IPDebrief

87.106.29.220

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

IP Intelligence Briefing: 87.106.29.220

Date: 2026-06-11

---

**Overview**

---

**Key Findings**

1. Ownership & Infrastructure

- Registered to AS8560-MNT (Ionos SE) under the fr-nbz-ionos-cloud-nbz netname.

- Located in France, with a stable geolocation profile.

- Firewalled network with no open services or TLS certificates detected.

2. DNS & Email Security

- PTR record resolves to ip87-106-29-220.pbiaas.com.

- Email security: SPF and DMARC records present, no email reputation risks.

3. Threat Observations

- 17 observations over 30 days:

- High-confidence signal (0.95) linked to a German ISP (AS8560) with 20 "pulses" (potential threat indicators).

- Basic operator score (0.26) suggests low trustworthiness.

- No direct malware, phishing, or spam campaigns detected.

4. Network Relationships

- Same subnet (87.106.29.0/24) with 1 risky neighbor (87.106.29.151, risk score 65).

- DNS associations with ip87-106-29-220.pbiaas.com (likely infrastructure-related).

5. Behavioral & Routing

- Traceroute shows 30 hops, with 21 timeouts; routed through Comcast networks.

- BGP stability: Route changes in the last 30 days (unstable).

---

**Actionable Insights**

---

**Conclusion**

This IP is part of a high-risk network managed by Ionos SE, with no direct malicious activity detected. However, its association with a German ISP and a risky subnet neighbor warrants further investigation. SOC teams should monitor for anomalies in DNS, routing, or subnet-level behavior.

Recommended Tools:

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ซ๐Ÿ‡ท France
Regionโ€”
Cityโ€”
TimezoneEurope/Paris
Latitude48.54
Longitude6.06

๐Ÿข Ownership & Registration

OrganizationAS8560-MNT
ASNAS8560
Network Namefr-nbz-ionos-cloud-nbz
CIDR Block87.106.29.0/24
RIRRIPE
CountryFR
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTRip87-106-29-220.pbiaas.com
Forward ConfirmedYes โ€” FCrDNS verified
Forward Hostnamesmail.sentinel-ai.co.uk

๐Ÿ” DNS Hygiene

Hygiene Score40% (Fair)
SPFNot configured
DMARCNot configured
FCrDNSVerified
DNSSECValid
CAANot configured

โ˜๏ธ Network Classification

InfrastructureUnknown
Service PurposeWeb Server
Network TierTier 3 โ€” Basic operator with some routing infrastructure
No specific classification

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
80httptcpโ€”
443httpstcpโ€”
22sshtcp
Closed Ports25, 3389, 8080, 8443 (3 open / 7 scanned)
Servernginx/1.31.1
HTTP Titleโ€”
SSH VersionSSH-2.0-OpenSSH_9.2p1 Debian-2+deb12u10

๐Ÿ” TLS Certificate

๐Ÿ”’
CN=sentinel-ai.co.uk
Issued by CN=YE1, O=Let's Encrypt, C=US
Self-signed: No
SANsadmin.sentinel-ai.co.ukapex.sentinel-ai.co.uksentinel-ai.co.ukwww.sentinel-ai.co.uk
Valid From2026-06-07T12:27:02+00:00
Valid Until2026-09-05T12:27:01+00:00
TLS ProtocolTls13
Cipher SuiteTLS_AES_256_GCM_SHA384
Signature Algorithmsha384ECDSA
Validity Period89 days
Serial Number055922633341EF21FE04EAB631ECBA521C8E
ThumbprintC9A844275AE6A621B592885A6201501EDCA3D734

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
13%
11
routing
13%
11
services
13%
11
ownership
27%
23
reputation
0%
00
geolocation
25%
22
Overall15%78
Coverage: 5/6 dimensions ยท Data sufficiency: partial
Data CoherenceMostly Consistent (80%) โ€” 1 contradiction(s)
AttributionModerate (55%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid
โš  Geo sources disagree on country: DE, FR

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-05-25 18:48:44 UTC
Last Seen2026-06-13 03:46:09 UTC
Profile Built2026-06-11 01:02:45 UTC
Data FreshnessLive
Signal Types24
Total Observations25
๐Ÿ” 24 signal types ยท 25 observations collected
This report is generated from 24+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.