## IP Intelligence Briefing: 92.38.26.183/32
Classification: Moderate Risk
Risk Score: 40/100
Report Date: Current Analysis Cycle
---
Executive Summary
IP address 92.38.26.183 presents a moderate risk profile with no active threat indicators but exhibits geographic inconsistencies and limited network service data. The IP is associated with telecommunications infrastructure but shows route stability concerns.
---
Ownership and Network Classification
Network Infrastructure:
- Origin ASN: 43533
- BGP Prefix: 92.38.24.0/22
- Organization: OOO Gals Telecom Staff
- Registration: Ripe (2008-02-01)
- Network Role: Firewalled / No Services
- Service Status: No open ports detected
Control Plane Analysis:
- Route stability: Unstable (isRouteStable: false)
- DNSSEC Validation: Valid
- DNSBL Status: Listed on 2 of 8 threat feeds (max severity: high)
---
Geographic Discrepancies
Critical intelligence finding: Geographic inconsistencies detected across multiple data sources:
| Source | Reported Location | Confidence |
|---|---|---|
| Primary Profile | Stockholm, SE | Moderate |
| Historical Record 1 | Uzbekistan (UZ) | High |
| Historical Record 2 | Czech Republic (CZ) | High |
This inconsistency suggests potential IP spoofing, misconfiguration, or the use of proxy/relay infrastructure. The 92.38.24.0/22 prefix is officially assigned to Uzbekistan under Ripe, contradicting the Stockholm geolocation data.
---
Threat Indicators
Positive Findings:
- No known attack campaigns correlated
- Not identified as Tor exit node
- No active attacker classification
- Zero honeypot hits
- Zero enumeration strikes
- No WAF violations detected
Negative Findings:
- 2 DNSBL listings with high severity
- Route instability detected
- DNSSEC RRSIG validation failures observed in history
---
Neighborhood Analysis
Subnet Assessment: 92.38.26.183/24
- Neighbor Count: 0
- Abuse Density: 0
- Risk Distribution: Even (0 high, 0 medium, 0 low)
The /24 subnet shows no activity from neighboring IP addresses, indicating this is likely an isolated address within its block.
---
Historical Observations
Data Points: 11 observations recorded
- Recent observations (2026-07-25) confirm ASN 43533 and OOO Gals Telecom Staff organization
- ASN registry shows Czech Republic (CZ) allocation in Cymru DNS data
- DNSSEC validation failures detected in recent probes
- Blacklist listings observed with maximum severity rating of "high"
---
Recommended Actions
Firewall Rules: No specific block rules recommended at this time due to moderate risk classification and lack of confirmed malicious activity.
Monitoring Recommendations:
1. Monitor for geographic inconsistency resolution
2. Track route stability improvements
3. Watch for DNSBL listing additions or changes
4. Consider enhanced logging if this IP appears in traffic
Classification: Monitor
Threat Level: Moderate
Priority: Low-Medium
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | OOO Gals Telecom Staff |
| ASN | AS43533 |
| Network Name | GALS-TELECOM-NET |
| CIDR Block | 92.38.24.0/22 |
| RIR | RIPE |
| Country | UZ |
| Abuse Contact | Available via RDAP |
🌐 DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No — PTR hostname does not resolve back to this IP (weak signal) |
🔐 DNS Hygiene
| Hygiene Score | 0% (None) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Not signed |
| CAA | Not configured |
☁️ Network Classification
| Infrastructure | Residential |
| Service Purpose | Residential Endpoint |
| Network Tier | End-User — Residential ISP endpoint |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | — |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | None |
| Valid From | — |
| Valid Until | — |
🛡️ Public Network Snapshot
| Origin ASN | AS43533 |
| Network Prefix | 92.38.24.0/22 |
| Route mapping | Found |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 0% | 0 | 0 |
| routing | 0% | 0 | 0 |
| services | 0% | 0 | 0 |
| ownership | 0% | 0 | 0 |
| reputation | 0% | 0 | 0 |
| geolocation | 25% | 1 | 1 |
| Overall | 4% | 1 | 1 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-07-08 19:12:18 UTC |
| Last Seen | 2026-10-05 07:01:16 UTC |
| Profile Built | 2026-10-05 07:01:52 UTC |
| Data Freshness | Live |
| Signal Types | 17 |
| Total Observations | 20 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 92.38.26.183
Who owns the IP address 92.38.26.183?
92.38.26.183 is registered to OOO Gals Telecom Staff. The address falls within the 92.38.24.0/22 network block. Registration is held at RIPE.
Where is 92.38.26.183 located?
Geolocation data places 92.38.26.183 in Stockholm. The local time zone is Europe/Prague. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 92.38.26.183 malicious or safe?
92.38.26.183 currently carries a moderate risk assessment, meaning some indicators warrant caution, but the evidence is mixed. This assessment is generated from continuously collected signals and can change over time.
Is 92.38.26.183 a VPN, proxy, or data center address?
92.38.26.183 is classified as a residential network based on network ownership and behavioural analysis.