# IP Intelligence Briefing: 112.205.67.215/32
## Executive Summary
IP address 112.205.67.215 is classified as Low Risk with an overall risk score of 25. The address belongs to PLDT's Consumer_DSL network infrastructure and is associated with Philippine mobile carrier PLDT/Smart (ASN 9299). No active threat indicators or malicious activity were observed. The IP is currently firewalled with no accessible services.
## Technical Profile
- IP Address: 112.205.67.215/32
- ASN: 9299 (IRT-PLDT-PH)
- Organization: PLDT Philippines (Philippine Long Distance Tel.)
- Network Block: 112.205.0.0/17
- Geolocation: Marikina City, Philippines (PH)
- Timezone: Asia/Manila
- Network Role: Mobile (LTE/5G connectivity via PLDT/Smart)
- DNS Resolution: 112.205.67.215.pldt.net
- PTR Record: 112.205.67.215.pldt.net
## Risk Assessment
| Metric | Value | Assessment |
|---|---|---|
| Overall Risk Score | 25 | Low Risk |
| Provider Score | 0 | Neutral |
| Authority Score | 0 | Neutral |
| Abuse Confidence Score | N/A | No abuse data |
| Blacklist Count | 0 | Clean |
| DNSBL Listed | 1 of 8 | Minimal concern |
Control Plane Status:
- Origin ASN: 9299
- BGP Prefix: 112.205.64.0/20
- Route Stability: False
- DNSSEC: Valid
- Operator Score: 0.1304 (Minimal)
## Threat Indicators
- Known Attacker: No
- Spam Source: No
- Tor Exit Node: No
- Proxy/VPN: No
- Hosting Service: No
- Cloud Infrastructure: No
- Known Campaigns: None identified
- Threat Feeds: None detected
- Active Services: None (firewalled/no services)
- Open Ports: None detected
## Neighborhood Analysis
- Subnet: 112.205.67.0/24
- Abuse Density: 0 (Clean)
- Active Siblings: 0
- Threat Siblings: 0
- Neighbor Count: 0 discovered
- Classification: Clean
## Observation History
18 observations recorded with recent activity on 2026-07-24. Key findings:
- Classification: Clean (consistent)
- Abuse Density: 0 (consistent)
- Geolocation: Validated as plausible (PH)
- RTT Metrics: Avg 245ms, Min 242ms, Max 252ms
- No persistent malicious behavior detected
- No ownership changes observed
## Relationships
- Network Associations: Consumer_DSL (multiple entries)
- DNS Associations: 112.205.67.215.pldt.net (multiple entries)
- No external entity correlations identified
## Intelligence Conclusion
This IP address represents a legitimate consumer mobile connection from PLDT's Philippine network infrastructure. The low risk score, clean neighborhood profile, absence of threat indicators, and consistent observation history indicate no malicious activity. The single DNSBL listing represents minimal concern and does not warrant blocking.
## Recommended Actions
1. Monitor: Continue standard monitoring; no immediate action required
2. Allow: Permissible for general traffic flow
3. Block: Not recommended based on current risk profile
4. Firewall Rules: No specific iptables/nftables rules required
Classification: LOW RISK — No immediate threat to network security.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | IRT-PLDT-PH |
| ASN | AS9299 |
| Network Name | Consumer_DSL |
| CIDR Block | 112.205.0.0/17 |
| RIR | APNIC |
| Country | PH |
| Abuse Contact | Available via RDAP |
🌐 DNS Intelligence
| PTR | 112.205.67.215.pldt.net |
| Forward Confirmed | No — PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | 112.205.67.215.pldt.net |
🔐 DNS Hygiene
| Hygiene Score | 0% (None) |
| SPF | 0/2 domains |
| DMARC | 0/2 domains |
| FCrDNS | Not verified |
| DNSSEC | Not signed |
| CAA | Not configured |
| Domains Checked | 2 domains |
☁️ Network Classification
| Infrastructure | Mobile |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown — Insufficient routing data to classify |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | — |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | None |
| Valid From | — |
| Valid Until | — |
🛡️ Public Network Snapshot
| Origin ASN | AS9299 |
| Network Prefix | 112.205.64.0/20 |
| Route mapping | Found |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 25% | 1 | 2 |
| reputation | 0% | 0 | 0 |
| geolocation | 25% | 1 | 1 |
| Overall | 20% | 5 | 6 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-07-07 12:34:29 UTC |
| Last Seen | 2026-10-05 06:22:28 UTC |
| Profile Built | 2026-10-05 06:23:04 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 24 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 112.205.67.215
Who owns the IP address 112.205.67.215?
112.205.67.215 is registered to IRT-PLDT-PH. The address falls within the 112.205.0.0/17 network block. Registration is held at APNIC.
Where is 112.205.67.215 located?
Geolocation data places 112.205.67.215 in Pasig, Metro Manila, Philippines. The local time zone is Asia/Manila. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 112.205.67.215 malicious or safe?
112.205.67.215 currently carries a low risk assessment, meaning no significant threat indicators have been observed. This assessment is generated from continuously collected signals and can change over time.
What is the hostname for 112.205.67.215?
The reverse DNS (PTR) record for 112.205.67.215 is 112.205.67.215.pldt.net. This hostname is not forward-confirmed, so it should be treated as a weak signal.
Is 112.205.67.215 a VPN, proxy, or data center address?
112.205.67.215 is classified as a mobile network based on network ownership and behavioural analysis.