## IP Intelligence Briefing: 38.183.88.205
Classification: Low-Risk / Observational Interest
Risk Score: 25/100
Date: July 24, 2026
---
Executive Summary
IP address 38.183.88.205 presents a low-risk profile with no active threat indicators. The address is currently firewalled with no open services detected. While DNSBL listings show one high-severity listing among eight total checks, the IP lacks active threat indicators, known campaign associations, or persistent malicious behavior patterns.
---
Technical Profile
Ownership & Routing:
- Origin ASN: 273912
- BGP Prefix: 38.183.88.0/24
- Operator Score: 0.1304 (Minimal)
- Route Stability: Unstable (route changes detected)
- RIR Registry: Not resolved
- ASN/ORG: Null (no clear assignment)
Geolocation:
- Country: US (inferred)
- Discrepancy noted: Buenos Aires, Argentina also reported in MaxMind Geolite2
- Geo Confidence: Low (35% confidence on US detection)
- Geo Plausibility: False (data inconsistency)
Network Services:
- Open Ports: None
- TLS Certificates: None
- HTTP Services: None detected
- Classification: Firewalled / No Services
DNS Analysis:
- PTR Hostnames: Empty
- Forward Resolution: Unconfirmed
- Hosted Domains: 0
- SPF/DMARC: Not configured
- DNSBL Status: Listed on 1 of 8 threat feeds (max severity: high)
- DNSSEC: Valid
---
Threat Indicators
Current Status:
- Threat Indicators: None
- Known Campaigns: None
- Is Known Attacker: False
- Is Spam Source: False
- Is Tor Exit Node: False
- Total Incidents: 0
- Auto-Banned: No
Behavioral Analysis:
- Honeypot Hits: 0
- Enumeration Strikes: 0
- WAF Violations: 0
- Active Attacker: False
- Persistently Malicious: False
---
Historical Trends
Observation Period: 10 data points (recent 2026-07-24)
Key Observations:
- Geolocation signals show conflicting country assignments (US vs Argentina)
- Operator score consistently at minimal levels (0.1304)
- DNSBL listing present with high-severity designation
- Multiple signal types observed with varying confidence (0.12–0.85)
- No persistent threat evolution detected
Temporal Analysis:
- Ownership Changes: 0
- Threat Persistence Days: 0
- Threat Observation Count: 0
- Is Persistently Malicious: False
---
Subnet Neighborhood
Analysis: 38.183.88.0/24
- Subnet Abuse Density: 0
- Total Siblings: 0
- Active Siblings: 0
- Threat Siblings: 0
- Neighbor IPs: None indexed
- Risk Distribution: All null/zero
The /24 subnet shows no neighboring threat indicators or abuse density patterns.
---
Relationship Graph
Connected Entities: None
- No associated hostnames
- No organization links
- No certificate associations
- No correlated IPs detected
---
Recommended Actions
Firewall Rule:
- Monitor: Pass with logging
- Block: Not recommended (low risk score, no active threats)
Additional Notes:
- Investigate DNSBL listing source for context
- Monitor for service activation (currently firewalled)
- No immediate mitigation required
Priority: LOW
Action Required: MONITOR
---
Analysis Complete: July 24, 2026
Data Sources: IPDebrief Intelligence Platform
Confidence Level: Standard (multiple data sources triangulated)
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | Cogent Communications, LLC |
| ASN | AS174 |
| Network Name | COGENT-A |
| CIDR Block | 38.0.0.0/8 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
🌐 DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No — PTR hostname does not resolve back to this IP (weak signal) |
🔐 DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
☁️ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown — Insufficient routing data to classify |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | — |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | None |
| Valid From | — |
| Valid Until | — |
🛡️ Public Network Snapshot
| Origin ASN | AS174 |
| Network Prefix | 38.0.0.0/8 |
| Route mapping | Found |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 8% | 1 | 1 |
| routing | 8% | 1 | 1 |
| services | 8% | 1 | 1 |
| ownership | 17% | 2 | 3 |
| reputation | 8% | 1 | 1 |
| geolocation | 12% | 2 | 2 |
| Overall | 10% | 8 | 9 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-07-08 06:55:14 UTC |
| Last Seen | 2026-08-30 07:42:55 UTC |
| Profile Built | 2026-08-29 06:42:08 UTC |
| Data Freshness | Live |
| Signal Types | 14 |
| Total Observations | 16 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 38.183.88.205
Who owns the IP address 38.183.88.205?
38.183.88.205 is registered to Cogent Communications, LLC. The address falls within the 38.0.0.0/8 network block. Registration is held at ARIN.
Where is 38.183.88.205 located?
Geolocation data places 38.183.88.205 in Ministro Rivadavia, Buenos Aires, Argentina. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 38.183.88.205 malicious or safe?
38.183.88.205 currently carries a low risk assessment, meaning no significant threat indicators have been observed. This assessment is generated from continuously collected signals and can change over time.