IPDebrief

89.233.203.159

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

Threat Intelligence Briefing: IP 89.233.203.159/32

Source and Methodology:

Data for this briefing was sourced from various open-source intelligence tools and databases, focusing on publicly available information and network observations.

Observation History:

IP 89.233.203.159/32 has been associated with several network activities over the observed period. Historical data indicate that this IP address has been involved in web traffic and communication patterns typical of both benign and potentially malicious operations. Notable observations include:

Relationships and Associations:

Analysis of associated data reveals the following relationships:

Neighborhood Data:

The surrounding network infrastructure of IP 89.233.203.159/32 includes:

Actionable Recommendations:

For SOC teams and network defenders, the following actions are recommended:

This intelligence briefing provides a comprehensive overview of IP 89.233.203.159/32, highlighting its activities, associations, and potential risks. It is crucial for SOC teams to integrate this information into their defensive strategies to enhance network security.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΈπŸ‡ͺ Sweden
RegionW
CityLinghed
TimezoneEurope/Stockholm
Latitude59.38
Longitude13.51

🏒 Ownership & Registration

OrganizationBB2-MNT
ASNAS29518
Network Nameβ€”
CIDR Block89.233.192.0/18
RIRRIPE
Countryβ€”
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR89-233-203-159.cust.bredband2.com
Forward ConfirmedYes β€” FCrDNS verified
Forward Hostnames89-233-203-159.cust.bredband2.com

πŸ” DNS Hygiene

Hygiene Score80% (Excellent)
SPFPresent
DMARCPresent
FCrDNSVerified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureUnknown
Service PurposeMulti-Service Host
Network TierUnknown β€” Insufficient routing data to classify
No specific classification

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
80httptcpβ€”
22sshtcp
Closed Ports25, 443, 3389, 8080, 8443 (2 open / 7 scanned)
Servernginx/1.19.6
HTTP Titleβ€”
SSH VersionSSH-2.0-dropbear ??S?? ??HRIK]??curve25519-sha256,curve25519-sha256@libssh.org,diffie-hellman-group

πŸ” TLS Certificate

πŸ”’
No certificate
Issued by β€”
N/A
SANsNone
Valid Fromβ€”
Valid Untilβ€”

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
27%
24
routing
27%
23
services
30%
23
ownership
33%
35
reputation
22%
13
geolocation
19%
22
Overall26%1220
Coverage: 6/6 dimensions Β· Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (70%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-05-08 11:10:55 UTC
Last Seen2026-06-26 18:11:41 UTC
Profile Built2026-06-25 07:44:07 UTC
Data FreshnessLive
Signal Types27
Total Observations29
πŸ” 27 signal types Β· 29 observations collected
This report is generated from 27+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.