IPDebrief

103.49.238.22

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP Intelligence Briefing: 103.49.238.22/32

## Executive Summary

Target IP 103.49.238.22 presents a moderate risk profile (risk score: 50) associated with Indonesian cloud hosting infrastructure. The subnet demonstrates minimal threat activity with an abuse density of 0. No active campaigns or known attacker indicators were identified. The IP appears to be firewalled with no open services, though control plane data indicates some DNSBL presence.

## Profile Overview

Risk Classification: Moderate Risk (50)

Ownership: ASN 136052 / IRT-IDCLOUDHOST-ID / PT Cloud Hosting Indonesia

Geolocation: Sukabumi, Jawa, Indonesia (APNIC RIR)

Network Classification: Infrastructure / Firewalled

Stability: Not persistently malicious

## Threat Indicators

Control Plane Concerns:

## Network Services

## DNS Intelligence

## Neighborhood Analysis (103.49.238.0/24)

Subnet Risk Assessment: Clean

Abuse Density: 0

Total Siblings: 6 active

IP AddressRisk ScoreAuthority Score
103.49.238.235050
103.49.238.352550
103.49.238.635050
103.49.238.645050
103.49.238.1045050
103.49.238.2122550

Risk distribution: 4 medium-risk, 2 low-risk IPs in the subnet.

## Observation History

17 total observations recorded. Key signals include:

## Relationship Graph

Primary Associations:

## Recommended Actions

No immediate blocking recommended. The IP demonstrates:

Monitoring Recommendations:

1. Monitor DNSBL listing changes

2. Track route stability (currently unstable)

3. Review for any new threat indicator emergence

Firewall Classification: Allow with monitoring (risk score 50, moderate threat)

---

*Report generated based on IPDebrief intelligence platform data. All findings derived from observed signals and validated through multiple data sources.*

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ฎ๐Ÿ‡ฉ Indonesia
RegionJawa
CitySukabumi
Timezoneโ€”
Latitude-6.18
Longitude106.83

๐Ÿข Ownership & Registration

OrganizationIRT-IDCLOUDHOST-ID
ASNAS136052
Network Nameโ€”
CIDR Blockโ€”
RIRAPNIC
Countryโ€”
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTRip103-49-238-22.cloudhost.web.id
Forward ConfirmedNo โ€” PTR hostname does not resolve back to this IP (weak signal)
Forward Hostnamesip103-49-238-22.cloudhost.web.id

๐Ÿ” DNS Hygiene

Hygiene Score20% (Poor)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECValid
CAANot configured

โ˜๏ธ Network Classification

InfrastructureUnknown
Service PurposeFirewalled / No Services
Network TierUnknown โ€” Insufficient routing data to classify
No specific classification

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Serverโ€”
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
No certificate
Issued by โ€”
N/A
SANsNone
Valid Fromโ€”
Valid Untilโ€”

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
35%
23
routing
13%
11
services
8%
11
ownership
27%
23
reputation
13%
12
geolocation
35%
23
Overall22%913
Coverage: 6/6 dimensions ยท Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-05-09 11:33:24 UTC
Last Seen2026-06-25 14:37:19 UTC
Profile Built2026-06-25 14:57:06 UTC
Data FreshnessLive
Signal Types18
Total Observations24
๐Ÿ” 18 signal types ยท 24 observations collected
This report is generated from 18+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.