Your IP: 216.73.216.123
π€ Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.
IP Intelligence Briefing: 47.89.211.177
Date: 2026-06-12
---
**1. Core Profile**
- Risk Score: 25 (Low Risk)
- Ownership: Alibaba Cloud (US) | ASN 45102 | CIDR 47.89.192.0/18
- Geolocation: United States, California (ARIN-registered)
- Network Role: CloudCompute (Hosting / Firewalled)
- Threat Indicators: No malicious activity detected (no abuse confidence, blacklist, or campaign ties).
---
**2. Observation History**
- DNSSEC Valid: Confirmed (no DNSSEC issues).
- BGP Prefix: 47.89.192.0/19 (Alibaba Cloud).
- Network Stability: Route stability flagged as "unstable" (potential BGP changes).
- Subnet Abuse Density: 0% (no malicious neighbors in 47.89.211.177/24).
---
**3. Relationships**
- Linked Entities:
- Alibaba Cloud (US) network (multiple relationships).
- No direct ties to Tor, CDN, or VPN infrastructure.
- Services: No open ports or TLS certificates detected.
---
**4. Neighborhood Analysis**
- Subnet: 47.89.211.177/24
- Neighbor Count: 0 active IPs (no siblings or shared subnet activity).
- Abuse Density: 0% (no malicious IPs in the subnet).
---
**5. Recommendations**
- Monitor: Track BGP route stability and subnet activity for anomalies.
- Firewall: No immediate blocking required; low-risk profile.
- Investigate: Verify if the zero neighbor count is intentional (e.g., isolated cloud instance).
Conclusion: This IP is a low-risk cloud-hosted asset under Alibaba Cloud with no direct threat indicators. Focus on maintaining network stability and monitoring for unexpected changes.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Alibaba Cloud - US |
| ASN | AS45102 |
| Network Name | ALIBABA CLOUD - US |
| CIDR Block | 47.89.192.0/18 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | β |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | β |
| HTTP Title | β |
π TLS Certificate
No certificate
Issued by β
N/A
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 0% | 0 | 0 |
| routing | 0% | 0 | 0 |
| services | 0% | 0 | 0 |
| ownership | 19% | 2 | 2 |
| reputation | 0% | 0 | 0 |
| geolocation | 13% | 1 | 1 |
| Overall | 5% | 3 | 3 |
Coverage: 2/6 dimensions Β· Data sufficiency: partial
| Data Coherence | Mostly Consistent (80%) β 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
β Claimed geolocation contradicts RTT physics measurement
π Observation Timeline π Live
| First Seen | 2026-06-04 00:32:43 UTC |
| Last Seen | 2026-06-12 23:57:35 UTC |
| Profile Built | 2026-06-13 00:06:13 UTC |
| Data Freshness | Live |
| Signal Types | 16 |
| Total Observations | 16 |
π 16 signal types Β· 16 observations collected
This report is generated from 16+ independent intelligence signals including
ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds,
behavioral fingerprinting, and more.
Full dossier details are available via our API.
Full dossier details are available via our API.
βΉοΈ About This Report
All data shown is publicly available network metadata β IP addresses do not reliably identify individuals.
Assessments are probabilistic and should not be used as sole basis for access control decisions.
To report an issue or request data review, contact admin@ipdebrief.com.