IP Intelligence Briefing: 103.165.106.66
*Generated via IPDebrief Analysis*
---
**1. Core Profile**
- Risk Score: 40 (Moderate Risk)
- Ownership: Registered to MANAGER ADMIN (ASN 59183, Correl IT Services Pvt Ltd, India).
- Geolocation: Punjab, Jalandhar, India (latitude 20.59, longitude 78.96).
- Threat Indicators: No direct malicious activity detected (no known attackers, spam, or campaigns).
- Network Role: Firewalled / No Services (no open ports, no TLS/HTTP services).
- Control Plane: BGP prefix 103.165.106.0/24, DNSSEC valid, 2 DNSBL listings (out of 8 total).
---
**2. Observation History**
- Recent Activity (Last 30 Days):
- Geolocation inferred in India with 52% confidence.
- DNS listings: 2 high-severity threats (out of 8 total lists).
- Network ownership confirmed via BGP and RDAP.
- Trends: No persistent malicious behavior; risk score stable.
---
**3. Relationships**
- Linked Entities:
- Subnet 103.165.106.0/24 (same network as CORRELT).
- No direct ties to known malicious organizations or domains.
- DNS: No PTR records or hosted domains.
---
**4. Neighborhood Analysis**
- Subnet: 103.165.106.0/24 (256 IPs).
- Abuse Density: 0.5 (moderate risk).
- Neighbors:
- 103.165.106.68: Risk score 55 (high-risk neighbor).
- Active Siblings: 1 (103.165.106.68).
- Threat Siblings: 1 (103.165.106.68).
---
**5. Recommendations**
- Monitor Neighbor: 103.165.106.68 has a higher risk score; investigate potential lateral movement or shared infrastructure.
- Verify DNSSEC: Confirm DNSSEC validity for 103.165.106.0/24 to prevent spoofing.
- Check DNSBL Listings: Investigate why this IP is listed on 2 DNSBLs (e.g., spam, malware).
- Network Segmentation: Ensure firewalled subnets (e.g., 103.165.106.0/24) are isolated from critical assets.
---
Conclusion: 103.165.106.66 appears to be a legitimate, firewalled server with no direct malicious indicators. However, its high-risk neighbor (103.165.106.68) warrants further investigation. SOC teams should monitor DNSBL status and network traffic patterns for anomalies.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | MANAGER ADMIN |
| ASN | AS59183 |
| Network Name | CORRELT |
| CIDR Block | 103.165.106.0/23 |
| RIR | APNIC |
| Country | IN |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 0% | 0 | 0 |
| routing | 0% | 0 | 0 |
| services | 0% | 0 | 0 |
| ownership | 27% | 2 | 3 |
| reputation | 0% | 0 | 0 |
| geolocation | 13% | 1 | 1 |
| Overall | 6% | 3 | 4 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-06-04 06:34:21 UTC |
| Last Seen | 2026-06-13 00:14:02 UTC |
| Profile Built | 2026-06-13 00:20:39 UTC |
| Data Freshness | Live |
| Signal Types | 15 |
| Total Observations | 15 |
Full dossier details are available via our API.