IP Intelligence Briefing: 64.188.172.125
*Generated using IPDebrief threat intelligence platform*
---
**Core Profile**
- Risk Score: 80/100 (High Risk)
- Ownership: Registered to *zito media* (ASN 1246, ARIN)
- Geolocation: Two Harbors, MN, US (47.02°N, -91.67°W)
- Network Role: Firewalled / No Services (no open ports, no TLS certs)
- Threat Indicators: No direct malicious activity observed
---
**Observation History**
- Recent Activity:
- DNSSEC validation confirmed (no anomalies).
- 4 DNSBL listings (low confidence, no actionable threats).
- Geolocation consistency with registration data.
- Trend: No persistent malicious behavior detected in 30-day window.
---
**Relationships**
- Network Links:
- Subnet: `64.188.160.0/20` (registered to *zito media*).
- No upstream/downstream provider relationships identified.
- Domain/Hosting: No associated domains or email auth records.
---
**Neighborhood Analysis**
- Subnet: `64.188.172.125/24`
- Abuse Density: 0% (clean subnet, no malicious neighbors).
- Siblings: 1 total IP in subnet (itself).
---
**Recommended Actions**
1. Monitor: Track DNSSEC and DNSBL status due to moderate risk score.
2. Block: Implement firewall rules to restrict traffic from this IP (see below).
3. Verify: Cross-check with internal threat feeds for contextual validation.
---
Firewall Rule Examples:
- iptables: `iptables -A INPUT -s 64.188.172.125 -j DROP`
- Cloudflare WAF: Block IP with description "IPDebrief risk 80"
- AWS WAF: Add `64.188.172.125/32` to IP set
Note: The high risk score may reflect false positives or incomplete data. Confirm with additional context before blocking.
---
*End of briefing*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | zito media |
| ASN | AS1246 |
| Network Name | MTHOID-DYN-CPE |
| CIDR Block | 64.188.160.0/20 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | β |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown β Insufficient routing data to classify |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 42% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 13% | 1 | 1 |
| ownership | 19% | 2 | 2 |
| reputation | 28% | 1 | 3 |
| geolocation | 13% | 1 | 1 |
| Overall | 21% | 8 | 11 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-15 20:48:24 UTC |
| Last Seen | 2026-06-24 13:37:31 UTC |
| Profile Built | 2026-06-07 18:06:09 UTC |
| Data Freshness | Live |
| Signal Types | 14 |
| Total Observations | 20 |
Full dossier details are available via our API.