IPDebrief

45.79.190.95

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP Intelligence Briefing: 45.79.190.95/32

## Executive Summary

IP address 45.79.190.95 operates on Linode cloud infrastructure (ASN 63949) with a moderate risk profile (score: 40). The IP is registered to US-based Cedar Knolls, NJ, but exhibits geolocation anomalies inconsistent with the claimed location. Neighborhood analysis indicates elevated abuse density (66.67%) within the /24 subnet, with two sibling IPs showing similar risk characteristics.

## Current Risk Assessment

## Technical Profile

Network Classification:

Active Services:

DNS Resolution:

## Geolocation Anomalies

Critical RTT discrepancy detected:

## Neighborhood Analysis

Subnet: 45.79.190.0/24

Notable Neighbors:

## Relationship Graph

63 total relationships identified:

## Historical Observations

28 signal observations recorded. Key temporal signals:

## Recommended Actions

Based on IPDebrief risk assessment:

Immediate Mitigation:

```bash

# iptables

iptables -A INPUT -s 45.79.190.95 -j DROP

# nftables

nft add rule inet filter input ip saddr 45.79.190.95 drop

# nginx

deny 45.79.190.95;

```

Cloud Platform Integration:

## Intelligence Assessment

This IP exhibits moderate risk primarily due to:

1. DNSBL presence with high-severity listing

2. Elevated neighborhood abuse density (66.67%)

3. Unverified geolocation data suggesting potential masking

4. Open SSH service without additional hardening indicators

Threat Actor Profile: None identified. No known campaigns, attacker indicators, or spam source classifications.

Recommended SOC Action: Monitor but do not block unless additional threat intelligence confirms malicious activity. The moderate risk score combined with cloud hosting infrastructure suggests potential for legitimate use with some abuse potential.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΊπŸ‡Έ United States
RegionNJ
CityCedar Knolls
Timezoneβ€”
Latitude40.82
Longitude-74.46

🏒 Ownership & Registration

OrganizationLinode
ASNAS63949
Network Nameβ€”
CIDR Block45.79.176.0/20
RIRARIN
Countryβ€”
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR45-79-190-95.ip.linodeusercontent.com
Forward ConfirmedYes β€” FCrDNS verified
Forward Hostnames45-79-190-95.ip.linodeusercontent.com

πŸ” DNS Hygiene

Hygiene Score40% (Fair)
SPFNot configured
DMARCNot configured
FCrDNSVerified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeSingle-Service Host
Network TierHosting β€” Infrastructure provider without advanced routing
CloudHosting

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
22sshtcp
Closed Ports25, 80, 443, 3389, 8080, 8443 (1 open / 7 scanned)
Serverβ€”
HTTP Titleβ€”
SSH VersionSSH-2.0-OpenSSH_8.9p1 Ubuntu-3ubuntu0.15

πŸ” TLS Certificate

πŸ”’
No certificate
Issued by β€”
N/A
SANsNone
Valid Fromβ€”
Valid Untilβ€”

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
45%
25
routing
31%
24
services
15%
22
ownership
27%
34
reputation
31%
13
geolocation
33%
23
Overall30%1221
Coverage: 6/6 dimensions Β· Data sufficiency: sufficient
Data CoherenceMostly Consistent (80%) β€” 1 contradiction(s)
AttributionModerate (55%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid
⚠ Claimed geolocation contradicts RTT physics measurement

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-05-19 15:39:10 UTC
Last Seen2026-06-28 09:22:16 UTC
Profile Built2026-06-29 03:27:32 UTC
Data FreshnessLive
Signal Types26
Total Observations31
πŸ” 26 signal types Β· 31 observations collected
This report is generated from 26+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.