IP Intelligence Briefing: 116.99.171.254
*Generated via IPDebrief tools: Profile, History, Relationships, & Neighbors*
---
**1. IP Profile**
- Risk Score: 50 (Moderate Risk)
- Ownership:
- ASN: 24086
- Organization: Viettel Corporation (IRT-VNNIC-AP)
- Country: Vietnam (VN)
- Region: Quy Nhon (Region 31)
- Geolocation:
- Latitude: 13.77, Longitude: 109.24
- Timezone: Unavailable
- Network Role: Firewalled / No Services (no open ports, no TLS/HTTP services detected)
- DNS:
- PTR Hostname: `dynamic-ip-adsl.viettel.vn`
- Email Auth: SPF and DMARC records present
- Threat Indicators:
- No direct malware, phishing, or exploit indicators
- Listed in 2/8 DNSBLs (low-severity abuse confidence)
---
**2. Observation History**
- Recent Activity (Last 30 Days):
- 15 observations, with 12% confidence in geolocation and network classification.
- DNSBL Listings: 2 out of 8 lists (no high-severity threats).
- Pulse Count: 16 (likely benign traffic, no malicious campaigns detected).
- Trend: No persistent malicious behavior; risk score stable.
---
**3. Relationships**
- Network Affiliation:
- Subnet: `VIETTEL-VN` (ASN 24086)
- Linked to hostname: `dynamic-ip-adsl.viettel.vn`
- No Known Threat Associations:
- No correlated IPs, campaigns, or certificates detected.
---
**4. Subnet Neighbors**
- Subnet: `116.99.171.254/24`
- Risk Distribution:
- Low Risk: 4 IPs (0โ25 risk score)
- Medium Risk: 2 IPs (25โ40 risk score)
- High Risk: 0 IPs
- Notable Neighbors:
- `116.99.171.69` (25/50 risk)
- `116.99.171.134` (40/50 risk)
- `116.99.171.245` (25/50 risk)
---
**5. Recommendations**
- Monitor: Track DNSBL listings and subnet neighbors for anomalies.
- Verify: Confirm if the IPโs firewalled status is intentional (e.g., internal network).
- Threat Hunting: Cross-reference with `dynamic-ip-adsl.viettel.vn` for potential domain-based threats.
- Firewall Rules: Consider blocking high-risk neighbors (e.g., `116.99.171.134`) to mitigate lateral movement risks.
---
Note: This IP appears to be a legitimate Viettel infrastructure node with no confirmed malicious activity. However, its subnet contains mixed-risk neighbors, warranting further investigation.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | IRT-VNNIC-AP |
| ASN | AS24086 |
| Network Name | VIETTEL-VN |
| CIDR Block | 116.96.0.0/12 |
| RIR | APNIC |
| Country | VN |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | dynamic-ip-adsl.viettel.vn |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | dynamic-ip-adsl.viettel.vn |
๐ DNS Hygiene
| Hygiene Score | 60% (Good) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 0% | 0 | 0 |
| routing | 0% | 0 | 0 |
| services | 0% | 0 | 0 |
| ownership | 27% | 2 | 3 |
| reputation | 0% | 0 | 0 |
| geolocation | 13% | 1 | 1 |
| Overall | 6% | 3 | 4 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-30 10:57:40 UTC |
| Last Seen | 2026-06-13 03:44:26 UTC |
| Profile Built | 2026-06-12 02:37:05 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 20 |
Full dossier details are available via our API.