IPDebrief

94.154.43.186

IP Intelligence Dossier
Your IP: 216.73.217.131
{ } JSON 🔧 Full Actions API
🤖 Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# INTELLIGENCE BRIEFING: 94.154.43.186/32

Classification: Low Risk

Date of Analysis: 2026-07-28

Primary Data Source: IPDebrief Intelligence Platform

---

## EXECUTIVE SUMMARY

IP address 94.154.43.186 presents a low-risk threat profile with a composite risk score of 25/100. The address is associated with RIPE NCC routing registry (ASN 219502) and operates within the 94.154.43.0/24 subnet. No active malicious campaigns or threat indicators were identified. The IP is currently in a firewalled state with no open services detected.

---

## OWNERSHIP AND INFRASTRUCTURE

AttributeValue
ASN219502
RIRRIPE
OrganizationISP5HAT-MNT
Abuse Contactabusep@kharkiv.com
CIDR Block94.154.43.0/24
BGP Prefix94.154.43.0/24
Route StabilityUnstable (route changes observed)

Service Profile: Firewalled / No Services (open ports: none)

Network Role: Non-provider infrastructure

---

## GEOLOCATION DATA

AttributeValue
Primary CountryUA (Ukraine)
Secondary LocationUS-NJ (Newark)
TimezoneEurope/Kyiv
Geographic ConsensusConflicted (multiple sources)
Accuracy Radius500 km

Note: Geographic data exhibits inconsistency across validation sources, with conflicting country assignments between Ukraine and United States.

---

## THREAT ASSESSMENT

Current Risk Indicators

Behavioral Analysis

---

## NEIGHBORHOOD ANALYSIS (94.154.43.0/24)

MetricValue
Total Siblings32 IPs
Abuse Density0.031 (Low)
High Risk Neighbors1
Medium Risk Neighbors7
Low Risk Neighbors23

Notable High-Risk Neighbors:

---

## OBSERVATION HISTORY

Total Observations: 11 signals

Most Recent: 2026-07-28T10:04:51 UTC

Historical Trends

Key Historical Signals:

---

## RELATIONSHIP GRAPH

Connected Entities: None detected

The IP address shows no established relationships with other entities including subnets, hostnames, organizations, or certificates in the relationship database.

---

## RECOMMENDED ACTIONS

Firewall/Blocking Recommendations

Current Status: No specific recommendations generated

Rationale: The IP presents a low-risk profile (score 25) with no active threat indicators. No immediate blocking or filtering actions are warranted based on current intelligence.

Monitoring Guidance

---

## CONCLUSION

IP 94.154.43.186 is currently assessed as low-risk with no evidence of malicious activity. The address operates in a firewalled state with no open services. While the /24 subnet contains several higher-risk neighbors, this specific IP does not share their threat profile. Routine monitoring is recommended, but no immediate defensive actions are required.

Confidence Level: Moderate (geographic data conflicts)

Intelligence Freshness: Current (2026-07-28)

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

Country🇺🇦 Ukraine
RegionUS-NJ
CityNewark
TimezoneEurope/Kyiv
Latitude—
Longitude—

🏢 Ownership & Registration

OrganizationISP5HAT-MNT
ASNAS219502
Network NameNET-94-15-40
CIDR Block94.154.40.0/22
RIRRIPE
CountryUS
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR RecordNo PTR
Forward ConfirmedNo — PTR hostname does not resolve back to this IP (weak signal)

🔐 DNS Hygiene

Hygiene Score20% (Poor)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureUnknown
Service PurposeSingle-Service Host
Network TierUnknown — Insufficient routing data to classify
No specific classification

🔌 Services & Open Ports

PortServiceProtocolBanner
22sshtcpBanner detected
Closed Ports25, 80, 443, 3389, 8080, 8443 (1 open / 7 scanned)
Server—
HTTP Title—

🔐 TLS Certificate

🔒
No certificate
Issued by —
N/A
SANsNone
Valid From—
Valid Until—

🛡️ Public Network Snapshot

Origin ASNAS219502
Network Prefix94.154.43.0/24
Route mappingFound

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
25%
11
routing
25%
11
services
25%
11
ownership
0%
00
reputation
0%
00
geolocation
25%
11
Overall16%44
Coverage: 4/6 dimensions · Data sufficiency: partial
Data CoherenceMostly Consistent (80%) — 1 contradiction(s)
AttributionLow (35%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid
⚠ Geo sources disagree on country: GB, UA

📅 Observation Timeline 🔄 Live

First Seen2026-07-17 11:05:25 UTC
Last Seen2026-09-02 10:26:36 UTC
Profile Built2026-09-02 10:33:54 UTC
Data FreshnessLive
Signal Types17
Total Observations20
🔍 17 signal types · 20 observations collected
This report is generated from 17+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API 🔧 Actions API 📧 Enterprise Access

❓ Frequently Asked Questions About 94.154.43.186

Who owns the IP address 94.154.43.186?

94.154.43.186 is registered to ISP5HAT-MNT. The address falls within the 94.154.40.0/22 network block. Registration is held at RIPE.

Where is 94.154.43.186 located?

Geolocation data places 94.154.43.186 in Newark, US-NJ, Ukraine. The local time zone is Europe/Kyiv. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.

Is 94.154.43.186 malicious or safe?

94.154.43.186 currently carries a low risk assessment, meaning no significant threat indicators have been observed. This assessment is generated from continuously collected signals and can change over time.

What ports are open on 94.154.43.186?

Responsive ports observed on 94.154.43.186 include 22. Port visibility reflects the most recent scan and may change as the host's configuration or firewall rules change.

🏘️ Related IP Addresses

Nearby addresses in 94.154.40.0/22

Browse related networks

ℹ️ About This Report

All data shown is publicly available network metadata — IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.