IPDebrief

103.99.249.133

IP Intelligence Dossier
Your IP: 216.73.217.34
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

Intelligence Briefing: 103.99.249.133

Overview: The endpoint presented a Low Risk reputation score of 30. Ownership was attributed to ASN 136948 (IRT-TDV-BD) within the APNIC RIR.

Geolocation: Data indicated a geographic discrepancy, with consensus placing the host in Boston, US, while the organization registry aligned with Bangladesh. Physical distance analysis suggested a separation of 7528.2 km from the reporting location.

Network Services: Active ports included 80 (HTTP), 443 (HTTPS), 22 (SSH), and 8080 (HTTP-Alt). TLS certificates displayed randomized subject and issuer domains.

Threat Indicators: The address appeared on one DNSBL list. Behavioral analysis recorded zero honeypot hits and no known campaign associations. Control plane metrics showed valid RPKI state but inconsistent route stability over the last 30 days.

Recommendations: Operational guidance suggested implementing rate-limiting controls due to moderate risk classification and insufficient DNS hygiene scores.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΊπŸ‡Έ United States
RegionUS-MA
CityBoston
TimezoneAmerica/New_York
Latitude42.36
Longitude-71.06

🏒 Ownership & Registration

OrganizationIRT-TDV-BD
ASNAS136948
Network NameTDV-BD
CIDR Block103.99.249.0/24
RIRAPNIC
CountryBD
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR RecordNo PTR
Forward ConfirmedNo β€” PTR hostname does not resolve back to this IP (weak signal)

πŸ” DNS Hygiene

Hygiene Score0% (None)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECNot signed
CAANot configured

☁️ Network Classification

InfrastructureUnknown
Service PurposeWeb Server
Network TierTier 3 β€” Basic operator with some routing infrastructure
No specific classification

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
80httptcpβ€”
443httpstcpβ€”
22sshtcp
8080http-alttcpβ€”
Closed Ports25, 3389, 8443 (4 open / 7 scanned)
Serverβ€”
HTTP Titleβ€”
SSH VersionSSH-2.0-OpenSSH_7.4

πŸ” TLS Certificate

πŸ”’
CN=www.qsnvj27yx35yldbt.net
Issued by CN=www.lfwr4idw.com
Self-signed: No
SANsNone
Valid From2026-03-02T00:00:00+00:00
Valid Until2026-10-18T00:00:00+00:00
TLS ProtocolTls13
Cipher SuiteTLS_AES_256_GCM_SHA384
Signature Algorithmsha256RSA
Validity Period5 days
Serial Number3CDD4CF7A604B0A9
Thumbprint42481DDA712B7A9482C451C807ECBC8D6B5E9E33

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
44%
25
routing
50%
47
services
45%
28
ownership
47%
38
reputation
46%
124
geolocation
24%
22
Overall42%1454
Coverage: 3/6 dimensions Β· Data sufficiency: partial
Data CoherenceMostly Consistent (80%) β€” 1 contradiction(s)
AttributionModerate (65%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid
⚠ Geo sources disagree on country: BD, Bangladesh, US

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-09-05 11:09:50 UTC
Last Seen2026-09-10 20:10:42 UTC
Profile Built2026-09-11 11:18:07 UTC
Data FreshnessLive
Signal Types29
Total Observations86
πŸ” 29 signal types Β· 86 observations collected
This report is generated from 29+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.