Your IP: 216.73.216.123
๐ค Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.
IP Intelligence Briefing: 49.247.47.196
*Generated via IPDebrief analysis*
---
1. Core Profile
- Risk Rating: Low Risk (Risk Score: 25 / 100)
- Ownership: Registered to "IP Manager" (ASN 38700, APNIC) under netname "SMILESERV-KR".
- Geolocation: South Korea (KR), latitude 35.91, longitude 127.77. City field appears placeholder ("F").
- Network Role: Web server (HTTP/HTTPS, SSH). Banner: Apache/2.3.8 with PHP 5.5.38.
- Threat Indicators: No malicious activity detected (no blacklists, campaigns, or known attackers).
---
2. Historical Observations (Last 30 Days)
- Stability: Subnet (49.247.47.196/24) classified as "clean" with zero abuse density.
- Service Behavior: Consistent HTTP/HTTPS server behavior; no anomalies in TLS certificates or banners.
- Network Changes: No ownership or threat persistence detected.
---
3. Relationships & Network Context
- Network Affiliation: Linked to "SMILESERV-KR" (AS38700), a network with no known malicious activity.
- BGP Data: Prefix 49.247.0.0/17, route stability flagged as "unstable" (no recent route changes).
- DNS: No PTR records or domain associations detected.
---
4. Neighborhood Analysis
- Subnet: 49.247.47.196/24.
- Neighbor Activity: No active sibling IPs detected (abuse density: 0).
---
5. Recommendations
- Monitoring: No immediate action required; IP appears benign.
- Validation: Verify geolocation accuracy (city field "F" may be incorrect).
- Network Configuration: Confirm subnet isolation and BGP route stability for internal security.
Conclusion: 49.247.47.196 is a low-risk, legitimate web server in South Korea with no ties to malicious activity. No further action is needed unless new threats emerge.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | IP Manager |
| ASN | AS38700 |
| Network Name | SMILESERV-KR |
| CIDR Block | 49.247.0.0/16 |
| RIR | APNIC |
| Country | KR |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Web Server |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | โ |
| 443 | https | tcp | โ |
| 22 | ssh | tcp | |
| Closed Ports | 25, 3389, 8080, 8443 (3 open / 7 scanned) | ||
| Server | Apache/2.3.8 (Unix) mod_ssl/2.3.8 OpenSSL/1.0.2u DAV/2 PHP/5.5.38 |
| HTTP Title | โ |
| SSH Version | SSH-2.0-OpenSSH_9.6p1 Ubuntu-3ubuntu13.15 |
๐ TLS Certificate
CN=dosivote.com
Issued by CN=GoGetSSL RSA DV SSL CA 2, O=GoGetSSL, C=LV
Self-signed: No
| SANs | dosivote.comwww.dosivote.com |
| Valid From | 2025-11-21T00:00:00+00:00 |
| Valid Until | 2026-12-22T23:59:59+00:00 |
| TLS Protocol | Tls12 |
| Cipher Suite | TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 |
| Signature Algorithm | sha256RSA |
| Validity Period | 396 days |
| Serial Number | 3E148804DB8004B93D804D69958EA51B |
| Thumbprint | 94A7D1A45432B6B98FFA3E432DA8E582AB095B4E |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 43% | 2 | 5 |
| routing | 13% | 1 | 1 |
| services | 26% | 2 | 3 |
| ownership | 30% | 2 | 3 |
| reputation | 26% | 1 | 3 |
| geolocation | 21% | 2 | 2 |
| Overall | 26% | 10 | 17 |
Coverage: 6/6 dimensions ยท Data sufficiency: sufficient
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-07 23:04:24 UTC |
| Last Seen | 2026-06-23 15:15:08 UTC |
| Profile Built | 2026-06-23 15:23:08 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 24 |
๐ 21 signal types ยท 24 observations collected
This report is generated from 21+ independent intelligence signals including
ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds,
behavioral fingerprinting, and more.
Full dossier details are available via our API.
Full dossier details are available via our API.
โน๏ธ About This Report
All data shown is publicly available network metadata โ IP addresses do not reliably identify individuals.
Assessments are probabilistic and should not be used as sole basis for access control decisions.
To report an issue or request data review, contact admin@ipdebrief.com.