# IP Intelligence Briefing: 91.208.75.183/32
Classification: Low Risk / Non-Malicious
Date Generated: 2026-07-22
## Executive Summary
IP address 91.208.75.183 is a Romanian infrastructure endpoint associated with NAV Communications (ASN 6718, RO-NAV). The IP presents a clean security profile with zero active threat indicators and no current blacklist presence. The address is firewalled with no accessible services, and exhibits no behavioral anomalies across observation history.
## Technical Profile
Ownership & Registration:
- Organization: NAV Communications - NOC
- ASN: 6718
- Network: 91.208.75.0/24
- RIR: RIPE
- Abuse Contact: Available via RDAP
Geolocation:
- Country: Romania (RO)
- City: Bucharest
- Coordinates: 45.94°N, 24.97°E
- Accuracy Radius: 300km
Network Services:
- Status: Firewalled / No Services
- Open Ports: None
- DNS Resolution: Unresolved (no PTR, no forward resolution)
- Hosted Domains: 0
## Risk Assessment
Current Risk Score: 0/100
Abuse Confidence: None
Threat Indicators:
- Not a Tor exit node
- Not a known attacker
- Not a spam source
- Blacklist Count: 0
DNSBL Status: 8 total lists indexed, 0 current listings
## Neighborhood Analysis
Subnet: 91.208.75.0/24
Abuse Density: 14.29% (0.1429)
Classification: Mostly Clean
Total Siblings: 7
Threat Siblings: 1
Notable Neighbors:
| IP | Risk Score | Authority Score |
|---|---|---|
| 91.208.75.3 | 49 | 50 |
| 91.208.75.4 | 49 | 50 |
| 91.208.75.156 | 59 | 50 |
| 91.208.75.178 | 25 | 50 |
| 91.208.75.239 | 49 | 50 |
| 91.208.75.153 | 25 | 50 |
## Observation History
Total Observations: 16 signals recorded
Recent Activity: July 2026 timeframe
Signal Timeline:
- 2026-07-22 18:41:32: Banner analysis - No indicators
- 2026-07-22 18:40:34: Network classification - No special infrastructure types
- 2026-07-22 18:39:23: Geolocation - Romania (52% confidence, 300km accuracy)
- 2026-07-22 18:38:40: Ownership tracking - No changes detected
- 2026-07-22 18:37:35: DNSBL checks - 8 lists indexed, 0 listed
Behavioral Indicators:
- Honeypot Hits: 0
- Enumeration Strikes: 0
- WAF Violations: 0
- Total Incidents: 0
- Persistently Malicious: No
## Network Behavior
Traceroute: 30 hops (29 timed out), suggesting limited network responsiveness
Route Stability: False (route changes observed)
Campaign Correlation: None detected
Cert Matches: 0
Correlated IPs: 0
## Recommended Actions
Security Classification: No immediate action required
Firewall Rules: None recommended
Monitoring: Standard monitoring adequate; no escalation needed
Rationale: The IP demonstrates a benign operational profile with no active threat signals. The subnet shows moderate neighborhood risk (14.29% abuse density), but this specific endpoint remains clean. Standard network monitoring is sufficient without special blocking or investigation requirements.
---
*This briefing is based on IPDebrief intelligence data as of 2026-07-22. Recommendations should be validated against internal threat intelligence and operational context before implementation.*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | NAV Communications - NOC |
| ASN | AS6718 |
| Network Name | RO-NAV |
| CIDR Block | 91.208.75.0/24 |
| RIR | RIPE |
| Country | RO |
| Abuse Contact | Available via RDAP |
🌐 DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No — PTR hostname does not resolve back to this IP (weak signal) |
🔐 DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
☁️ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown — Insufficient routing data to classify |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | — |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | None |
| Valid From | — |
| Valid Until | — |
🛡️ Public Network Snapshot
| Origin ASN | AS6718 |
| Network Prefix | 91.208.75.0/24 |
| Route mapping | Found |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 0% | 0 | 0 |
| routing | 0% | 0 | 0 |
| services | 25% | 1 | 1 |
| ownership | 25% | 1 | 2 |
| reputation | 0% | 0 | 0 |
| geolocation | 0% | 0 | 0 |
| Overall | 8% | 2 | 3 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-07-02 04:22:22 UTC |
| Last Seen | 2026-08-25 00:19:14 UTC |
| Profile Built | 2026-08-29 09:19:39 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 22 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 91.208.75.183
Who owns the IP address 91.208.75.183?
91.208.75.183 is registered to NAV Communications - NOC. The address falls within the 91.208.75.0/24 network block. Registration is held at RIPE.
Where is 91.208.75.183 located?
Geolocation data places 91.208.75.183 in Bucharest (Sector 2), București, Romania. The local time zone is Europe/Bucharest. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 91.208.75.183 malicious or safe?
91.208.75.183 currently carries a low risk assessment, meaning no significant threat indicators have been observed. This assessment is generated from continuously collected signals and can change over time.