# IP Intelligence Briefing: 102.66.145.215/32
## Executive Summary
IP 102.66.145.215 presents as a firewalled endpoint with minimal observable activity. The address carries a risk score of 0 and shows no active services, though historical signals indicate blacklist listings with high severity. No active threat indicators or malicious behavior were detected during observation.
## Current Risk Profile
- Risk Score: 0
- Reputation: Low Risk
- Provider Score: 0
- Authority Score: 0
- Stability: 0 (insufficient data)
- Classification: Firewalled / No Services
## Network Attribution
- Origin ASN: 328471
- BGP Prefix: 102.66.145.0/24
- Organization: Not identified
- ISP/Provider: Not identified
## Geolocation & Infrastructure
- Country/Region: Data unavailable
- Geolocation Confidence: Insufficient data for reliable geolocation
- Infrastructure Type: Not identified as cloud, CDN, VPN, proxy, or hosting service
- Mobile/Residential: Not identified
## Technical Observations
- Open Ports: None detected
- DNS PTR: No reverse DNS records
- Forward Resolution: Not confirmed
- Hosted Domains: None
- HTTP/SSL: No HTTP titles, TLS certificates, or server banners detected
- DNSSEC Validation: Valid
## Threat Indicators
- Known Attacker: No
- Tor Exit Node: No
- Spam Source: No
- Blacklist Listings: 1 listing with "high" maximum severity (observed in history)
- Threat Feeds: None
- Campaign Correlation: None
## Behavioral Analysis
- Honeypot Hits: 0
- Enumeration Strikes: 0
- WAF Violations: 0
- Total Incidents: 0
- Active Attacker Status: No
- Auto-Banned: No
## Network Neighborhood (102.66.145.0/24)
- Total Siblings: 4
- Abuse Density: 0%
- Risk Distribution: 0 High / 0 Medium / 4 Low
- Neighbor IPs:
- 102.66.145.51 (Risk: 25, Authority: 50)
- 102.66.145.88 (Risk: 25, Authority: 50)
- 102.66.145.129 (Risk: 0, Authority: 50)
- 102.66.145.195 (Risk: 25, Authority: 50)
## Relationship Graph
- Related Entities: None identified
- Associated Hostnames: None
- Associated Organizations: None
- Associated Certificates: None
## Historical Observation Summary
Seven observations recorded between 2026-07-25. Signals included DNSSEC validation, network role classification, and blacklist listings. Data sufficiency remains limited across most dimensions.
## Recommended Actions
- Risk Score: 0
- Recommended Actions: None
- Firewall Rules: Not required based on current profile
## Intelligence Assessment
IP 102.66.145.215 is classified as low risk with no active threat indicators. The address appears firewalled with no services exposed. While historical signals indicate a blacklist listing with high severity, the current profile shows no active malicious activity. The subnet exhibits minimal abuse density and predominantly low-risk neighbors. SOC analysts may monitor the IP for any changes in behavior, but no immediate blocking or mitigation actions are recommended at this time.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | Netops Herotel |
| ASN | AS328471 |
| Network Name | 102.66.128.0 - 102.66.191.255 |
| CIDR Block | 102.66.128.0/18 |
| RIR | AFRINIC |
| Country | ZA |
| Abuse Contact | — |
🌐 DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No — PTR hostname does not resolve back to this IP (weak signal) |
🔐 DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
☁️ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown — Insufficient routing data to classify |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | — |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | None |
| Valid From | — |
| Valid Until | — |
🛡️ Public Network Snapshot
| Origin ASN | AS328471 |
| Network Prefix | 102.66.145.0/24 |
| Route mapping | Found |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 0% | 0 | 0 |
| reputation | 0% | 0 | 0 |
| geolocation | 0% | 0 | 0 |
| Overall | 12% | 3 | 3 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-07-09 13:30:45 UTC |
| Last Seen | 2026-08-27 08:18:53 UTC |
| Profile Built | 2026-08-29 05:04:49 UTC |
| Data Freshness | Live |
| Signal Types | 14 |
| Total Observations | 16 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 102.66.145.215
Who owns the IP address 102.66.145.215?
102.66.145.215 is registered to Netops Herotel. The address falls within the 102.66.128.0/18 network block. Registration is held at AFRINIC.
Where is 102.66.145.215 located?
Geolocation data places 102.66.145.215 in Klerksdorp, North West, South Africa. The local time zone is Africa/Johannesburg. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 102.66.145.215 malicious or safe?
102.66.145.215 currently carries a low risk assessment, meaning no significant threat indicators have been observed. This assessment is generated from continuously collected signals and can change over time.