IPDebrief

37.46.199.86

IP Intelligence Dossier
Your IP: 216.73.216.5
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP Intelligence Briefing: 37.46.199.86/32

## Executive Summary

IP address 37.46.199.86 was analyzed on 2026-07-29 and classified as low risk with a risk score of 0. The address belongs to Netrouting Network Operations (ASN 6206), a legitimate network provider in the Netherlands. No active threat indicators, blacklists, or malicious campaigns were detected during observation.

## Ownership and Infrastructure

The IP address is owned by Netrouting Network Operations under network NL-NETROUTING-20120113 within the 37.46.192.0/21 CIDR block. ASN 6206 registered with RIR RIPE. The address operates under control plane origin ASN 6206 with BGP prefix 37.46.198.0/23. Network classification showed no provider, CDN, VPN, proxy, or hosting characteristics.

## Geolocation

Geolocation data placed the address in the Netherlands (NL) with coordinates 52.13°N, 5.29°E under Europe/Amsterdam timezone. The 150km accuracy radius indicated multi-signal inference. Geolocation consensus was true across 1 source.

## Threat Assessment

The IP address showed no threat indicators. Blacklist count was 0 with no known campaigns. IsTorExit, isKnownAttacker, and isSpamSource flags were all false. Abuse confidence score was null. No email authentication records (SPF/DMARC) were present. No open ports were detected, and service purpose was classified as "Firewalled / No Services." No TLS certificates or HTTP titles were observed.

## Historical Observations

Fourteen signal observations were recorded, most recently at 2026-07-29T16:30:28Z. Observations covered ownership, network classification, geolocation, DNSSEC validation, and blacklist listings. No ownership changes occurred. Threat persistence days were 0, and the address was not marked as persistently malicious.

## Neighborhood Analysis

The /24 subnet (37.46.199.86/24) showed an abuse density of 0.3333 with "mostly_clean" classification. The subnet contained 3 total siblings with 2 active siblings. Of the neighbors, 37.46.199.54 showed a risk score of 25 with authority score 50, while 37.46.199.70 showed risk score 0 with authority score 50. One threat sibling was identified in the neighborhood.

## Network Connectivity

Traceroute analysis recorded 18 hops with transit networks Comcast and NTT. Hop count was normal for international routing. RTT measurements showed first hop at 0.2ms and last hop at 110.9ms. Two hops timed out during the probe.

## Recommended Actions

No specific security actions or firewall rules were generated based on the IP's risk profile. The low-risk classification and absence of threat indicators suggest standard operational monitoring is appropriate.

## Intelligence Conclusions

IP 37.46.199.86 demonstrated normal operational behavior for a network provider address with no evidence of malicious activity. The neighborhood analysis showed minimal risk distribution. SOC analysts may treat this address as low priority for monitoring and may allow standard traffic with conventional logging.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ณ๐Ÿ‡ฑ Netherlands
Regionโ€”
Cityโ€”
TimezoneEurope/Amsterdam
Latitude52.13
Longitude5.29

๐Ÿข Ownership & Registration

OrganizationNetrouting Network Operations
ASNAS6206
Network NameNL-NETROUTING-20120113
CIDR Block37.46.192.0/21
RIRRIPE
CountryNL
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTR RecordNo PTR
Forward ConfirmedNo โ€” PTR hostname does not resolve back to this IP (weak signal)

๐Ÿ” DNS Hygiene

Hygiene Score20% (Poor)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECValid
CAANot configured

โ˜๏ธ Network Classification

InfrastructureUnknown
Service PurposeFirewalled / No Services
Network TierUnknown โ€” Insufficient routing data to classify
No specific classification

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverโ€”
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
No certificate
Issued by โ€”
N/A
SANsNone
Valid Fromโ€”
Valid Untilโ€”

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
0%
00
routing
0%
00
services
0%
00
ownership
25%
12
reputation
0%
00
geolocation
0%
00
Overall4%12
Coverage: 1/6 dimensions ยท Data sufficiency: partial
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-07-23 01:41:34 UTC
Last Seen2026-08-02 04:45:43 UTC
Profile Built2026-07-31 19:33:28 UTC
Data FreshnessLive
Signal Types17
Total Observations17
๐Ÿ” 17 signal types ยท 17 observations collected
This report is generated from 17+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.