IPDebrief

156.230.182.130

IP Intelligence Dossier
Your IP: 216.73.217.131
{ } JSON 🔧 Full Actions API
🤖 Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP INTELLIGENCE BRIEFING

Target IP: 156.230.182.130/32

Date: 2026-07-28

Classification: Low Risk

---

## EXECUTIVE SUMMARY

IP 156.230.182.130 presents a low-risk profile with a risk score of 25. The address is part of a /24 block owned by Cloud Innovation Support (ASN 63859) under ARIN. Geographic consensus indicates Hong Kong, though geolocation validation experienced ICMP blocking. No active malicious indicators, open services, or threat campaign associations were detected. The subnet exhibits minimal abuse density with 11 of 12 neighboring IPs showing low risk scores.

---

## NETWORK ATTRIBUTION & OWNERSHIP

The IP resides in a network block with controlled ownership. No provider or hosting infrastructure flags were set, and the network classification indicates firewalling with no exposed services.

---

## THREAT INDICATORS ASSESSMENT

No threat indicators were identified. The IP shows no association with known malicious campaigns, threat feeds, or abuse sources.

---

## NETWORK SERVICES & INFRASTRUCTURE

The target IP exhibits no active service exposure, consistent with a firewalled infrastructure endpoint or passive network node.

---

## GEOLOCATION VALIDATION

Geographic data shows minor inconsistency with one observation reporting Indonesia coordinates. The consensus location (Hong Kong) remains the authoritative determination.

---

## OBSERVATION HISTORY

A total of 14 observations were recorded. Key temporal patterns:

The IP demonstrates stable ownership with no escalation in threat signals over the observation period.

---

## SUBNET ANALYSIS

- High Risk: 0

- Medium Risk: 0

- Low Risk: 11

The /24 subnet exhibits minimal abuse activity. Of the 12 neighboring IPs, 11 carry low-risk scores (25), while 2 have null risk scores. No high or medium-risk neighbors were identified.

---

## NETWORK RELATIONSHIPS

Three relationships were identified:

The IP's relationship graph is limited to network-level associations, indicating isolation from broader malicious infrastructure.

---

## CONTROL PLANE ANALYSIS

BGP routing shows no recent changes within the 30-day window. The operator score reflects minimal influence in the control plane.

---

## RECOMMENDED ACTIONS

No specific firewall rules or security actions were generated based on the current risk profile. Given the low risk score and absence of active threat indicators, routine monitoring is appropriate.

---

## ANALYST NOTES

1. Low Priority: The IP presents minimal threat characteristics and does not warrant immediate defensive action.

2. Subnet Context: The /24 block shows uniform low-risk distribution; any single IP concern would be anomalous.

3. Service Exposure: The absence of open services suggests this is not a direct attack vector but may serve as a relay or supporting infrastructure.

4. Geographic Inconsistency: Monitor for changes in geolocation reporting, which may indicate configuration drift or spoofing attempts.

5. Action Threshold: No current threat justifies firewall blocking; maintain allow-through posture with logging enabled.

---

Report Status: Complete

Data Sources: IPDebrief Intelligence Platform

Classification: Defensive Intelligence

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

Country🇮🇩 Indonesia
Region—
CityHong Kong
Timezone—
Latitude—
Longitude—

🏢 Ownership & Registration

OrganizationCloud Innovation Support
ASNAS63859
Network Name156.230.182.0 - 156.230.182.255
CIDR Block156.230.182.0/24
RIRARIN
CountryID
Abuse Contact—

🌐 DNS Intelligence

PTR RecordNo PTR
Forward ConfirmedNo — PTR hostname does not resolve back to this IP (weak signal)

🔐 DNS Hygiene

Hygiene Score20% (Poor)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureUnknown
Service PurposeFirewalled / No Services
Network TierUnknown — Insufficient routing data to classify
No specific classification

🔌 Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Server—
HTTP Title—

🔐 TLS Certificate

🔒
No certificate
Issued by —
N/A
SANsNone
Valid From—
Valid Until—

🛡️ Public Network Snapshot

Origin ASNAS63859
Network Prefix156.230.182.0/24
Route mappingFound
Certificates in transparency logs0 certificates

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
33%
25
routing
8%
11
services
12%
22
ownership
28%
23
reputation
22%
13
geolocation
17%
23
Overall20%1017
Coverage: 4/6 dimensions · Data sufficiency: partial
Data CoherenceMostly Consistent (80%) — 1 contradiction(s)
AttributionLow (35%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid
⚠ Geo sources disagree on country: GB, ID

📅 Observation Timeline 🔄 Live

First Seen2026-07-20 00:17:00 UTC
Last Seen2026-09-03 18:39:07 UTC
Profile Built2026-09-03 18:48:45 UTC
Data FreshnessLive
Signal Types20
Total Observations29
🔍 20 signal types · 29 observations collected
This report is generated from 20+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API 🔧 Actions API 📧 Enterprise Access

❓ Frequently Asked Questions About 156.230.182.130

Who owns the IP address 156.230.182.130?

156.230.182.130 is registered to Cloud Innovation Support. The address falls within the 156.230.182.0/24 network block. Registration is held at ARIN.

Where is 156.230.182.130 located?

Geolocation data places 156.230.182.130 in Hong Kong. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.

Is 156.230.182.130 malicious or safe?

156.230.182.130 currently carries a low risk assessment, meaning no significant threat indicators have been observed. This assessment is generated from continuously collected signals and can change over time.

🏘️ Related IP Addresses

Nearby addresses in 156.230.182.0/24

Browse related networks

ℹ️ About This Report

All data shown is publicly available network metadata — IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.