IPDebrief

38.104.154.234

IP Intelligence Dossier
Your IP: 216.73.217.34
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

Intelligence Briefing: 38.104.154.234/32

Overview and Risk Assessment

The IP address 38.104.154.234/32 was assessed as Low Risk with a risk score of 20. Data freshness indicates live observations between 2026-09-14 and 2026-09-27. The overall confidence in the assessment is labeled Very Low due to conflicting signals and insufficient data coverage.

Infrastructure and Ownership

Ownership was attributed to Cogent Communications, LLC (ASN 174) within the 38.0.0.0/8 block under the ARIN RIR. Network role analysis indicated the host was firewalled with no open services detected. The network path traversed Comcast and Cogent transit networks with a hop count of 12.

Threat Intelligence

No active threat indicators were found. The address was not flagged as a known attacker, spam source, or Tor exit node. Zero blacklist entries were recorded, and no known campaigns were associated with the IP. Behavioral analysis showed no honeypot hits, enumeration strikes, or WAF violations.

Geolocation and Validation

Geolocation data placed the address in Toronto, ON, US. However, the geolocation consensus was inconsistent, with sources disagreeing between the United States and Canada. Validation checks revealed a contradiction between claimed geolocation and RTT physics measurements, noting a 29ms round-trip time against a minimum possible distance of 112ms for the reported location.

DNS and Email

DNS PTR records resolved to Mail.mizeminces.com. Forward resolution was not confirmed. The associated domain lacked SPF and DMARC records, and no TXT records were present. Email authentication scores were unavailable.

Recommendation

Due to signal contradictions regarding geolocation and RTT metrics, the asset was assigned a Monitor status with low severity. No immediate firewall rules were generated. Analysts are advised to watch for changes in network behavior or the emergence of active indicators.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡จ๐Ÿ‡ฆ Canada
RegionQuebec
CityMontreal
Timezoneโ€”
Latitude45.51
Longitude-73.59

๐Ÿข Ownership & Registration

OrganizationCogent Communications, LLC
ASNAS174
Network NameCOGENT-A
CIDR Block38.0.0.0/8
RIRARIN
CountryUnited States
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTRMail.mizeminces.com
Forward ConfirmedNo โ€” PTR hostname does not resolve back to this IP (weak signal)
Forward HostnamesMail.mizeminces.com

๐Ÿ” DNS Hygiene

Hygiene Score0% (None)
SPF0/2 domains
DMARC0/2 domains
FCrDNSNot verified
DNSSECNot signed
CAANot configured
Domains Checked2 domains

โ˜๏ธ Network Classification

InfrastructureUnknown
Service PurposeFirewalled / No Services
Network TierUnknown โ€” Insufficient routing data to classify
No specific classification

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverโ€”
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
No certificate
Issued by โ€”
N/A
SANsNone
Valid Fromโ€”
Valid Untilโ€”

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
19%
22
routing
13%
11
services
19%
22
ownership
27%
23
reputation
13%
11
geolocation
27%
23
Overall20%1012
Coverage: 4/6 dimensions ยท Data sufficiency: partial
Data CoherenceMostly Consistent (80%) โ€” 1 contradiction(s)
AttributionLow (35%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid
โš  Claimed geolocation contradicts RTT physics measurement

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-09-14 12:48:34 UTC
Last Seen2026-09-27 10:28:25 UTC
Profile Built2026-09-27 10:34:48 UTC
Data FreshnessLive
Signal Types21
Total Observations28
๐Ÿ” 21 signal types ยท 28 observations collected
This report is generated from 21+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.