IPDebrief

84.46.247.185

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

## IP INTELLIGENCE BRIEFING

Target IP: 84.46.247.185/32

Date: Current

Analyst Classification: Cloud Hosting Infrastructure

EXECUTIVE SUMMARY

IP 84.46.247.185 is a low-risk Contabo cloud computing host located in Kaunas, Lithuania. The address operates as a web server with standard services and shows minimal threat indicators. No active malicious campaigns or persistent threat behavior detected.

OWNERSHIP & INFRASTRUCTURE

AttributeValue
ASN51167 (LRTC-MNT)
ProviderContabo
Infrastructure TypeCloudCompute
Network ClassificationCloud Hosting
RIRRIPE
CIDR Block84.46.247.0/24

The IP is provisioned within Contabo's cloud infrastructure, a major European hosting provider. The subnet (84.46.247.0/24) demonstrates clean abuse density with no neighboring IPs flagged for suspicious activity.

GEOLOCATION

AttributeValue
CountryLithuania (LT)
RegionKaunas
Coordinates54.9038°N, 23.8924°E
Geo ConsensusValid (1 source)
Network OriginAS51167

Geolocation data is consistent and plausible with minimum RTT of 115ms from probe locations.

NETWORK SERVICES

PortProtocolServiceBanner
22TCPSSHSSH-2.0-OpenSSH_9.9
80TCPHTTP-
443TCPHTTPS-

Open services indicate a typical web server configuration with SSH access enabled. TLS certificate issued by Let's Encrypt (R11) for domain infrasecur.co.mz with wildcard coverage.

DNS ANALYSIS

AttributeValue
PTR Hostnamevmd193327.contaboserver.net
Forward ResolutionConfirmed
Hosted Domainsinfrasecur.co.mz
SPF RecordAbsent
DMARC RecordAbsent
DNSSECValid

DNS configuration shows basic setup with missing email authentication records (SPF/DMARC).

THREAT INDICATORS

IndicatorStatus
Risk Score25 (Low)
Blacklist Count1
Is Tor ExitNo
Is Known AttackerNo
Is Spam SourceNo
Active CampaignsNone
Threat FeedsNone

The IP shows one DNSBL listing (severity: high in historical data). No active threat feed matches or known campaign associations. Historical signals indicate the IP was observed in threat-related contexts but current reputation remains low.

OBSERVATION HISTORY

22 total observations recorded. Recent activity (2026-06-15) shows:

Threat persistence duration: 0 days. IP is not classified as persistently malicious.

RELATIONSHIPS

49 relationships identified:

SECURITY ACTIONS

No specific firewall rules or blocking recommendations generated. Standard monitoring recommended for SSH and HTTPS services.

INTELLIGENCE CONCLUSION

IP 84.46.247.185 represents standard cloud hosting infrastructure with low threat risk. The single blacklist listing warrants monitoring but does not indicate active malicious use. The Contabo hosting environment and clean neighborhood profile support benign operational classification. Continue passive monitoring; no immediate blocking or investigation required.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐ŸŒ Lithuania
RegionKU
CityKaunas
Timezoneโ€”
Latitude54.90
Longitude23.89

๐Ÿข Ownership & Registration

OrganizationLRTC-MNT
ASNAS51167
Network Nameโ€”
CIDR Blockโ€”
RIRRIPE
Countryโ€”
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTRvmd193327.contaboserver.net
Forward ConfirmedYes โ€” FCrDNS verified
Forward Hostnamesvmd193327.contaboserver.net

๐Ÿ” DNS Hygiene

Hygiene Score40% (Fair)
SPF0/2 domains
DMARC0/2 domains
FCrDNSVerified
DNSSECValid
CAANot configured
Domains Checked2 domains

โ˜๏ธ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeWeb Server
Network TierHosting โ€” Infrastructure provider without advanced routing
CloudHosting

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
80httptcpโ€”
443httpstcpโ€”
22sshtcp
Closed Ports25, 3389, 8080, 8443 (3 open / 7 scanned)
ServerApache
HTTP Titleโ€”
SSH VersionSSH-2.0-OpenSSH_9.9

๐Ÿ” TLS Certificate

An expired certificate for CN=infrasecur.co.mz was found on this IP. This may indicate a previously hosted website, a decommissioned service, or stale infrastructure.
๐Ÿ”’
CN=infrasecur.co.mz
Issued by CN=R11, O=Let's Encrypt, C=US
Self-signed: No
SANs*.infrasecur.co.mzinfrasecur.co.mz
Valid From2025-07-23T03:24:57+00:00
Valid Until2025-10-21T03:24:56+00:00 (expired)
TLS ProtocolTls13
Cipher SuiteTLS_AES_256_GCM_SHA384
Signature Algorithmsha256RSA
Validity Period89 days
Serial Number053D36A8C351959760D7FE17069A470B6702
Thumbprint31E7A74FF633626511A6C2EA4194035C6820DB91

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
29%
24
routing
13%
11
services
30%
23
ownership
20%
23
reputation
28%
13
geolocation
15%
22
Overall23%1016
Coverage: 6/6 dimensions ยท Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (70%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-05-15 20:48:35 UTC
Last Seen2026-06-28 02:58:46 UTC
Profile Built2026-06-28 21:04:03 UTC
Data FreshnessLive
Signal Types22
Total Observations26
๐Ÿ” 22 signal types ยท 26 observations collected
This report is generated from 22+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.