## IP Intelligence Briefing: 88.82.206.71/32
Classification: Moderate Risk | Risk Score: 55/100 | Date: 2026-07-28
Overview
IP address 88.82.206.71 is associated with JETNET (ASN 39155), registered to Jose Antonio Sanchez Reinoso under RIPE NCC jurisdiction. The address is geolocated to Órgiva, Andalusia, Spain (ES). Network classification identifies this as a Multi-Service Host, not associated with CDN, cloud, or hosting infrastructure.
Threat Profile
- Risk Score: 55 (Moderate)
- Provider/Authority Scores: 0/0 (No authoritative threat data)
- Known Attacker: No
- Spam Source: No
- Tor Exit Node: No
- Blacklist Count: 0
- DNSBL Listings: 3 of 8 total lists
- Campaign Affiliation: None identified
Network Services
| Port | Protocol | Service | Status |
|---|---|---|---|
| 80 | TCP | HTTP | Open |
| 22 | TCP | SSH | Open |
- SSH Version: SSH-2.0-dropbear_2019.78 (outdated, 2019 version)
- HTTP Server: Albentia Server
- TLS Certificate: None detected
- Email Authentication: No SPF, no DMARC records configured
DNS Analysis
- PTR Hostnames: None
- Forward Resolution: 0 records
- Hosted Domains: 0
- DNSSEC: Valid
- CAA Records: None
Control Plane Status
- BGP Prefix: 88.82.206.0/24
- Route Stability: Unstable
- RPKI State: Not assessed
- IRR Consistency: Not assessed
Subnet Neighborhood (88.82.206.0/24)
- Total Siblings: 0
- Active Siblings: 0
- Threat Siblings: 0
- Abuse Density: 0%
- Inherited Risk: 0
Observation History
17 historical observations recorded (most recent: 2026-07-28):
- HTTP responses observed with status code 401 (Unauthorized)
- SSH banner consistently identified as dropbear_2019.78
- No threat persistence detected
- Not classified as persistently malicious
- Geographic inference: Spain (ES), 500km accuracy radius
Relationships
- 2 Relationships Identified: Both classified as "Same Network" pointing to JETNET
- No additional hostnames, organizations, or certificate relationships detected
Risk Assessment
This IP exhibits moderate risk characteristics primarily due to:
1. Outdated SSH implementation (dropbear 2019.78)
2. Multiple DNSBL listings (3 of 8)
3. Unstable BGP route
4. No email authentication configuration
5. No reverse DNS or forward resolution records
Recommended Actions
Firewall/Network:
- Monitor for SSH brute force attempts (port 22)
- Block if suspicious traffic patterns observed
Monitoring:
- Track DNSBL listing changes
- Monitor for new threat indicators or campaign associations
- Watch for changes in route stability
Prioritization: MEDIUM — While not actively malicious, the infrastructure shows characteristics of potentially misconfigured residential or small business hosting. No immediate blocking required; continue observation for threat indicator development.
---
*Intel generated from IPDebrief platform data. For SOC analyst use.*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | Jose Antonio Sanchez Reinoso |
| ASN | AS39155 |
| Network Name | JETNET |
| CIDR Block | 88.82.200.0/21 |
| RIR | RIPE |
| Country | ES |
| Abuse Contact | Available via RDAP |
🌐 DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No — PTR hostname does not resolve back to this IP (weak signal) |
🔐 DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
☁️ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Multi-Service Host |
| Network Tier | Unknown — Insufficient routing data to classify |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | — |
| 22 | ssh | tcp | Banner detected |
| Closed Ports | 25, 443, 3389, 8080, 8443 (2 open / 7 scanned) | ||
| Server | Web server detected |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | None |
| Valid From | — |
| Valid Until | — |
🛡️ Public Network Snapshot
| Origin ASN | AS39155 |
| Network Prefix | 88.82.206.0/24 |
| Route mapping | Found |
| HSTS | Not detected |
| CSP | Not detected |
| HTTP/2 | Not detected |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 31% | 2 | 3 |
| ownership | 27% | 2 | 3 |
| reputation | 13% | 1 | 2 |
| geolocation | 27% | 2 | 3 |
| Overall | 23% | 10 | 15 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-07-17 17:13:32 UTC |
| Last Seen | 2026-09-18 13:17:44 UTC |
| Profile Built | 2026-09-16 18:20:50 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 24 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 88.82.206.71
Who owns the IP address 88.82.206.71?
88.82.206.71 is registered to Jose Antonio Sanchez Reinoso. The address falls within the 88.82.200.0/21 network block. Registration is held at RIPE.
Where is 88.82.206.71 located?
Geolocation data places 88.82.206.71 in Órgiva, Andalusia, Spain. The local time zone is Europe/Madrid. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 88.82.206.71 malicious or safe?
88.82.206.71 currently carries a high risk assessment, meaning indicators associated with malicious or abusive activity have been observed. This assessment is generated from continuously collected signals and can change over time.
What ports are open on 88.82.206.71?
Responsive ports observed on 88.82.206.71 include 80, 22. Port visibility reflects the most recent scan and may change as the host's configuration or firewall rules change.