# IP Intelligence Briefing: 103.175.48.149/32
Classification: Low Risk | Geolocation: Indonesia (Banten, Kota Serang) | Date: July 28, 2026
## Executive Summary
IP address 103.175.48.149 is classified as Low Risk with a risk score of 0. The address is firewalled with no open services and shows no threat indicators. No security actions are recommended based on current threat intelligence.
## Technical Profile
- Risk Score: 0 (Low Risk)
- Reputation: Low Risk
- ASN: 138871 (Origin)
- BGP Prefix: 103.175.48.0/24
- Network Classification: Firewalled / No Services
- Geolocation: Indonesia (ID), Banten province, Kota Serang (accuracy: 1500km)
- Provider: Unknown (null)
- Organization: Unknown (null)
## Threat Indicators
- Blacklist Count: 0
- Abuse Confidence Score: None
- Known Attacker: No
- Spam Source: No
- Tor Exit Node: No
- Known Campaigns: None detected
- Threat Feeds: None
## Network Services
- Open Ports: None
- TLS Certificate: None
- HTTP Title: None
- DNS Records: No PTR records, no forward resolution
- Email Authentication: No SPF, DMARC, or TXT records configured
## Observation History
Fourteen signal observations recorded as of July 28, 2026. Key observations include:
- Geo-location signals consistently indicate Indonesia with 0.35 confidence
- Operator score: 0.1304 (labeled "Minimal")
- No threat signal persistence detected
- No ownership changes observed
## Neighborhood Analysis
The /24 subnet (103.175.48.0/24) contains 3 neighbor IPs with an abuse density of 0.0:
- 103.175.48.131: Risk Score 25, Authority Score 50 (Low Risk)
- 103.175.48.230: Risk Score null, Authority Score null (No Data)
- 103.175.48.244: Risk Score 25, Authority Score 50 (Low Risk)
The subnet shows minimal threat activity with no high or medium-risk neighbors.
## Relationship Graph
No relationships detected to related entities (subnets, hostnames, organizations, or certificates).
## Recommended Security Actions
No firewall rules or security actions are recommended. The IP demonstrates no malicious behavior patterns, no service exposure, and no threat indicators in the threat intelligence feeds.
## Traceroute Analysis
- Hop Count: 29
- Transit Networks: Comcast, Cogent
- Route Stability: False (not route stable)
- Moas Status: False
- RPKI State: Unknown
---
Analyst Notes: This IP should be treated as benign traffic. The subnet shows minimal abuse density and the target IP is completely firewalled. No monitoring or blocking is required unless other contextual intelligence suggests otherwise.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | ID-NIC HOSTMASTERS |
| ASN | AS138871 |
| Network Name | IANA-BLOCK |
| CIDR Block | 0.0.0.0/0 |
| RIR | APNIC |
| Country | ID |
| Abuse Contact | Available via RDAP |
🌐 DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No — PTR hostname does not resolve back to this IP (weak signal) |
🔐 DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
☁️ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown — Insufficient routing data to classify |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | — |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | None |
| Valid From | — |
| Valid Until | — |
🛡️ Public Network Snapshot
| Origin ASN | AS138871 |
| Network Prefix | 103.175.48.0/24 |
| Route mapping | Found |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 13% | 1 | 2 |
| routing | 8% | 1 | 1 |
| services | 8% | 1 | 1 |
| ownership | 0% | 0 | 0 |
| reputation | 8% | 1 | 1 |
| geolocation | 17% | 2 | 3 |
| Overall | 9% | 6 | 8 |
| Data Coherence | Mostly Consistent (80%) — 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-07-19 05:57:56 UTC |
| Last Seen | 2026-09-02 17:16:27 UTC |
| Profile Built | 2026-09-02 17:32:24 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 27 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 103.175.48.149
Who owns the IP address 103.175.48.149?
103.175.48.149 is registered to ID-NIC HOSTMASTERS. The address falls within the 0.0.0.0/0 network block. Registration is held at APNIC.
Where is 103.175.48.149 located?
Geolocation data places 103.175.48.149 in Kota Serang, Banten, Indonesia. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 103.175.48.149 malicious or safe?
103.175.48.149 currently carries a low risk assessment, meaning no significant threat indicators have been observed. This assessment is generated from continuously collected signals and can change over time.