IP Intelligence Briefing: 51.79.67.162
*Generated via IPDebrief Threat Intelligence Platform*
---
**1. Core Profile**
- Risk Score: 50 (Moderate Risk)
- Ownership:
- ASN: 16276 (OVH Hosting, Inc.)
- Netblock: 51.79.64.0/21
- RIR: ARIN
- Geolocation:
- Country: Canada (CA)
- City: QC (possibly Quebec, inferred via DNS)
- Latitude/Longitude: Unresolved
- Network Role:
- Cloud Compute (OVH VPS)
- No active services or open ports detected
- No DNSSEC/CAA misconfigurations
---
**2. Threat & Behavior**
- Threat Indicators:
- No malicious campaigns, spam, or DNSBL listings
- No Tor exit node, known attacker, or phishing indicators
- Observation History:
- 18 observations from 2026-06-01 (likely data anomaly, as current date is 2023)
- Subnet abuse density: 0.5 (mixed risk)
- No persistent malicious activity or ownership changes
---
**3. Relationships & Neighbors**
- DNS Associations:
- Resolves to `vps-4b449f9e.vps.ovh.ca` (OVH-hosted VPS)
- Subnet Neighbors:
- Subnet: 51.79.67.162/24
- 1 high-risk neighbor (51.79.67.63, score 50)
- 0 active malicious IPs in the subnet
---
**4. Recommended Actions**
- Firewall Rules:
- Block IP via:
```bash
iptables -A INPUT -s 51.79.67.162 -j DROP
nft add rule inet filter input ip saddr 51.79.67.162 drop
```
- Cloud WAF rules (Cloudflare/AWS) provided in full profile.
- Monitoring:
- Track DNS and subnet activity for anomalies.
- Verify geolocation accuracy (city field unconfirmed).
---
**5. Summary**
This IP is associated with a legitimate OVH VPS instance, showing no immediate malicious behavior. While the subnet has a moderate abuse density, the IP itself lacks threat indicators. Exercise caution with the observation history dates (likely a data error) and consider blocking the IP as a precautionary measure given its cloud-hosted nature and subnet context.
*Threat Level: LowβModerate | Confidence: Medium*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | OVH Hosting, Inc. |
| ASN | AS16276 |
| Network Name | VPS-BHS6 |
| CIDR Block | 51.79.64.0/21 |
| RIR | ARIN |
| Country | Canada |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | vps-4b449f9e.vps.ovh.ca |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | vps-4b449f9e.vps.ovh.ca |
π DNS Hygiene
| Hygiene Score | 80% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 35% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 13% | 1 | 1 |
| ownership | 27% | 2 | 3 |
| reputation | 13% | 1 | 2 |
| geolocation | 30% | 2 | 4 |
| Overall | 22% | 9 | 14 |
| Data Coherence | Mostly Consistent (80%) β 1 contradiction(s) |
| Attribution | Moderate (55%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-29 12:05:23 UTC |
| Last Seen | 2026-06-29 06:31:38 UTC |
| Profile Built | 2026-06-29 06:36:40 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 22 |
Full dossier details are available via our API.