# IP INTELLIGENCE BRIEFING
Target: 113.199.239.2/32
Report Date: 2026-07-30
Classification: LOW RISK
---
## EXECUTIVE SUMMARY
IP 113.199.239.2 presents a low-risk profile (risk score: 25) with no active malicious indicators currently observed. The address is assigned to IRT-NPTELECOM-NP (NTCINTERNET) within APNIC-regulated space but geolocated to New York, US. No services are actively running on the host.
---
## OWNERSHIP & INFRASTRUCTURE
| Attribute | Value |
|---|---|
| ASN | 23752 |
| Organization | IRT-NPTELECOM-NP |
| Network Name | NTCINTERNET |
| CIDR Block | 113.199.224.0/19 |
| RIR | APNIC |
| Registration Date | Not Available |
Network Role: Firewalled / No Services
Infrastructure Type: None detected
Cloud/CDN/VPN/Proxy Status: Negative across all categories
---
## THREAT INDICATORS
| Indicator | Status |
|---|---|
| Blacklist Count | 1/8 total lists |
| Max Severity | High |
| Tor Exit Node | No |
| Known Attacker | No |
| Spam Source | No |
| Active Campaigns | None |
| Known Threat Feeds | None |
DNSBL Status: Listed on 1 of 8 threat lists (recent high-severity listing observed)
---
## GEOLOCATION
| Attribute | Value |
|---|---|
| Country | United States |
| Region | New York |
| City | New York |
| Timezone | America/New_York |
| Geo Consensus | Valid |
| Geo Plausible | False |
---
## NEIGHBORHOOD ANALYSIS
Subnet: 113.199.239.2/24
Abuse Density: 0.5 (moderate)
Classification: Mostly Clean
Total Siblings: 2
Active Siblings: 2
Threat Siblings: 1
Neighbor Risk: 113.199.239.216 (risk score: 0)
---
## OBSERVATION HISTORY (15 Events)
Recent signals indicate:
- Subnet abuse density: 0.5 (stable)
- DNSSEC validation: Valid
- Ownership changes: 0 (stable)
- Threat persistence: 0 days
- No persistent malicious behavior detected
- One high-severity blacklist listing observed in recent period
---
## NETWORK BEHAVIOR
- Open Ports: None detected
- TLS Certificates: None
- HTTP Title: None
- Service Banners: None
- PTR Hostnames: None
- Forward Resolution: Not confirmed
- Hosted Domains: 0
Traceroute: 30 hops (15 timed out), first hop RTT: 0.2ms, last hop: 250.2ms
---
## RELATIONSHIP GRAPH
- Network Associations: NTCINTERNET (3 entries)
- No additional entity relationships detected
---
## SECURITY RECOMMENDATIONS
| Risk Level | Action |
|---|---|
| **Current:** LOW | No immediate firewall rules required |
| **Monitoring:** Observe | Monitor blacklist status; 1 listing noted |
| **Context:** Route stability flagging false | Verify routing consistency |
Recommended Actions:
- No specific firewall rules generated (risk score 25 below threshold)
- Continue passive monitoring for service emergence
- Track blacklist listings if receiving connection attempts
---
## ANALYST NOTES
The IP shows minimal threat indicators with firewalled status and no active services. The single DNSBL listing warrants awareness but does not indicate active malicious behavior. Neighborhood analysis indicates moderate abuse density with one threat sibling in the /24 subnet. Route stability flagging false suggests potential routing changes warrant monitoring.
Threat Level: LOW
Priority: Routine monitoring
Recommended Action: No immediate action required
---
*Generated by IPDebrief Intelligence Platform*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | IRT-NPTELECOM-NP |
| ASN | AS23752 |
| Network Name | NTCINTERNET |
| CIDR Block | 113.199.224.0/19 |
| RIR | APNIC |
| Country | NP |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown β Insufficient routing data to classify |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 0% | 0 | 0 |
| services | 0% | 0 | 0 |
| ownership | 0% | 0 | 0 |
| reputation | 25% | 1 | 1 |
| geolocation | 0% | 0 | 0 |
| Overall | 8% | 2 | 2 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-07-26 09:11:40 UTC |
| Last Seen | 2026-07-30 06:53:22 UTC |
| Profile Built | 2026-07-30 07:04:50 UTC |
| Data Freshness | Live |
| Signal Types | 17 |
| Total Observations | 17 |
Full dossier details are available via our API.