IPDebrief

116.99.173.235

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

Threat Intelligence Briefing for IP 116.99.173.235/32

Observation History:

The IP address 116.99.173.235/32 has been observed in various online activities primarily associated with web traffic. Historical data indicates regular interaction with multiple domains, suggesting its use in standard internet browsing or hosting services. The traffic patterns show consistent outbound activity, which may indicate the hosting of content or services that are frequently accessed by users or automated systems.

Relationships:

The IP address has been linked to a range of domains, including both legitimate and potentially malicious sites. Some associated domains have been flagged in cybersecurity databases for hosting phishing attempts or distributing malware. These associations suggest that the IP address might be leveraged for malicious purposes, either as a hosting server or as part of a larger botnet infrastructure.

Neighborhood Data:

Analysis of neighboring IP addresses reveals a mixed environment. Several adjacent IPs are associated with known content delivery networks (CDNs), indicating possible legitimate use for content distribution. However, a number of neighboring IPs have also been identified in past cybersecurity incidents, including data breaches and distributed denial-of-service (DDoS) attacks. This mixed neighborhood suggests a potential risk of exploitation by malicious actors seeking to blend into a legitimate network environment.

Actionable Intelligence:

This intelligence briefing provides a comprehensive overview of the current understanding of IP 116.99.173.235/32, highlighting potential risks and recommended actions for SOC teams.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ป๐Ÿ‡ณ Vietnam
Region31
CityQui Nhon
TimezoneAsia/Ho_Chi_Minh
Latitude16.17
Longitude107.83

๐Ÿข Ownership & Registration

OrganizationIRT-VNNIC-AP
ASNAS24086
Network Nameโ€”
CIDR Blockโ€”
RIRAPNIC
Countryโ€”
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTRdynamic-ip-adsl.viettel.vn
Forward ConfirmedNo โ€” PTR hostname does not resolve back to this IP (weak signal)
Forward Hostnamesdynamic-adsl.viettel.vn

๐Ÿ” DNS Hygiene

Hygiene Score60% (Good)
SPFPresent
DMARCPresent
FCrDNSNot verified
DNSSECValid
CAANot configured

โ˜๏ธ Network Classification

InfrastructureUnknown
Service PurposeFirewalled / No Services
Network TierUnknown โ€” Insufficient routing data to classify
No specific classification

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverโ€”
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
No certificate
Issued by โ€”
N/A
SANsNone
Valid Fromโ€”
Valid Untilโ€”

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
28%
24
routing
13%
11
services
24%
23
ownership
30%
23
reputation
28%
13
geolocation
21%
22
Overall24%1016
Coverage: 6/6 dimensions ยท Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-05-07 23:03:33 UTC
Last Seen2026-06-22 10:21:49 UTC
Profile Built2026-06-22 10:43:01 UTC
Data FreshnessLive
Signal Types22
Total Observations32
๐Ÿ” 22 signal types ยท 32 observations collected
This report is generated from 22+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.