IP Intelligence Briefing: 85.121.4.10
Risk Assessment: Low Risk (Risk Score: 25)
Key Findings:
1. Ownership & Geolocation:
- Registered to AS3233-MNT (RIPE), associated with AlexHost SRL in Moldova (RO).
- Geolocated to Chisinau, Moldova (45.94°N, 24.97°E).
2. Network Role:
- Firewalled server with no open ports or services detected.
- No signs of cloud, CDN, or mobile infrastructure.
3. Threat Indicators:
- No malicious activity, spam, or known attacker associations.
- Clean DNS records (ptrHostnames: `hoonesix.info`, `ascserver.n2`), though SPF/DKIM email auth is missing.
4. Relationships:
- Linked to hoonesix.info (DNS association).
- Subnet `85.121.4.0/24` is associated with ALEXHOST.
5. Observation History:
- Minimal risk signals over the past 30 days.
- Stability score indicates route instability, though no recent threats.
6. Neighborhood Analysis:
- No active neighbors in the subnet (`85.121.4.10/24`).
- Subnet abuse density is 0 (clean).
Recommendations:
- Monitor DNS activity for `hoonesix.info` and `ascserver.n2` for unexpected changes.
- Investigate the lack of neighboring IPs in the subnet, which could indicate a honeypot or isolated system.
- Maintain baseline monitoring for potential route stability issues.
Conclusion:
This IP appears benign, with no immediate threats. However, its isolated subnet and lack of DNS validation warrant continued observation.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | AS3233-MNT |
| ASN | AS200019 |
| Network Name | β |
| CIDR Block | β |
| RIR | RIPE |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | hoonesix.info |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | ascserver.n2 |
π DNS Hygiene
| Hygiene Score | 0% (None) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Not signed |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown β Insufficient routing data to classify |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 24% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 11% | 1 | 2 |
| ownership | 27% | 2 | 3 |
| reputation | 22% | 1 | 3 |
| geolocation | 27% | 2 | 3 |
| Overall | 21% | 9 | 15 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-11 08:59:31 UTC |
| Last Seen | 2026-06-26 09:20:54 UTC |
| Profile Built | 2026-06-26 10:01:46 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 23 |
Full dossier details are available via our API.