IP Intelligence Briefing: 85.203.45.183
Date: 2026-06-09
---
**1. Core Profile**
- Risk Score: Moderate (50/100)
- Ownership: Registered to *Jeroen van veen* (ASN 9009, RIPE)
- Geolocation: Bern, Switzerland (49.3°N, 6.86°E)
- Network Role: Unknown (no services, infrastructure, or cloud indicators)
- Threat Indicators: Clean (no malware, spam, or known attacker associations)
---
**2. Threat & Behavior**
- Malicious Activity: None detected (zero threat indicators, no DNS abuse, or spam).
- Services: No open ports or HTTP/TLS services identified.
- Email Reputation: No SPF/DKIM records; no email-related risks.
- DNS: No domain associations or email authentication mechanisms.
---
**3. Temporal Observations**
- Recent Activity:
- 13 observations over 30 days (mostly low-severity geolocation inferences).
- No persistent threats or network anomalies.
- Stability: Stable network routing (no recent BGP changes).
---
**4. Network Context**
- Subnet: 85.203.45.0/24
- Neighbor Risk: 47 IPs in subnet; 24 moderate-risk, 23 low-risk, 0 high-risk.
- Abuse Density: Subnet classified as "clean" (0% abuse density).
- Neighbors with Risk:
- 85.203.45.52 (50/100), 85.203.45.53 (50/100), 85.203.45.55 (50/100), etc.
---
**5. Relationships**
- Linked Entities:
- No direct relationships to domains, certificates, or organizations.
- Only same-subnet connections (Consumer-Network classification).
---
**6. Recommendations**
- Monitoring: Low priority, but monitor for unexpected service exposure or network changes.
- Firewall: No immediate blocking required; consider whitelisting based on geolocation.
- Subnet Context: Given the low abuse density, this IP likely belongs to a residential or small business network.
---
Conclusion: 85.203.45.183 is a low-risk, residential IP with no malicious indicators. No action required, but ongoing monitoring is advised for contextual anomalies.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Jeroen van veen |
| ASN | AS9009 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | RIPE |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 19% | 2 | 2 |
| routing | 13% | 1 | 1 |
| services | 13% | 1 | 1 |
| ownership | 27% | 2 | 3 |
| reputation | 13% | 1 | 1 |
| geolocation | 13% | 1 | 1 |
| Overall | 16% | 8 | 9 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-21 14:58:29 UTC |
| Last Seen | 2026-06-09 12:48:29 UTC |
| Profile Built | 2026-06-09 12:56:26 UTC |
| Data Freshness | Live |
| Signal Types | 14 |
| Total Observations | 14 |
Full dossier details are available via our API.