IP Profile

🖥 23.137.253.214 — IncogNet LLC

IncogNet LLC · AS40663 · US · 23.137.253.0/24 · IP Blocklists · threat 0.50 · 5x · 3 sources · PTR static.23-137-253-214.isp.st

reputation 39.1 (GUARDED) · first seen 18h ago · last seen 11h ago
No special flags ip medium-severity auto-tagged

Reputation

39.1
GUARDED

Threat Score

0.50
5 sightings

ASN

AS40663
from indicator

Peers on ASN

1
malicious co-tenants

Bad neighborhood

6
23.137.253.0/24

Country

US
from indicator

🕵 Team Cymru Scout

Team Cymru Scout not configured — add config.scout.php or set cymruscout in API Config.

🌐 Network & Geo (local-first)

IP23.137.253.214
OrganizationIncogNet LLC
ASNAS40663
Netname
Netblock
Reverse DNS (PTR)static.23-137-253-214.isp.st
CountryUS country intel

Identity resolves from the indicator's own columns first, then on demand from the local ip_ranges dataset by integer range — complete even before the bulk resolver runs.

🔥 Threat severity (AS40663 neighborhood)

High (.5-.75)
2
Avg threat 0.5 · peak 0.5 across 2 local IPs on AS40663

📁 Categories (ASN neighborhood)

🦠 Malware families (ASN neighborhood)

No local data.

🏷 Tags (ASN neighborhood)

ip
2
auto-tagged
2
medium-severity
2

🔌 Sources (ASN neighborhood)

FireHOL: dm_tor.ipset
2
FireHOL: et_tor.ipset
2
dan.me.uk Tor node list
2
FireHOL: firehol_level4.netset
1
FireHOL: stopforumspam_180d.ipset
1
FireHOL: stopforumspam_365d.ipset
1
FireHOL: tor_exits.ipset
1
FireHOL: tor_exits_1d.ipset
1
FireHOL: tor_exits_7d.ipset
1
FireHOL: tor_exits_30d.ipset
1
FireHOL: blocklist_net_ua.ipset
1
Tor Exit Nodes (dan.me.uk)
1
Tor Bulk Exit List
1

🌎 Geographic spread

📅 First-seen timeline

2026-08
2

Reporting Sources for this IP (3)

FireHOL: dm_tor.ipsetIP Blocklists
FireHOL: et_tor.ipsetIP Blocklists
dan.me.uk Tor node listDark Web

Passive DNS — domains resolving here (0)

No passive DNS yet. Run DNS audit.

🏠 Same /24 — 23.137.253.0/24 (6 other malicious IPs)

Other flagged IPs in the same /24 — a concentration here suggests a compromised or abused block.

IPCategoryFamilyThreat
23.137.253.113 IP Blocklists- dossier
23.137.253.27 IP Blocklists- dossier
23.137.253.125 IP Blocklists- dossier
23.137.253.254 IP Blocklists- dossier
23.137.253.64 IP Blocklists- dossier
23.137.253.222 IP Blocklists- dossier
All in this subnet Bulk takedown

📡 Related indicators on AS40663 (1 total, 1 shown)

IPCategoryCountryThreat
23.137.255.85 IP BlocklistsUS dossier
Full ASN dossier →

Case & Takedown Links

No cases or takedowns yet.

+ Case Takedown

Enrichments

ipinfo

Stored Enrichment Data Enrich Now

1 enrichment records on file (history preserved).

Identity resolves local-first: the indicator's own asn/country columns, else on-demand integer-range lookup against the local ip_ranges dataset — so ASN, org and country populate even before the bulk resolver finishes and even for IPs not yet ingested. Analytics, neighborhood and graph render entirely from the local database; live reputation providers augment only when keys and outbound access are available.
Workstation · Copilot · AI Skills · Automation · Playbooks · Lookups · Docs · Reports

🤖 AI Copilot

🔍 Lookup & Enrich

💡 Recommendations

⚙ Automation

Cron: 0 * * * * php /home/zaptf0zdggll/public_html/threats/cron.php