IP Intelligence Briefing: 14.103.111.167
*Generated via IPDebrief tools (Profile, History, Relationships, Neighbors)*
---
**1. Core Profile**
- Risk Score: 50 (Moderate Risk)
- Ownership:
- ASN: 4811
- Organization: IRT-VOLCANO-ENGINE-CN (APNIC registered)
- Geolocation:
- Country: China (CN)
- Latitude: 35.86, Longitude: 104.2 (inferred with 2500km accuracy)
- Threat Indicators:
- No malicious activity detected (no indicators, blacklists, or campaigns)
- Not a Tor exit node, spam source, or known attacker
---
**2. Network Behavior**
- Network Role:
- Firewalled / No Services (no open ports, TLS, or HTTP detected)
- Not a CDN, cloud, mobile, or residential IP
- Control Plane:
- BGP Prefix: 14.103.104.0/21
- DNSSEC Valid, no CAA records
- Low operator score (0.13), labeled "Minimal"
---
**3. Observation History (Last 30 Days)**
- 14 total observations:
- Recent geolocation inference (0.52 confidence) and ownership stability noted.
- No persistent malicious activity or threat persistence detected.
- One threat observation (2026-06-02) linked to 50 pulses from unknown sources.
---
**4. Relationships**
- Linked Entities:
- Multiple connections to network "VOLCANO-ENGINE" (likely same organization).
- No direct links to hostnames, domains, or certificates.
---
**5. Subnet Neighbors (/24: 14.103.111.0/24)**
- Total Neighbors: 6 IPs
- Risk Distribution:
- 4 IPs with medium risk (50β65 score)
- 2 IPs with low risk (25β40 score)
- Abuse Density: 0% (no malicious neighbors detected)
---
**6. Recommendations**
- Monitor: Track for new threat indicators or network changes.
- Verify: Cross-check with internal DNS/endpoint data for anomalous activity.
- Scope: Investigate linked network "VOLCANO-ENGINE" for potentialε ³θ.
- Firewall: Consider restrictive rules (e.g., deny unless explicitly allowed) due to moderate risk.
---
*End of Briefing*
*Data sourced from IPDebrief analytics (June 2026)*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | IRT-VOLCANO-ENGINE-CN |
| ASN | AS4811 |
| Network Name | β |
| CIDR Block | β |
| RIR | APNIC |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown β Insufficient routing data to classify |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 32% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 8% | 1 | 1 |
| ownership | 24% | 2 | 3 |
| reputation | 26% | 1 | 3 |
| geolocation | 21% | 2 | 2 |
| Overall | 21% | 9 | 14 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-07 23:03:40 UTC |
| Last Seen | 2026-06-26 18:10:37 UTC |
| Profile Built | 2026-06-22 14:20:48 UTC |
| Data Freshness | Live |
| Signal Types | 17 |
| Total Observations | 18 |
Full dossier details are available via our API.