## IP Intelligence Briefing: 116.110.19.247
Classification: Network Infrastructure / Vietnam
Risk Assessment: Low Risk (Score: 25/100)
Date: 2026-06-25
Executive Summary
Intellect analysis of IP address 116.110.19.247 confirms classification as low-risk network infrastructure located in Da Nang, Vietnam. The endpoint operates under Viettel Corporation (ASN 24086) with no active threat indicators, open services, or malicious reputation. One DNSBL listing was detected among eight total lists reviewed. The IP presents minimal immediate threat to network security operations.
Ownership and Network Context
The IP address belongs to VIETTEL-VN (Netname: VIETTEL-VN) under ASN 24086, part of the larger 116.96.0.0/12 CIDR block registered with APNIC since 2007. Geographic consensus places the endpoint in Da Nang, Vietnam (116.110.19.247/24 subnet). The network operates with firewalled configuration and no exposed services detected across standard port scans.
Threat Assessment
Current threat indicators show no active malicious activity. The endpoint is not classified as a Tor exit node, known attacker, or spam source. Blacklist count remains at zero despite one DNSBL listing in the control plane. The IP is not flagged as part of any known threat campaigns. Historical threat observation count is one, indicating minimal persistent malicious behavior.
Service and DNS Analysis
Network role classification indicates "Firewalled / No Services" with zero open ports. No TLS certificates, HTTP titles, or server banners detected. DNS infrastructure shows no hosted domains, failed forward resolution, and no email authentication records (SPF, DMARC). DNSSEC validation passed. The absence of DNS and service activity supports the low-risk classification.
Neighborhood Analysis
The 116.110.19.0/24 subnet exhibits abuse density of 0.5 with "mostly_clean" classification. One neighboring IP (116.110.19.232) shows elevated risk metrics (Risk: 55, Authority: 50), though the target IP 116.110.19.247 itself remains clean. No active sibling threats detected for the target address.
Historical Observations
Analysis of 17 historical observations reveals a single threat detection event dated 2026-06-04. Subsequent observations through 2026-06-25 show minimal signal activity with no recurrence of malicious indicators. The IP demonstrates threat persistence of zero days and is not flagged as persistently malicious. ASN and geographic location have remained stable throughout the observation period.
Recommended Actions
Based on current risk profile (Score 25), no immediate firewall rules or blocking recommendations are necessary. The endpoint qualifies for standard network monitoring without elevated threat handling protocols. Continued observation of the associated subnet (116.110.19.232) is advised due to elevated neighbor risk metrics.
Intelligence Confidence
Data sufficiency: Complete across all six dimensions (threat, routing, services, ownership, reputation, geolocation). Overall confidence: 19%. Geographic validation: Consistent with Vietnam-based routing (9,358.7 km distance from probe origin). No ICMP response validation possible due to blocked responses.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | IRT-VNNIC-AP |
| ASN | AS24086 |
| Network Name | VIETTEL-VN |
| CIDR Block | 116.96.0.0/12 |
| RIR | APNIC |
| Country | VN |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 20% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 8% | 1 | 1 |
| ownership | 27% | 2 | 3 |
| reputation | 19% | 1 | 3 |
| geolocation | 24% | 2 | 3 |
| Overall | 19% | 9 | 14 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-07 23:05:37 UTC |
| Last Seen | 2026-06-25 00:45:55 UTC |
| Profile Built | 2026-06-25 00:55:17 UTC |
| Data Freshness | Live |
| Signal Types | 18 |
| Total Observations | 18 |
Full dossier details are available via our API.