# IP Intelligence Briefing: 84.46.240.155
Date: 2026-06-16
Status: LOW RISK
Classification: Cloud Infrastructure
---
## EXECUTIVE SUMMARY
IP 84.46.240.155 was analyzed and classified as low risk with a reputation score of 25. The address is associated with Contabo cloud infrastructure in Paris, France, operating as a virtual machine with no active malicious indicators. No threat campaigns, blacklisting, or abuse patterns were detected across all signal sources.
---
## OWNERSHIP AND INFRASTRUCTURE
The IP belongs to LRTC-MNT organization (ASN 51167) under the network name LRTC_INETNUM_RENT. The address falls within the 84.46.240.0/20 CIDR block registered with RIR RIPE. The infrastructure type is classified as CloudCompute with hosting services enabled. The IP resolves to hostname vmi3156733.contaboserver.net, indicating a virtual machine deployment.
Key Attributes:
- Provider: Contabo
- Infrastructure Type: CloudCompute
- Cloud Platform: Yes
- Hosting: Yes
- CDN/Proxy/VPN: No
---
## GEOLOCATION VALIDATION
Geolocation data indicates Paris, France (Grand Est region) with timezone Europe/Paris. Multiple geo sources confirmed the location (geoConsensus: true, geoPlausible: true). RTT measurements showed average response time of 116ms with a minimum possible RTT of 8.04ms, suggesting the location claim is accurate.
---
## THREAT ANALYSIS
No threat indicators were identified during analysis:
- Known attacker status: False
- Spam source status: False
- Tor exit node: False
- Blacklist count: 0
- Known threat campaigns: None detected
- Abuse confidence score: Not applicable
The control plane assessment revealed one DNSBL listing out of eight total lists tested, representing a minor classification issue rather than active abuse.
---
## NETWORK AND SERVICE PROFILE
DNS reverse resolution confirmed the hostname vmi3156733.contaboserver.net with forward resolution validation. No open ports were detected during scanning. TLS certificate information, HTTP titles, and server banners were not available, indicating either a firewall configuration or minimal service exposure.
Email authentication records (SPF, DMARC) were not present for the associated domain.
---
## NEIGHBORHOOD ANALYSIS
The /24 subnet (84.46.240.0/24) was assessed as clean with zero abuse density. No neighboring IPs were flagged as threats, and the subnet classification remained clean across all measurements. This indicates the IP is not part of a coordinated abuse infrastructure.
---
## OBSERVATION HISTORY
Historical analysis revealed consistent low-risk behavior across all observation periods. Recent signals (June 16, 2026) maintained the clean classification with no escalation in risk indicators. The IP demonstrates stable ownership patterns with no recent changes to network registration or control plane configuration.
---
## RECOMMENDATIONS
No specific firewall rules or blocking actions are recommended at this time. The IP presents no malicious indicators and operates within expected parameters for cloud hosting infrastructure. Standard network monitoring practices are sufficient.
---
Analysis: The IP address represents legitimate cloud infrastructure with no evidence of malicious activity. SOC teams may treat this as a benign address requiring only routine monitoring.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | LRTC-MNT |
| ASN | AS51167 |
| Network Name | LRTC_INETNUM_RENT |
| CIDR Block | 84.46.240.0/20 |
| RIR | RIPE |
| Country | LT |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | vmi3156733.contaboserver.net |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | vmi3156733.contaboserver.net |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Tier 3 โ Basic operator with some routing infrastructure |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | โ |
| 443 | https | tcp | โ |
| 22 | ssh | tcp | |
| Closed Ports | 25, 3389, 8080, 8443 (3 open / 7 scanned) | ||
| Server | nginx/1.24.0 (Ubuntu) |
| HTTP Title | โ |
| SSH Version | SSH-2.0-OpenSSH_9.6p1 Ubuntu-3ubuntu13.16 |
๐ TLS Certificate
| SANs | loopiq.inwww.loopiq.in |
| Valid From | 2026-06-18T03:54:58+00:00 |
| Valid Until | 2026-09-16T03:54:57+00:00 |
| TLS Protocol | Tls13 |
| Cipher Suite | TLS_AES_256_GCM_SHA384 |
| Signature Algorithm | sha384ECDSA |
| Validity Period | 89 days |
| Serial Number | 059A38F3015C0DAC065AD81F878E373B6813 |
| Thumbprint | 5AD8CB86FFC42559F7653940D8E5BA39AE81FC76 |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 24% | 2 | 2 |
| routing | 17% | 1 | 1 |
| services | 17% | 1 | 1 |
| ownership | 35% | 2 | 3 |
| reputation | 17% | 1 | 2 |
| geolocation | 24% | 2 | 2 |
| Overall | 22% | 9 | 11 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-06-09 02:11:04 UTC |
| Last Seen | 2026-06-21 15:48:43 UTC |
| Profile Built | 2026-06-21 16:20:57 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 27 |
Full dossier details are available via our API.