IPDebrief

5.162.9.239

IP Intelligence Dossier
Your IP: 216.73.217.131
{ } JSON 🔧 Full Actions API
🤖 Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# Intelligence Briefing: IP 5.162.9.239/32

Classification: Low Risk

Date: 2026-07-25

Analyst: IPDebrief Intelligence

---

## Executive Summary

IP 5.162.9.239 is classified as Low Risk with a risk score of 0. The address belongs to Nawras-NOC (ASN 50010), a legitimate Oman-based telecommunications operator. No active threats, malware indicators, or abuse signals were detected during the assessment period.

---

## Ownership and Network Context

---

## Geolocation Analysis

Primary Location: Oman (OM)

Note: Geolocation sources show conflicting data (France/Marseille vs. Oman), but ownership and DNS records consistently point to Omani telecommunications infrastructure. This discrepancy is common with multi-homed residential/mobile ISP allocations.

---

## Threat Intelligence Assessment

Risk Indicators

Malware/Abuse Signals

Network Services

---

## Neighborhood Analysis (5.162.9.0/24)

The /24 subnet shows no adjacent risk concentration, indicating isolated legitimate usage.

---

## Historical Observations (15 signals over observation window)

Recent Observations (2026-07-25):

Temporal Analysis:

---

## Relationship Graph

Target TypeTarget ValueRelationship
NetworkNAWRAS-NETSame Network
Hostnamedynamic.isp.ooredoo.omDNS Association
Hostnamedynamic.isp.ooredoo.omDNS Association

---

## Recommended Actions

Current Risk Score: 0

Recommendations: None

Given the low risk profile and legitimate telecom infrastructure status, no immediate blocking or mitigation actions are recommended. Standard allow-listing for trusted Omani ISP traffic is appropriate.

---

## Intelligence Conclusion

IP 5.162.9.239 represents legitimate telecommunications infrastructure operated by Nawras-NOC in Oman. The address shows no evidence of malicious activity, abuse, or threat association. The geolocation discrepancy between France and Oman appears to be a data quality issue with geolocation providers rather than actual misattribution. The IP is suitable for allow-listing in network security policies and should not trigger security alerts under normal conditions.

Disposition: Monitor but no action required.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

Country🇫🇷 France
RegionMuscat
CityMarseille
TimezoneEurope/Paris
Latitude23.58
Longitude58.40

🏢 Ownership & Registration

OrganizationNawras-NOC
ASNAS50010
Network NameNAWRAS-NET
CIDR Block5.162.0.0/18
RIRRIPE
CountryOM
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTRdynamic.isp.ooredoo.om
Forward ConfirmedNo — PTR hostname does not resolve back to this IP (weak signal)
Forward Hostnamesdynamic.isp.ooredoo.om

🔐 DNS Hygiene

Hygiene Score60% (Good)
SPF2/2 domains
DMARC2/2 domains
FCrDNSNot verified
DNSSECValid
CAANot configured
Domains Checked2 domains

☁️ Network Classification

InfrastructureUnknown
Service PurposeFirewalled / No Services
Network TierUnknown — Insufficient routing data to classify
No specific classification

🔌 Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Server—
HTTP Title—

🔐 TLS Certificate

🔒
No certificate
Issued by —
N/A
SANsNone
Valid From—
Valid Until—

🛡️ Public Network Snapshot

Origin ASNAS50010
Network Prefix5.162.8.0/21
Route mappingFound

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
0%
00
routing
0%
00
services
0%
00
ownership
0%
00
reputation
0%
00
geolocation
25%
11
Overall4%11
Coverage: 1/6 dimensions · Data sufficiency: partial
Data CoherenceMostly Consistent (80%) — 1 contradiction(s)
AttributionLow (35%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid
⚠ Geo sources disagree on country: OM, FR

📅 Observation Timeline 🔄 Live

First Seen2026-07-09 19:41:13 UTC
Last Seen2026-08-27 02:09:39 UTC
Profile Built2026-08-29 06:31:24 UTC
Data FreshnessLive
Signal Types20
Total Observations22
🔍 20 signal types · 22 observations collected
This report is generated from 20+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API 🔧 Actions API 📧 Enterprise Access

❓ Frequently Asked Questions About 5.162.9.239

Who owns the IP address 5.162.9.239?

5.162.9.239 is registered to Nawras-NOC. The address falls within the 5.162.0.0/18 network block. Registration is held at RIPE.

Where is 5.162.9.239 located?

Geolocation data places 5.162.9.239 in Marseille, Muscat, France. The local time zone is Europe/Paris. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.

Is 5.162.9.239 malicious or safe?

5.162.9.239 currently carries a low risk assessment, meaning no significant threat indicators have been observed. This assessment is generated from continuously collected signals and can change over time.

What is the hostname for 5.162.9.239?

The reverse DNS (PTR) record for 5.162.9.239 is dynamic.isp.ooredoo.om. This hostname is not forward-confirmed, so it should be treated as a weak signal.

🏘️ Related IP Addresses

Browse related networks

ℹ️ About This Report

All data shown is publicly available network metadata — IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.