# IP Intelligence Briefing: 38.246.33.56
Classification: LOW RISK / MONITOR
Date: 2026-07-30
Analyst: Automated Intelligence System
---
## EXECUTIVE SUMMARY
IP address 38.246.33.56/32 is operated by Limestone Networks, Inc. (ASN 46475) within the 38.246.33.0/24 block. The address presents a low-risk profile with a risk score of 30/100. No active threat indicators were detected. The subnet demonstrates clean classification with zero abuse density.
---
## OWNERSHIP & GEOLOCATION
Network: LIMESTONE-NETWORKS-CGNT-NET-17
Organization: Limestone Networks, Inc.
ASN: 46475
Country: United States (US)
CIDR Block: 38.246.33.0/24
Registration: ARIN
DNS Resolution: 56-33-246-38.static.reverse.lstn.net (lstn.net)
Reverse DNS: Forward resolution confirmed with 1 hostname entry.
---
## NETWORK SERVICES & EXPOSURE
Open Ports Identified:
- Port 443/TCP (HTTPS)
- Port 22/TCP (SSH - OpenSSH 7.6p1)
- Port 8080/TCP (HTTP-alt)
- Port 3389/TCP (RDP)
Service Classification: Web Server
Cloud/CDN/Proxy: Not detected
Anycast: No
---
## THREAT ASSESSMENT
Overall Risk Score: 30/100 (Low Risk)
Abuse Confidence: Not detected
Blacklist Status: 0 blacklists
DNSBL Listings: 1 of 8 total lists
Threat Indicators: None detected
Tor Exit Node: No
Known Attacker: No
Spam Source: No
Campaign Association: None
---
## SUBNET ANALYSIS (38.246.33.0/24)
Abuse Density: 0 (Clean)
Classification: Clean
Total Siblings: 2
Active Siblings: 1
Threat Siblings: 0
Neighboring IP Analysis:
- 38.246.33.9: Risk Score 25, Authority Score 50
The subnet demonstrates minimal threat concentration with no active malicious siblings.
---
## OBSERVATION HISTORY (21 Signals)
Recent Activity (2026-07-30):
- 2026-07-30T00:14:37: Network classification (confidence 0.30)
- 2026-07-30T00:12:56: Geolocation US via Cymru Country (confidence 0.35)
- 2026-07-30T00:12:06: HTTPS connection attempt failed
- 2026-07-30T00:11:56: Banner analysis (confidence 0.30)
- 2026-07-30T00:10:04: AS174 Cogent Communications detection (confidence 0.75) - *Note: Different ASN from current ownership*
Temporal Indicators:
- Ownership changes: 0
- Threat persistence: 0 days
- Threat observations: 0
- Persistently malicious: No
*Note: ASN AS174 (Cogent Communications) detected in historical signal differs from current ASN 46475, indicating potential historical routing changes.*
---
## RELATIONSHIP GRAPH
Total Relationships: 7
- 4x Same Network relationships (LIMESTONE-NETWORKS-CGNT-NET-17)
- 3x DNS Association relationships (56-33-246-38.static.reverse.lstn.net)
No external organization or certificate associations detected.
---
## CONTROL PLANE DATA
Origin ASN: 46475
BGP Prefix: 38.246.33.0/24
Route Stable: No
DNSSEC Valid: Yes
Operator Score: 0.1304 (Minimal)
IRR Consistency: Not available
---
## RECOMMENDED ACTIONS
Risk-Based Recommendations: None
Firewall Rules: Not required at this time
Monitoring: Standard logging recommended
Note: The IP presents low-risk characteristics. No immediate blocking or rate-limiting actions are warranted. However, the open RDP port (3389) and SSH port (22) should be monitored for unauthorized access attempts.
---
## INTELLIGENCE SUMMARY
IP 38.246.33.56 is a low-risk residential or hosting endpoint operated by Limestone Networks, Inc. The address shows minimal threat indicators and operates within a clean subnet. Historical signals indicate possible ASN transitions but no sustained malicious behavior. No correlation to known threat campaigns detected.
Recommendation: Continue standard monitoring. No immediate defensive action required.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Limestone Networks, Inc. |
| ASN | AS46475 |
| Network Name | LIMESTONE-NETWORKS-CGNT-NET-17 |
| CIDR Block | 38.246.33.0/24 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | 56-33-246-38.static.reverse.lstn.net |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | 56-33-246-38.static.reverse.lstn.net |
π DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Present |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Web Server |
| Network Tier | Unknown β Insufficient routing data to classify |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 443 | https | tcp | β |
| 22 | ssh | tcp | |
| 8080 | http-alt | tcp | β |
| 3389 | rdp | tcp | β |
| Closed Ports | 25, 80, 8443 (4 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
| SSH Version | SSH-2.0-OpenSSH_7.6p1 |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 0% | 0 | 0 |
| routing | 25% | 1 | 1 |
| services | 35% | 2 | 2 |
| ownership | 25% | 1 | 2 |
| reputation | 0% | 0 | 0 |
| geolocation | 0% | 0 | 0 |
| Overall | 14% | 4 | 5 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-07-24 14:26:32 UTC |
| Last Seen | 2026-07-30 00:08:52 UTC |
| Profile Built | 2026-07-30 00:17:44 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 22 |
Full dossier details are available via our API.