# IP Intelligence Briefing: 1.160.229.25/32
Date: 2026-07-21
Classification: Moderate Risk
Status: Active Monitoring
---
## Executive Summary
IP address 1.160.229.25 is a residential dynamic IP endpoint operated by HiNet Communications (ASN 3462) in New Taipei City, Taiwan. The address exhibits moderate risk characteristics with DNSBL listings on 2 of 8 threat feeds. No active malicious services or campaigns detected. The IP is currently firewalled with no open ports.
---
## Technical Profile
Ownership & Network:
- ASN: 3462 (HiNet Communications)
- BGP Prefix: 1.160.0.0/16
- RIR Registry: APNIC
- ISP Domain: hinet.net
Geolocation:
- Country: Taiwan (TW)
- Region: New Taipei City
- Coordinates: 23.7°N, 120.96°E
- Geo Consensus: Validated
DNS Resolution:
- PTR: 1-160-229-25.dynamic-ip.hinet.net
- Forward Resolution: Confirmed
- SPF Record: Present
- DMARC Record: Absent
---
## Threat Indicators
Risk Score: 40/100 (Moderate)
DNSBL Status: Listed on 2 of 8 threat feeds (max severity: high)
Known Campaigns: None identified
Known Attacker: False
Spam Source: False
Tor Exit Node: False
Abuse Indicators:
- Two DNS blacklist entries detected
- High-severity DNSBL listings observed in recent scans
- Operator classification: Basic (0.3478)
---
## Network Behavior
Service Status: Firewalled / No Services
Open Ports: None detected
TLS Certificate: None
HTTP Title: None detected
Control Plane:
- Route Stability: Unstable
- RPKI State: Not verified
- IRR Consistency: Not verified
- DNSSEC: Valid
- DNSSEC CAA Records: Present
---
## Historical Analysis
Observation Count: 12 signals recorded
Temporal Trend: Static risk posture
Recent Activity (2026-07-21):
- DNSBL listings confirmed (2/8 lists)
- Geo-location signals validated for Taiwan
- DNS resolution stable for hinet.net domain
- No ownership changes detected
Persistence Metrics:
- Threat Persistence Days: 0
- Ownership Changes: 0
- Is Persistently Malicious: False
---
## Neighborhood Context
Subnet: 1.160.229.25/24
Abuse Density: 0%
Sibling IPs: 0 detected
Active Siblings: 0
Threat Siblings: 0
The /24 subnet shows no elevated abuse activity. No correlated malicious IPs detected in immediate neighborhood.
---
## Relationships
DNS Associations:
- 1-160-229-25.dynamic-ip.hinet.net
No additional relationships to organizations, subnets, or certificates identified.
---
## Recommended Actions
Firewall Rules:
```
# Recommended: Monitor but allow (residential ISP endpoint)
# Review DNSBL listings before blocking
iptables -A INPUT -s 1.160.229.25/32 -j LOG --log-prefix "HINET-MONITOR: "
```
Monitoring Priorities:
1. Monitor DNSBL listing count changes
2. Watch for service/port emergence
3. Track route stability improvements
4. Verify SPF record integrity
Escalation Criteria:
- DNSBL listings increase beyond 3
- Open ports detected
- Known threat feed matches
- ASN 3462 reputation degradation
---
## Conclusion
1.160.229.25/32 is a residential ISP endpoint with moderate risk characteristics. Current activity is consistent with normal residential traffic patterns. No immediate threat indicators require blocking. Maintain monitoring posture and review DNSBL listings periodically for trend analysis.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | HINET Network-Adm |
| ASN | AS3462 |
| Network Name | HINET-NET |
| CIDR Block | 1.160.0.0/16 |
| RIR | APNIC |
| Country | TW |
| Abuse Contact | — |
🌐 DNS Intelligence
| PTR | 1-160-229-25.dynamic-ip.hinet.net |
| Forward Confirmed | Yes — FCrDNS verified |
| Forward Hostnames | 1-160-229-25.dynamic-ip.hinet.net |
🔐 DNS Hygiene
| Hygiene Score | 80% (Excellent) |
| SPF | Present |
| DMARC | Not configured |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
☁️ Network Classification
| Infrastructure | Mobile |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 — Basic operator with some routing infrastructure |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | — |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | None |
| Valid From | — |
| Valid Until | — |
🛡️ Public Network Snapshot
| Origin ASN | AS3462 |
| Network Prefix | 1.160.0.0/16 |
| Route mapping | Found |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 0% | 0 | 0 |
| reputation | 0% | 0 | 0 |
| geolocation | 25% | 1 | 1 |
| Overall | 16% | 4 | 4 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-06-23 00:55:52 UTC |
| Last Seen | 2026-08-22 14:57:30 UTC |
| Profile Built | 2026-08-29 14:59:17 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 24 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 1.160.229.25
Who owns the IP address 1.160.229.25?
1.160.229.25 is registered to HINET Network-Adm. The address falls within the 1.160.0.0/16 network block. Registration is held at APNIC.
Where is 1.160.229.25 located?
Geolocation data places 1.160.229.25 in New Taipei City, New Taipei City, Taiwan. The local time zone is Asia/Taipei. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 1.160.229.25 malicious or safe?
1.160.229.25 currently carries a moderate risk assessment, meaning some indicators warrant caution, but the evidence is mixed. This assessment is generated from continuously collected signals and can change over time.
What is the hostname for 1.160.229.25?
The reverse DNS (PTR) record for 1.160.229.25 is 1-160-229-25.dynamic-ip.hinet.net. This hostname is forward-confirmed, meaning it resolves back to the same address.
Is 1.160.229.25 a VPN, proxy, or data center address?
1.160.229.25 is classified as a mobile network based on network ownership and behavioural analysis.