# IP Intelligence Briefing: 103.144.18.60/32
Classification: Low Risk | Risk Score: 25 | Analysis Date: Current
---
## Executive Summary
IP address 103.144.18.60 is classified as low risk with a risk score of 25. The address is assigned to ASN 139418 (GASATEKNET-ID) and registered to organization UBAITULLAH MASRUR under the APNIC RIR. While the address shows minimal active threat indicators, one DNSBL listing was observed with high severity. The IP currently presents no open services and no active malicious behavior patterns.
---
## Ownership and Network Classification
- ASN: 139418 (GASATEKNET-ID)
- Organization: UBAITULLAH MASRUR
- Network Block: 103.144.18.0/23
- RIR Registry: APNIC
- Allocation Date: 2019-10-11
- Control Plane: Route stability flag indicates false; route changes observed over 30-day period
---
## Geolocation Discrepancy
Geolocation signals show conflicting data:
- Primary Country Code: GB (United Kingdom)
- Alternative Signal: ID (Indonesia) with coordinates -0.79, 113.92
- Inference Method: Multi-signal inference
- Confidence: 0.52-0.85 (medium confidence)
- Accuracy: 1500 km radius
The ownership registration under APNIC (Asia-Pacific) aligns with the Indonesian signal, suggesting the primary geolocation may require further validation.
---
## Threat Indicators
- Abuse Confidence Score: Not available
- Blacklist Status: Listed on 1 of 8 DNSBLs (high severity listing observed)
- Tor Exit Node: False
- Known Attacker: False
- Spam Source: False
- Campaign Likelihood: Not established
- Known Campaigns: None identified
---
## Network Behavior
- Service Status: Firewalled / No Services
- Open Ports: None detected
- DNS Resolution: Forward confirmation failed
- PTR Records: None
- Email Authentication: SPF and DMARC not configured
- HTTP/HTTPS: No active services detected (no TLS certificates, banners, or HTTP headers)
- Service Purpose: Classification indicates no active services
---
## Neighborhood Analysis
- Subnet: 103.144.18.0/24
- Abuse Density: 0
- Neighbor Count: 0
- Risk Distribution: No high, medium, or low risk siblings detected
- Threat Siblings: None identified
The /24 subnet shows no correlated threat activity from neighboring addresses.
---
## Observation History
Thirteen signal observations recorded. Key patterns:
- Recent Activity: Signals observed as recent as 2026-07-29
- DNSSEC: Valid (observed with 0.90 confidence)
- Blacklist Activity: One listing with high severity detected
- Persistence: No persistent malicious behavior detected
- Threat Persistence Days: 0
- Total Incidents: 0
---
## Recommended Actions
Based on the current risk profile (score 25), no immediate firewall or blocking actions are required. The IP presents as low risk with no open services and no active threat indicators.
Monitoring Recommendations:
- Continue monitoring for DNSBL listing changes
- Watch for service activation (open ports appearing)
- Monitor geolocation signals for stability
- Track route stability changes
---
## Conclusion
IP 103.144.18.60 is a low-risk address with no currently exploitable services. The primary concern is a single high-severity DNSBL listing, though the IP shows no active malicious behavior. The geolocation discrepancy between ownership (Indonesia/APNIC) and primary signal (GB) warrants periodic review. No immediate defensive actions are recommended; continue standard monitoring procedures.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | UBAITULLAH MASRUR |
| ASN | AS139418 |
| Network Name | GASATEKNET-ID |
| CIDR Block | 103.144.18.0/23 |
| RIR | APNIC |
| Country | ID |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 0% | 0 | 0 |
| routing | 0% | 0 | 0 |
| services | 0% | 0 | 0 |
| ownership | 25% | 1 | 2 |
| reputation | 0% | 0 | 0 |
| geolocation | 0% | 0 | 0 |
| Overall | 4% | 1 | 2 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-07-24 02:12:37 UTC |
| Last Seen | 2026-07-29 20:49:33 UTC |
| Profile Built | 2026-07-29 21:00:04 UTC |
| Data Freshness | Live |
| Signal Types | 17 |
| Total Observations | 17 |
Full dossier details are available via our API.