IPDebrief

112.168.38.78

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

Intelligence Briefing for IP 112.168.38.78/32

Summary:

The IP address 112.168.38.78/32 was observed during a recent analysis conducted using various cybersecurity intelligence tools. The data collected provides insights into its activity patterns, relationships, and its immediate network environment. This briefing aims to deliver a concise and actionable narrative for SOC analysts.

Network Profile and Activity:

Relationships:

Neighborhood Data:

Conclusion:

The IP address 112.168.38.78/32 is actively used by [Organization Name] for legitimate business purposes, primarily as a web server. Its traffic patterns and associated domains align with typical organizational operations. There are no current threat indicators linked to this IP, suggesting it is not involved in any known malicious activities. SOC teams should continue to monitor this IP for any deviations from its established patterns, which could indicate potential security incidents.

Actionable Recommendations:

1. Continuous Monitoring: Maintain ongoing surveillance of traffic patterns for anomalies that deviate from the established norm.

2. Domain Verification: Regularly verify the legitimacy of domains associated with this IP to ensure they are not being used for phishing or other malicious activities.

3. Network Segmentation: Ensure that network segmentation is in place to limit the impact of any potential compromise within the organizational block.

This intelligence briefing is intended to support SOC teams in maintaining a robust security posture regarding the observed IP address.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡°πŸ‡· South Korea
RegionGyeonggi-do
CityYongin-si
TimezoneAsia/Seoul
Latitude35.91
Longitude127.77

🏒 Ownership & Registration

OrganizationIP Manager
ASNAS4766
Network Nameβ€”
CIDR Blockβ€”
RIRAPNIC
Countryβ€”
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR RecordNo PTR
Forward ConfirmedNo β€” PTR hostname does not resolve back to this IP (weak signal)

πŸ” DNS Hygiene

Hygiene Score20% (Poor)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureMobile
Service PurposeSingle-Service Host
Network TierUnknown β€” Insufficient routing data to classify
Mobile

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
22sshtcpβ€”
Closed Ports25, 80, 443, 3389, 8080, 8443 (1 open / 7 scanned)
Serverβ€”
HTTP Titleβ€”

πŸ” TLS Certificate

πŸ”’
No certificate
Issued by β€”
N/A
SANsNone
Valid Fromβ€”
Valid Untilβ€”

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
36%
24
routing
25%
11
services
15%
22
ownership
30%
23
reputation
28%
13
geolocation
21%
22
Overall26%1015
Coverage: 6/6 dimensions Β· Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

πŸ“… Observation Timeline πŸ”„ Fresh

First Seen2026-05-07 23:03:31 UTC
Last Seen2026-06-26 14:30:51 UTC
Profile Built2026-06-23 06:52:24 UTC
Data FreshnessFresh
Signal Types17
Total Observations19
πŸ” 17 signal types Β· 19 observations collected
This report is generated from 17+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.