL |
| Abuse Contact | Available via RDAP |
🌐 DNS Intelligence
| PTR | Riosting.com |
| Forward Confirmed | No — PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | Riosting.com |
🔐 DNS Hygiene
| Hygiene Score | 0% (None) |
| SPF | 0/2 domains |
| DMARC | 0/2 domains |
| FCrDNS | Not verified |
| DNSSEC | Not signed |
| CAA | Not configured |
| Domains Checked | 2 domains |
☁️ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Web Server |
| Network Tier | Unknown — Insufficient routing data to classify |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | — |
| 443 | https | tcp | — |
| 22 | ssh | tcp | Banner detected |
| Closed Ports | 25, 3389, 8080, 8443 (3 open / 7 scanned) | ||
| Server | Web server detected |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | chat.osiron.tech |
| Valid From | 2026-07-22T18:35:07+00:00 |
| Valid Until | 2026-10-20T18:35:06+00:00 |
| TLS Protocol | Tls13 |
| Cipher Suite | TLS_AES_256_GCM_SHA384 |
| Signature Algorithm | sha384ECDSA |
| Validity Period | 89 days |
🛡️ Public Network Snapshot
| Origin ASN | AS56971 |
| Network Prefix | 31.58.244.0/24 |
| Route mapping | Found |
| HSTS | Enabled |
| CSP | Not detected |
| HTTP/2 | Enabled |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 38% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 36% | 2 | 4 |
| ownership | 27% | 2 | 3 |
| reputation | 31% | 1 | 3 |
| geolocation | 37% | 2 | 3 |
| Overall | 30% | 10 | 18 |
| Data Coherence | Mostly Consistent (80%) — 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-07-18 17:43:02 UTC |
| Last Seen | 2026-09-29 03:07:53 UTC |
| Profile Built | 2026-09-28 02:53:43 UTC |
| Data Freshness | Live |
| Signal Types | 29 |
| Total Observations | 36 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 31.58.244.121
Who owns the IP address 31.58.244.121?
31.58.244.121 is registered to Farhad Soltani. The address falls within the 31.58.244.0/24 network block. Registration is held at RIPE.
Where is 31.58.244.121 located?
Geolocation data places 31.58.244.121 in Boston, US-MA, Netherlands. The local time zone is Europe/Amsterdam. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 31.58.244.121 malicious or safe?
31.58.244.121 currently carries a moderate risk assessment, meaning some indicators warrant caution, but the evidence is mixed. This assessment is generated from continuously collected signals and can change over time.
What is the hostname for 31.58.244.121?
The reverse DNS (PTR) record for 31.58.244.121 is Riosting.com. This hostname is not forward-confirmed, so it should be treated as a weak signal.
What ports are open on 31.58.244.121?
Responsive ports observed on 31.58.244.121 include 80, 443, 22. Port visibility reflects the most recent scan and may change as the host's configuration or firewall rules change.