IPDebrief

95.155.36.66

IP Intelligence Dossier
Your IP: 216.73.217.131
{ } JSON 🔧 Full Actions API
🤖 Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

IP INTELLIGENCE BRIEFING: 95.155.36.66/32

Executive Summary

IP 95.155.36.66 was analyzed as a residential web server endpoint located in Podgorica, Montenegro (ME), assigned to ASN 8585 (INTERNETCG-ADSL). The asset registered a moderate risk score of 40 with no active threat indicators detected. No malicious activity, blacklisting, or campaign associations were observed. The IP maintains standard web server services (HTTP/HTTPS) with Microsoft IIS 10.0 backend and self-signed TLS certificates.

Ownership and Network Classification

The IP belongs to RIPE-registrant block 95.155.32.0/19, organized under AS8585-MNT with abuse contact available via RDAP. Network classification identified the system as a web server with residential ISP characteristics. PTR resolution maps the address to "adsl-bb36-l66.crnagora.net" under domain crnagora.net. No cloud, CDN, proxy, or hosting infrastructure indicators were present.

Technical Profile

Threat Assessment

Current threat profile shows no indicators: zero blacklists, no known attacker flags, no spam source classification, no Tor exit node activity, and no known campaign associations. Risk score of 40 represents moderate risk primarily due to residential ISP context and self-signed TLS. No persistent malicious activity detected across 17 historical observations.

Historical Observations

Signal history indicates 17 observations collected. Recent activity includes TLS/HTTP service scanning (confidence 0.90), geolocation validation (confidence 0.75), and ownership verification (confidence 0.90). No threat persistence or malicious signal evolution observed.

Relationship Graph

Eight relationship links identified: four associations with network "INTERNETCG-ADSL" and four DNS hostname associations to "adsl-bb36-l66.crnagora.net." No external organizational or certificate relationships beyond these core associations.

Neighborhood Analysis

Subnet 95.155.36.66/24 analysis returned zero neighboring IPs. Abuse density registered at 0 with no threat siblings identified. Neighborhood risk distribution shows no high/medium/low threat classifications among adjacent addresses.

Recommendations

No specific blocking or firewall actions recommended at this time. The IP represents a standard residential web server endpoint with no active threat indicators. Continue monitoring for TLS certificate expiration and DNSBL status changes.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

Country🇲🇪 ME
RegionPodgorica
CityPodgorica
Timezone—
Latitude42.44
Longitude19.26

🏢 Ownership & Registration

OrganizationAS8585-MNT
ASNAS8585
Network NameINTERNETCG-ADSL
CIDR Block95.155.32.0/19
RIRRIPE
Countryme
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTRadsl-bb36-l66.crnagora.net
Forward ConfirmedNo — PTR hostname does not resolve back to this IP (weak signal)
Forward Hostnamesadsl-bb36-l66.crnagora.net

🔐 DNS Hygiene

Hygiene Score20% (Poor)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureUnknown
Service PurposeWeb Server
Network TierUnknown — Insufficient routing data to classify
No specific classification

🔌 Services & Open Ports

PortServiceProtocolBanner
80httptcp—
443httpstcp—
Closed Ports22, 25, 3389, 8080, 8443 (2 open / 7 scanned)
ServerWeb server detected
HTTP Title—

🔐 TLS Certificate

A self-signed certificate was detected. This is common for development servers, internal services, or IoT devices.
⚠️
CN=WMSvc-SHA2-WIN-400J9U41PGF
Issued by CN=WMSvc-SHA2-WIN-400J9U41PGF
Self-signed: Yes
SANsNone
Valid From2024-11-06T12:59:28+00:00
Valid Until2034-11-04T12:59:28+00:00
TLS ProtocolTls12
Cipher SuiteTLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
Signature Algorithmsha256RSA
Validity Period3650 days

🛡️ Public Network Snapshot

Origin ASNAS8585
Network Prefix95.155.0.0/18
Route mappingFound
HSTSNot detected
CSPNot detected
HTTP/2Enabled

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
25%
11
routing
25%
11
services
25%
11
ownership
0%
00
reputation
0%
00
geolocation
25%
11
Overall16%44
Coverage: 4/6 dimensions · Data sufficiency: partial
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

📅 Observation Timeline 🔄 Live

First Seen2026-07-18 17:43:45 UTC
Last Seen2026-09-03 02:26:43 UTC
Profile Built2026-09-03 02:27:14 UTC
Data FreshnessLive
Signal Types22
Total Observations26
🔍 22 signal types · 26 observations collected
This report is generated from 22+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API 🔧 Actions API 📧 Enterprise Access

❓ Frequently Asked Questions About 95.155.36.66

Who owns the IP address 95.155.36.66?

95.155.36.66 is registered to AS8585-MNT. The address falls within the 95.155.32.0/19 network block. Registration is held at RIPE.

Where is 95.155.36.66 located?

Geolocation data places 95.155.36.66 in Podgorica, Podgorica, ME. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.

Is 95.155.36.66 malicious or safe?

95.155.36.66 currently carries a moderate risk assessment, meaning some indicators warrant caution, but the evidence is mixed. This assessment is generated from continuously collected signals and can change over time.

What is the hostname for 95.155.36.66?

The reverse DNS (PTR) record for 95.155.36.66 is adsl-bb36-l66.crnagora.net. This hostname is not forward-confirmed, so it should be treated as a weak signal.

What ports are open on 95.155.36.66?

Responsive ports observed on 95.155.36.66 include 80, 443. Port visibility reflects the most recent scan and may change as the host's configuration or firewall rules change.

🏘️ Related IP Addresses

Browse related networks

ℹ️ About This Report

All data shown is publicly available network metadata — IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.