IP Intelligence Briefing: 62.84.182.140
Date: June 10, 2026
---
**1. Core Profile**
- Risk Score: 25 (Low Risk)
- Ownership: Owned by Johannes Selg (ASN 51167, Contabo provider).
- Geolocation: Lauterbourg, Grand Est, Germany (51.17°N, 10.45°E).
- Network Role: CloudCompute web server (nginx, HTTP/HTTPS, SSH).
- Threat Indicators: No malicious activity detected (no blacklists, campaigns, or Tor/VPN associations).
---
**2. Observations & Behavior**
- Service Activity:
- HTTP/HTTPS (nginx server, valid Letβs Encrypt TLS certificate).
- SSH (OpenSSH 10.0p2).
- No suspicious banners or vulnerabilities detected.
- DNS:
- PTR record: `mail.triny.uz` (SPF/DMArc configured).
- No domain hosting or email authentication risks.
- History:
- Stable for 30 days (no abrupt risk changes).
- HTTP responses consistent (200 OK, nginx server).
---
**3. Relationships & Context**
- DNS Associations:
- Linked to `mail.triny.uz` (multiple DNS records).
- Network Peers:
- Subnet `62.84.182.140/24` classified as "clean" with 0 abuse density.
- No neighboring IPs detected (empty neighbor list).
---
**4. Threat & Risk Analysis**
- Threat Score: 0/10 (no malicious indicators).
- Provider/Operator: Contabo (cloud infrastructure, no abuse reports).
- Subnet Security: Low-risk subnet with no malicious siblings.
---
**5. Recommendations**
- Monitor: Track DNS records (`mail.triny.uz`) for unexpected changes.
- Verify: Confirm ownership legitimacy via RDAP (Johannes Selg).
- Firewall: Allow standard HTTP/HTTPS/SSH ports (80, 443, 22) as no blocking evidence exists.
---
Conclusion: 62.84.182.140 is a legitimate, low-risk cloud server with no current threat indicators. No defensive action required at this time.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Johannes Selg |
| ASN | AS51167 |
| Network Name | β |
| CIDR Block | β |
| RIR | RIPE |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | mail.triny.uz |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | mail.triny.uz |
π DNS Hygiene
| Hygiene Score | 80% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | β |
| 443 | https | tcp | β |
| 22 | ssh | tcp | |
| Closed Ports | 25, 3389, 8080, 8443 (3 open / 7 scanned) | ||
| Server | nginx |
| HTTP Title | β |
| SSH Version | SSH-2.0-OpenSSH_10.0p2 Debian-7+deb13u4 |
π TLS Certificate
CN=home.triny.uz was found on this IP. This may indicate a previously hosted website, a decommissioned service, or stale infrastructure.| SANs | home.triny.uz |
| Valid From | 2026-03-28T16:55:44+00:00 |
| Valid Until | 2026-06-26T16:55:43+00:00 (expired) |
| TLS Protocol | Tls13 |
| Cipher Suite | TLS_AES_256_GCM_SHA384 |
| Signature Algorithm | sha256RSA |
| Validity Period | 89 days |
| Serial Number | 06D15E87B8BFA3CB0EB1F7EFA5221FDC2794 |
| Thumbprint | AA2549AC80EB4352D466C52707EC7F8F37431A71 |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 27% | 2 | 3 |
| ownership | 24% | 2 | 3 |
| reputation | 26% | 1 | 3 |
| geolocation | 34% | 2 | 3 |
| Overall | 25% | 10 | 17 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-23 06:23:27 UTC |
| Last Seen | 2026-06-28 20:45:08 UTC |
| Profile Built | 2026-06-29 02:48:48 UTC |
| Data Freshness | Live |
| Signal Types | 23 |
| Total Observations | 25 |
Full dossier details are available via our API.