## Intelligence Briefing: 113.212.69.215/32
Classification: MODERATE RISK
Date: June 24, 2026
Intel Source: IPDebrief Threat Intelligence Platform
---
Executive Summary
IP address 113.212.69.215/32 is assigned to IRT-DATAUTAMA-ID (DATAUTAMA-NET) within the Indonesian APNIC registry. The IP maintains a risk score of 40 (Moderate Risk) and is classified within a high-abuse subnet (113.212.69.0/24). No active threat indicators were identified, but the subnet exhibits elevated abuse density (0.8867), suggesting systemic network-level issues rather than isolated IP compromise.
---
Network Ownership & Geolocation
- Organization: IRT-DATAUTAMA-ID
- Network Name: DATAUTAMA-NET
- CIDR Block: 113.212.68.0/22
- Country: Indonesia (ID)
- Region/City: Jakarta, Meruya Utara - Kembangan
- Geolocation Confidence: GeoPlausible validation confirmed
- Registration Authority: APNIC (Asia-Pacific)
The IP is geographically anchored to Jakarta, Indonesia. Distance calculations indicate 16,175.8 km from probe location, consistent with trans-Pacific routing patterns.
---
Threat Indicators Assessment
| Indicator | Status |
|---|---|
| Tor Exit Node | Negative |
| Known Attacker | Negative |
| Spam Source | Negative |
| Active Threat Indicators | None |
| Blacklist Count | 0 |
| DNSBL Listed | 1 of 8 lists |
| ISP Reputation | Minimal (0.1304) |
No active threat campaigns, known malware distribution, or malicious reputation sources were associated with this address.
---
Network Behavior & Services
- Service Status: Firewalled / No Services Detected
- Open Ports: None
- TLS Certificates: None
- HTTP Services: None
- Network Role: Infrastructure / Reserved
The IP presents no publicly accessible services, indicating either enterprise-grade hardening or internal-only use.
---
Subnet Intelligence: 113.212.69.0/24
Critical neighborhood analysis reveals systemic risk patterns:
- Subnet Classification: High Abuse
- Abuse Density: 0.8867 (Elevated)
- Total Siblings: 256
- Active Siblings: 164 (64%)
- Threat Siblings: 227 (89% of active)
- Inherited Risk Score: 35
The subnet exhibits concentrated abuse activity across 227 threat siblings, suggesting potential infrastructure-level compromises or misconfigured services within the /24 block. All neighboring IPs in the sample set display identical risk scoring (40) and authority scoring (50).
---
Historical Trend Analysis
Observation history across 41 data points (June 23-24, 2026) shows consistent "Minimal" risk assessments throughout the observation period. No degradation or escalation in threat signals detected. The IP has demonstrated persistent benign behavior with no ownership changes or threat persistence indicators.
---
Recommended Security Actions
Primary Recommendation: BLOCK
Implement the following firewall rules across infrastructure platforms:
| Platform | Recommended Rule |
|---|---|
| iptables | `iptables -A INPUT -s 113.212.69.215 -j DROP` |
| nftables | `nft add rule inet filter input ip saddr 113.212.69.215 drop` |
| nginx | `deny 113.212.69.215;` |
| pfSense | `113.212.69.215/32` |
| Cloudflare WAF | Block with filter: `ip.src eq 113.212.69.215` |
| AWS WAF | Block CIDR: `113.212.69.215/32` |
---
Analyst Notes
While the individual IP (113.212.69.215) shows no active malicious behavior, the high-abuse classification of the parent subnet warrants enhanced scrutiny. Consider implementing subnet-level filtering for 113.212.68.0/22 if organizational policies permit, as 89% of the /24 subnet exhibits threat indicators.
Priority Level: MEDIUM
Monitoring Recommendation: Maintain blocking; monitor subnet abuse patterns over subsequent 30-day period.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | IRT-DATAUTAMA-ID |
| ASN | โ |
| Network Name | DATAUTAMA-NET |
| CIDR Block | 113.212.68.0/22 |
| RIR | APNIC |
| Country | ID |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 2 | 3 |
| routing | 0% | 0 | 0 |
| services | 8% | 1 | 1 |
| ownership | 24% | 2 | 3 |
| reputation | 27% | 1 | 3 |
| geolocation | 35% | 2 | 3 |
| Overall | 20% | 8 | 13 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-07 23:05:06 UTC |
| Last Seen | 2026-06-26 18:12:04 UTC |
| Profile Built | 2026-06-27 02:25:20 UTC |
| Data Freshness | Live |
| Signal Types | 16 |
| Total Observations | 43 |
Full dossier details are available via our API.