# IP INTELLIGENCE BRIEFING
Target: 37.233.80.164/32
Date: July 28, 2026
Classification: Low Risk / No Action Required
---
## EXECUTIVE SUMMARY
IP address 37.233.80.164 presents as a low-risk endpoint with no observable malicious activity. The address is associated with ASN 49505 (Cyrill Malevanov) within the RU-SELECTEL-20120413 network block in Russia. No threat indicators, blacklist listings, or active services were detected. Recommended disposition: Monitor passively; no immediate action required.
---
## TECHNICAL PROFILE
Ownership & Registration
- ASN: 49505 (Cyrill Malevanov)
- Network: 37.233.80.0/24
- Network Name: RU-SELECTEL-20120413
- RIR: RIPE
- Country: RU (Russia)
- Registration Age: 6,249 days (since June 18, 2009)
Network Classification
- Service Purpose: Firewalled / No Services
- Infrastructure Type: None detected
- Cloud/CDN/Proxy/VPN: No
- Mobile Carrier: None
- DNS Classification: Clean
- Subnet Abuse Density: 0.0
Risk Assessment
- Overall Risk Score: 0 (Low Risk)
- Provider Score: 0
- Authority Score: 0
- Abuse Confidence Score: None
- Operator Score: 0.1304 (Minimal)
---
## OBSERVATION HISTORY
BGP & Routing
- Origin ASN: 49505
- AS Path: 37100 → 49505
- Route Status: Active
- Route Stability: 1 change in last 30 days
- MOAS Status: Not a Multiple Origin Autonomous System
Connectivity
- Traceroute: 30 hops (29 timed out)
- First Hop RTT: 0.4ms
- Last Hop RTT: 0.4ms
Historical Signals (16 Observations)
Recent observations (July 28, 2026) confirm:
- ASN allocation remains stable (6,249 days)
- Subnet classification: Clean
- Inherited risk: 0
- Abuse density in subnet: 0
- Threat siblings: 0
---
## SERVICE & DNS ANALYSIS
Open Services
- Open Ports: None detected
- HTTP Title: None
- TLS Certificate: None
- Server Banner: None
- Total Services: 0
DNS Configuration
- PTR Records: None
- Forward Resolution: Not confirmed
- Hosted Domains: 0
- Email Authentication:
- SPF: Not configured
- DMARC: Not configured
- TXT Record Count: 0
Control Plane
- DNSSEC Valid: Yes
- DNSBL Listed: 0/8 lists
- IRR Consistency: Unknown
- Route Changes (30d): 1
---
## RELATIONSHIP MAPPING
Connected Entities (2 relationships identified)
- Type: Same Network
- Target: RU-SELECTEL-20120413 (x2)
No relationships to external organizations, hostnames, or certificates detected.
---
## NEIGHBORHOOD ANALYSIS
Subnet: 37.233.80.0/24
- Total Siblings: 255 (IPv4 /24)
- Active Siblings: 0
- Threat Siblings: 0
- Risk Distribution:
- High Risk: 0
- Medium Risk: 0
- Low Risk: 0
- Abuse Density: 0.0
---
## CAMPAIGN & THREAT INTELLIGENCE
Threat Indicators
- Known Attacker: No
- Spam Source: No
- Tor Exit Node: No
- Blacklist Count: 0
- Threat Feeds: None
- Known Campaigns: None
- Campaign Likelihood: N/A
Behavioral Signals
- Honeypot Hits: 0
- Enumeration Strikes: 0
- WAF Violations: 0
- Total Incidents: 0
- Auto-Banned: No
- Persistently Malicious: No
---
## RECOMMENDED ACTIONS
Security Recommendations
- Block: Not recommended (risk score: 0)
- Monitor: Passive monitoring acceptable
- Investigate: No immediate investigation required
Firewall Rules
- No actionable firewall rules generated based on current risk profile.
---
## ASSESSMENT
IP 37.233.80.164 demonstrates a clean threat profile with zero risk indicators. The address is part of a stable Russian network (ASN 49505) with no observed malicious activity. The subnet shows minimal change activity (1 route change in 30 days) and zero threat siblings. No services are running on the endpoint, suggesting it may be a residential or unused address.
Disposition: Passively monitor; no blocking or alerting required at this time.
---
Report Generated: July 28, 2026
Data Sources: IPDebrief Intelligence Platform
Status: Intelligence Complete
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | Cyrill Malevanov |
| ASN | AS49505 |
| Network Name | RU-SELECTEL-20120413 |
| CIDR Block | 37.233.80.0/24 |
| RIR | RIPE |
| Country | RU |
| Abuse Contact | Available via RDAP |
🌐 DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No — PTR hostname does not resolve back to this IP (weak signal) |
🔐 DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
☁️ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown — Insufficient routing data to classify |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | — |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | None |
| Valid From | — |
| Valid Until | — |
🛡️ Public Network Snapshot
| Origin ASN | AS49505 |
| Network Prefix | 37.233.80.0/24 |
| Route mapping | Found |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 23% | 2 | 4 |
| routing | 17% | 2 | 3 |
| services | 12% | 2 | 2 |
| ownership | 19% | 3 | 4 |
| reputation | 8% | 1 | 2 |
| geolocation | 8% | 1 | 1 |
| Overall | 14% | 11 | 16 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-07-17 05:00:50 UTC |
| Last Seen | 2026-08-31 18:58:49 UTC |
| Profile Built | 2026-08-31 19:11:19 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 26 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 37.233.80.164
Who owns the IP address 37.233.80.164?
37.233.80.164 is registered to Cyrill Malevanov. The address falls within the 37.233.80.0/24 network block. Registration is held at RIPE.
Where is 37.233.80.164 located?
Geolocation data places 37.233.80.164 in Russia. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 37.233.80.164 malicious or safe?
37.233.80.164 currently carries a low risk assessment, meaning no significant threat indicators have been observed. This assessment is generated from continuously collected signals and can change over time.