# IP INTELLIGENCE BRIEFING
Target: 103.190.229.13/32
Date: 2026-07-28
Classification: LOW RISK
---
## EXECUTIVE SUMMARY
IP address 103.190.229.13 is geolocated to Hong Kong (HK) with a risk score of 25 (Low Risk). The IP exhibits minimal threat indicators, is not associated with known malicious campaigns, and maintains a clean reputation profile. Current activity shows firewalled/no services with no open ports detected.
---
## OWNERSHIP AND NETWORK CLASSIFICATION
- Origin ASN: 63969
- BGP Prefix: 103.190.229.0/24
- Routing Stability: Unstable (route changes detected)
- Network Role: Firewalled / No Services
- Infrastructure Type: Not Provider, CDN, VPN, Proxy, Tor, or Hosting
- RIR Registry: Not specified
---
## GEOLOCATION DATA
- Country: Hong Kong (HK)
- Region: Not specified
- Timezone: Asia/Hong_Kong
- Geo Validation: Consensus valid across 1 source
---
## DNS AND IDENTIFICATION
- PTR Hostname: 103.190.229.13.earth.net.bd
- Forward Resolution: Confirmed (1 hostname)
- DNSSEC: Valid
- Email Authentication: No SPF/DMARC records
- Hosted Domains: None detected
---
## THREAT INDICATORS
- Abuse Confidence Score: Not applicable
- Blacklist Status: Listed on 1 of 8 DNSBLs
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
- Honeypot Hits: 0
- Enumeration Strikes: 0
---
## SUBNET ANALYSIS (103.190.229.0/24)
- Abuse Density: 0 (Low)
- Neighbor Count: 1 active sibling
- Sibling Risk Profile:
- 103.190.229.57: Risk Score 25 (Low)
- Overall Subnet Classification: Low Risk
---
## OBSERVATION HISTORY
Thirteen observations recorded across the monitoring period. Key signals include:
- Operator score: 0.1304 (Minimal)
- DNSSEC validation: Valid
- Recent blacklist activity: 1 listing detected with "high" severity
- Signal confidence: 0.60-0.90 across observation types
- Threat persistence: 0 days (not persistently malicious)
---
## NETWORK TOPOLOGY
- Hop Count: 16
- First Hop RTT: 0.3ms
- Last Hop RTT: 297.9ms
- Transit Networks: Comcast, Lumen
- Timed Out Hops: 6
---
## TRAFFIC BEHAVIOR
- Open Ports: None
- TLS Certificate: None
- HTTP Title: None
- Server Banner: None
- WAF Violations: 0
- Total Incidents: 0
---
## RECOMMENDED ACTIONS
No specific firewall rules or blocking recommendations generated due to low-risk profile. However, SOC analysts should:
1. Monitor the subnet 103.190.229.0/24 for emerging activity
2. Correlate any outbound connections from 103.190.229.13 with threat intelligence feeds
3. Review the single DNSBL listing to determine if it affects operational requirements
---
## CONCLUSION
IP 103.190.229.13 presents a low-risk profile with no active threat indicators. The subnet demonstrates minimal abuse density. Continued monitoring is recommended but immediate blocking or escalation is not warranted based on current data.
---
Generated by: IPDebrief Intelligence Platform
Analysis Type: Defensive Security Intelligence
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | IRT-NETVISION-BD |
| ASN | AS63969 |
| Network Name | NETVISION-BD |
| CIDR Block | 103.190.229.0/24 |
| RIR | APNIC |
| Country | BD |
| Abuse Contact | Available via RDAP |
🌐 DNS Intelligence
| PTR | 103.190.229.13.earth.net.bd |
| Forward Confirmed | No — PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | 103.190.229.13.earth.net.bd |
🔐 DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
☁️ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Single-Service Host |
| Network Tier | Unknown — Insufficient routing data to classify |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | — |
| Closed Ports | 22, 25, 443, 3389, 8080, 8443 (1 open / 7 scanned) | ||
| Server | — |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | None |
| Valid From | — |
| Valid Until | — |
🛡️ Public Network Snapshot
| Origin ASN | AS63969 |
| Network Prefix | 103.190.229.0/24 |
| Route mapping | Found |
| HSTS | Not detected |
| CSP | Not detected |
| HTTP/2 | Not detected |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 8% | 1 | 1 |
| routing | 8% | 1 | 1 |
| services | 8% | 1 | 1 |
| ownership | 0% | 0 | 0 |
| reputation | 8% | 1 | 1 |
| geolocation | 12% | 2 | 2 |
| Overall | 7% | 6 | 6 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-07-19 05:57:56 UTC |
| Last Seen | 2026-09-02 23:03:56 UTC |
| Profile Built | 2026-09-02 23:18:39 UTC |
| Data Freshness | Live |
| Signal Types | 23 |
| Total Observations | 26 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 103.190.229.13
Who owns the IP address 103.190.229.13?
103.190.229.13 is registered to IRT-NETVISION-BD. The address falls within the 103.190.229.0/24 network block. Registration is held at APNIC.
Where is 103.190.229.13 located?
Geolocation data places 103.190.229.13 in Hong Kong. The local time zone is Asia/Hong_Kong. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 103.190.229.13 malicious or safe?
103.190.229.13 currently carries a low risk assessment, meaning no significant threat indicators have been observed. This assessment is generated from continuously collected signals and can change over time.
What is the hostname for 103.190.229.13?
The reverse DNS (PTR) record for 103.190.229.13 is 103.190.229.13.earth.net.bd. This hostname is not forward-confirmed, so it should be treated as a weak signal.
What ports are open on 103.190.229.13?
Responsive ports observed on 103.190.229.13 include 80. Port visibility reflects the most recent scan and may change as the host's configuration or firewall rules change.