# IP Intelligence Briefing: 14.139.233.68/32
Classification: Low Risk
Date: Current Intelligence Cycle
Geolocation: New Delhi, India (IN) | ASN: AS55824 (NKN - Network Administrator)
## Executive Summary
IP address 14.139.233.68 is registered to NKN-AIIMS-MP network under ASN 55824 (NKN - Network Administrator) with RIR allocation via APNIC. The IP presents a low-risk profile (risk score: 25/100) with no active threat indicators. The address is firewalled with no open services, no DNS PTR records, and no hosted domains. Historical data indicates 11 observations over the monitoring period, with one recent signal (2026-07-22) flagging the subnet for threats.
## Risk Profile
| Metric | Value |
|---|---|
| Risk Score | 25 (Low Risk) |
| Reputation | Low Risk |
| Provider Score | 0 |
| Authority Score | 0 |
| Stability Score | 0 |
| Abuse Confidence Score | N/A |
## Network Classification
- Infrastructure Type: Standard Network
- Service Purpose: Firewalled / No Services
- Cloud/CDN/Proxy: Not detected
- Tor/VPN: Not detected
- Hosting/Residential: Not detected
- Bogon: False
- Anycast: False
## Threat Intelligence
- Blacklist Count: 1 (of 8 total DNSBL lists checked)
- Threat Indicators: None detected
- Known Campaigns: None correlated
- Is Known Attacker: False
- Is Spam Source: False
- Tor Exit Node: False
- Threat Persistence: 0 days
- Persistently Malicious: False
## Control Plane Analysis
- BGP Prefix: 14.139.233.0/24
- Route Stability: False
- DNSSEC Valid: True
- RPKI State: Not evaluated
- IRR Consistency: Not evaluated
- Route Changes (30d): 0
- Is MoAS: False
## DNS Analysis
- PTR Hostnames: None
- Forward Resolution: 0 records
- Hosted Domains: 0
- Email Authentication (SPF/DMARC): Not configured
- TXT Records: 0
## Services Scan
- Open Ports: None detected
- TLS Certificates: None
- HTTP Content: None
- WAF Violations: 0
- Honeypot Hits: 0
- Enumeration Strikes: 0
## Observation History
Recent monitoring captured 11 signals with the following notable entries:
- 2026-07-22T06:39:12Z (Confidence: 75%): ASN AS55824 (NKN Core Network), Chandigarh, IN | Reputation: 0 | Threat flags present (2 pulses)
- 2026-07-22T06:38:02Z (Confidence: 85%): Listed on 8 blacklist sources with maximum severity: High
- 2026-07-22T06:38:00Z (Confidence: 90%): DNSSEC validated for zone 68.233.139.14.in-addr.arpa
- 2026-07-22T06:38:00Z (Confidence: 85%): ASN 55824, Prefix 14.139.233.0/24, APNIC registry, allocated 2010-09-14
## Neighborhood Analysis
- Subnet: 14.139.233.68/24
- Neighbor Count: 0
- Abuse Density: 0
- Risk Distribution: High: 0, Medium: 0, Low: 0
- Threat Siblings: 0
## Relationships
- Same Network: NKN-AIIMS-MP (2 entries)
## Recommended Actions
Based on the low-risk profile and absence of active threat indicators, the following actions are recommended:
1. Monitor: Maintain standard monitoring for this IP address
2. Log: Ensure logging of any connection attempts from this IP
3. No Block: No immediate blocking required; risk score 25 indicates low threat
4. Review Blacklist: Investigate the single DNSBL listing to determine source and relevance
## SOC Analyst Notes
The IP 14.139.233.68 presents minimal threat risk. The network infrastructure appears to be a standard enterprise network (NKN - Network Administrator) with firewalled services. While the IP shows one DNSBL listing and historical threat flags on the /24 subnet, the current profile indicates no active malicious behavior. The absence of open ports, hosted domains, and external relationships suggests this IP is not being used for command-and-control, spam, or other common attack vectors. Routine monitoring is appropriate.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | NKN - Network Administrator |
| ASN | AS55824 |
| Network Name | NKN-AIIMS-MP |
| CIDR Block | 14.139.233.64/28 |
| RIR | APNIC |
| Country | IN |
| Abuse Contact | Available via RDAP |
🌐 DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No — PTR hostname does not resolve back to this IP (weak signal) |
🔐 DNS Hygiene
| Hygiene Score | 0% (None) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Not signed |
| CAA | Not configured |
☁️ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown — Insufficient routing data to classify |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | — |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | None |
| Valid From | — |
| Valid Until | — |
🛡️ Public Network Snapshot
| Origin ASN | AS55824 |
| Network Prefix | 14.139.233.0/24 |
| Route mapping | Found |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 0% | 0 | 0 |
| routing | 0% | 0 | 0 |
| services | 0% | 0 | 0 |
| ownership | 50% | 2 | 3 |
| reputation | 0% | 0 | 0 |
| geolocation | 25% | 1 | 1 |
| Overall | 12% | 3 | 4 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-07-02 04:20:57 UTC |
| Last Seen | 2026-08-22 09:37:56 UTC |
| Profile Built | 2026-08-30 13:29:14 UTC |
| Data Freshness | Live |
| Signal Types | 16 |
| Total Observations | 1538 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 14.139.233.68
Who owns the IP address 14.139.233.68?
14.139.233.68 is registered to NKN - Network Administrator. The address falls within the 14.139.233.64/28 network block. Registration is held at APNIC.
Where is 14.139.233.68 located?
Geolocation data places 14.139.233.68 in New Delhi, National Capital Territory of Delhi, India. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 14.139.233.68 malicious or safe?
14.139.233.68 currently carries a low risk assessment, meaning no significant threat indicators have been observed. This assessment is generated from continuously collected signals and can change over time.