IP Intelligence Briefing: 171.244.201.80
*Generated from IPDebrief analysis*
---
**1. Core Profile**
- Risk Score: 50 (Moderate Risk)
- Ownership: Owned by IRT-VNNIC-AP (Vietnam Internet Network Information Center) under ASN AS7552 (Viettel Group).
- Geolocation: Vietnam (VN), with no specific city or region data.
- Network Role: Firewalled / No Services. Open ports and TLS certificates are absent.
- Threat Indicators: No malicious activity detected (no indicators, campaigns, or DNSBL listings).
---
**2. Observation History**
- Recent Activity:
- Observed on June 10โ17, 2026, with minimal risk scores (0.15โ0.21).
- No significant changes in signals (geolocation, DNS, or threat metrics).
- Stability: Route stability is unstable (isRouteStable: false), but no active threats.
---
**3. Relationships & Network Context**
- Linked Entities:
- Subnet 171.244.201.80/24 is associated with VIETTEL-VN (Viettel Group).
- No direct connections to known malicious networks or organizations.
- Subnet Abuse: Abuse density is 1/100 (mostly clean), with 0 active malicious siblings.
---
**4. Security Recommendations**
- Firewall Rules:
- iptables: `iptables -A INPUT -s 171.244.201.80 -j DROP`
- Cloudflare WAF: Block IP with rule `{ "action": "block", "expression": "ip.src eq 171.244.201.80" }`
- AWS WAF: Add `171.244.201.80/32` to IP set.
- Monitoring: Track subnet 171.244.201.0/24 for anomalies, as abuse density is low but not zero.
---
**5. Conclusion**
The IP is part of a Vietnamese ISP (Viettel) and shows no direct malicious activity. While risk scores are moderate, the subnet is mostly clean. SOC teams should monitor for unexpected changes in the subnet or network behavior. No immediate blocking is required, but proactive monitoring is advised.
*Data sourced from IPDebrief intelligence platform.*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | IRT-VNNIC-AP |
| ASN | AS7552 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | APNIC |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | 80.0-24.201.244.171.in-addr.arpa |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | 80.0-24.201.244.171.in-addr.arpa |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 28% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 11% | 1 | 2 |
| ownership | 23% | 2 | 3 |
| reputation | 21% | 1 | 3 |
| geolocation | 21% | 2 | 2 |
| Overall | 19% | 9 | 14 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-07 23:03:53 UTC |
| Last Seen | 2026-06-26 18:10:46 UTC |
| Profile Built | 2026-06-22 20:58:56 UTC |
| Data Freshness | Live |
| Signal Types | 19 |
| Total Observations | 21 |
Full dossier details are available via our API.