IPDebrief

45.79.165.102

IP Intelligence Dossier
Your IP: 216.73.217.34
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

IP Intelligence Briefing: 45.79.165.102/32

Executive Summary

Intellect analysis of 45.79.165.102 identified a low-risk cloud infrastructure endpoint hosted on Linode (ASN 63949) with minimal threat indicators. The IP maintains a risk score of 25, operates within the 45.79.0.0/16 block, and demonstrates no active threat behaviors.

Ownership and Network Classification

The endpoint belongs to Linode's cloud compute infrastructure. Route origin confirmed as 45.79.160.0/20 under AS63949. The subnet 45.79.165.0/24 registers abuse density of zero with no active or threat-adjacent siblings. Control plane analysis indicates route stability with minimal operator activity (0.1304 score).

Geolocation and RTT Validation

Geolocation data reported United States, New Jersey region (Cedar Knolls). However, geo-validation flagged an RTT anomaly: observed 24ms round-trip time falls below the minimum theoretical threshold of 119.8ms for the claimed distance, resulting in geoPlausible=false status. This suggests the endpoint may be reporting inaccurate geolocation data.

DNS and Service Profile

Reverse DNS resolution points to imsecureapp.com with forward resolution confirmation pending. Domain exhibits SPF and DMARC records present. Service scan returned no open ports, indicating the endpoint is either firewalled or inactive for public-facing services. No TLS certificates or HTTP banners detected.

Threat Intelligence Findings

No threat indicators identified:

Historical Observation

Analysis of 20 historical observations from 2026-08-13 showed consistent network classification with stable ownership. Recent scanning activity detected but without malicious indicators.

Security Recommendations

No immediate firewall or blocking actions recommended based on current risk profile. The IP presents as a benign cloud endpoint with no evidence of malicious activity. SOC teams may monitor for future behavioral changes, particularly given the geolocation inconsistencies observed.

Classification

Clean / Low Risk β€” No action required at this time.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΊπŸ‡Έ United States
RegionNew Jersey
CityCedar Knolls
Timezoneβ€”
Latitude40.82
Longitude-74.46

🏒 Ownership & Registration

OrganizationLinode
ASNAS63949
Network NameLINODE
CIDR Block45.79.0.0/16
RIRARIN
CountryUnited States
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTRimsecureapp.com
Forward ConfirmedNo β€” PTR hostname does not resolve back to this IP (weak signal)
Forward Hostnamesimsecureapp.com

πŸ” DNS Hygiene

Hygiene Score60% (Good)
SPFPresent
DMARCPresent
FCrDNSNot verified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeWeb Server
Network TierHosting β€” Infrastructure provider without advanced routing
CloudHosting

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
ServerApache/2.4.6
HTTP Titleβ€”
SSH VersionSSH-2.0-OpenSSH_6.6.1

πŸ” TLS Certificate

πŸ”’
No certificate
Issued by β€”
N/A
SANsNone
Valid Fromβ€”
Valid Untilβ€”
TLS ProtocolTls12
Cipher SuiteTLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
Signature Algorithmsha256RSA
Validity Period198 days
Serial Number00F4B71CE33BF77B041410E3A7133A4EBD
Thumbprint212B445BC63E4CA22079C58700E36D5B57EAF545

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
35%
22
routing
25%
11
services
25%
11
ownership
50%
23
reputation
25%
11
geolocation
25%
11
Overall30%89
Coverage: 6/6 dimensions Β· Data sufficiency: sufficient
Data CoherenceMostly Consistent (80%) β€” 1 contradiction(s)
AttributionLow (35%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid
⚠ Claimed geolocation contradicts RTT physics measurement

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-08-10 17:29:00 UTC
Last Seen2026-08-30 17:30:31 UTC
Profile Built2026-08-30 17:42:14 UTC
Data FreshnessLive
Signal Types24
Total Observations29
πŸ” 24 signal types Β· 29 observations collected
This report is generated from 24+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.