# Intelligence Briefing: 115.66.150.33/32
Classification: Moderate Risk
Date: Current
Analyst: IPDebrief SOC Intelligence
## Executive Summary
The IP address 115.66.150.33 belongs to Singtel (ASN 9506) in Singapore and presents moderate risk (score: 60). The address is associated with mobile carrier infrastructure (Singtel LTE/5G) and shows no active services. The subnet demonstrates clean classification with zero abuse density across 115.66.150.0/24.
## Ownership & Infrastructure
| Attribute | Value |
|---|---|
| ASN | 9506 |
| Organization | IRT-SINGNET-SG |
| Network | SINGTEL-FIBRE-115-66-150-0/24 |
| Location | Singapore (10 EUNOS ROAD 8) |
| RIR | APNIC |
| Registration | Registered via RDAP |
The IP resolved to mobile carrier infrastructure with Singtel as the carrier (MCC 525, MNC 01). DNS PTR record bb115-66-150-33.singnet.com.sg confirms infrastructure association. No open ports detected; services remain firewalled with no active HTTP/HTTPS endpoints.
## Threat Assessment
| Indicator | Status |
|---|---|
| Known Attacker | False |
| Spam Source | False |
| Tor Exit Node | False |
| CDN/Cloud/Proxy | False |
| Mobile Connection | True |
| DNSBL Listed | 2 of 8 lists |
| Operator Score | 0.2609 (Basic) |
| Route Stability | False |
The address exhibited one threat observation with no persistent malicious activity detected. Route changes occurred within the 30-day window, indicating some routing instability.
## Network Neighborhood Analysis
The 115.66.150.0/24 subnet showed zero abuse density across all monitored sibling addresses. No active or threat siblings detected. The neighborhood classification remains "clean" with no inherited risk from adjacent addresses.
## Historical Observations
Nineteen observations recorded, with the most recent activity dated 2026-07-29. Ownership remained stable with zero changes. Threat persistence days registered at zero. The address is not classified as persistently malicious.
## Recommended Actions
Firewall/Routing:
- Monitor for connection attempts (mobile carrier IP)
- Allow traffic from Singtel mobile network ranges if legitimate use required
- No immediate blocking recommended given clean subnet classification
Investigation Priorities:
- Review DNSBL listings to determine blocking rationale
- Verify if the 2 DNSBL listings relate to specific campaigns or false positives
- Monitor for any emergence of services on this mobile carrier IP
## Conclusion
IP 115.66.150.33 represents mobile carrier infrastructure from Singtel with moderate risk scoring primarily from DNSBL associations. The subnet demonstrates clean characteristics with no abuse density. SOC teams should monitor but need not block unless specific threat indicators emerge. The mobile carrier designation suggests legitimate traffic patterns; blocking may impact legitimate users.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
| Honeypot | Trap endpoint probes | 1 |
π’ Ownership & Registration
| Organization | IRT-SINGNET-SG |
| ASN | AS9506 |
| Network Name | SINGTEL-FIBRE-115-66-150-0 |
| CIDR Block | 115.66.150.0/24 |
| RIR | APNIC |
| Country | SG |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | bb115-66-150-33.singnet.com.sg |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | bb115-66-150-33.singnet.com.sg |
π DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Mobile |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 42% | 2 | 3 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 25% | 1 | 2 |
| reputation | 19% | 1 | 2 |
| geolocation | 25% | 1 | 1 |
| Overall | 26% | 7 | 10 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-07-22 06:28:28 UTC |
| Last Seen | 2026-08-06 06:39:19 UTC |
| Profile Built | 2026-07-29 12:21:56 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 22 |
Full dossier details are available via our API.