IP Intelligence Briefing: 202.70.132.189
Executive Summary
The target IP address 202.70.132.189 presents as a low-risk endpoint with no active threat indicators. The address is associated with Nawala Hostmasters (ASN 149877) in Bandung, West Java, Indonesia, and operates within a clean subnet environment.
Network Classification & Ownership
The IP belongs to the 202.70.132.0/23 BGP prefix operated by AS149877 (Nawala Hostmasters). RIR registration shows APNIC jurisdiction. The address resolves to reverse DNS entry 189.132.70.202.in-addr.herza.id under the herza.id domain. The IP classification indicates "Firewalled / No Services" with no open ports detected.
Threat Assessment
Current risk score stands at 25 (Low Risk). No threat indicators were identified, including:
- No Tor exit node activity
- No known attacker attribution
- No spam source designation
- Zero blacklist matches (0/8 DNSBL lists checked)
- No active campaign correlations
The control plane analysis shows route stability with one DNSBL listing recorded. Geolocation validation returned plausible Indonesia coordinates (11,364.8 km distance from probe location) despite ICMP validation failures.
Network Neighborhood Analysis
The /24 subnet (202.70.132.0/24) demonstrates clean classification with 0% abuse density. No neighboring IPs were flagged for malicious activity, and the subnet inherited risk score remains at 0.
Observation History
Analysis of 21 historical observations reveals stable ownership patterns with zero ownership changes recorded. Threat observation count totaled 1 with no persistent malicious behavior detected. The most recent signals (June 2026) show minimal operator scoring. ICMP validation has been consistently blocked across observations.
Relationship Graph
The IP maintains 24 relationship entries, predominantly Same Network associations to NAWALA-ID infrastructure and DNS associations to the reverse hostname 189.132.70.202.in-addr.herza.id. No anomalous external associations were identified.
Security Recommendations
No specific firewall rules or mitigation actions are recommended at this time. The low risk score (25) and clean neighborhood profile suggest standard monitoring is appropriate. SOC teams may treat this IP as a benign infrastructure endpoint unless new threat indicators emerge.
Final Classification: LOW RISK โ Legitimate Indonesian hosting infrastructure with no active malicious activity.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Nawala Hostmasters |
| ASN | AS149877 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | APNIC |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | 189.132.70.202.in-addr.herza.id |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | 189.132.70.202.in-addr.herza.id |
๐ DNS Hygiene
| Hygiene Score | 60% (Good) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 24% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 15% | 2 | 2 |
| ownership | 27% | 2 | 3 |
| reputation | 22% | 1 | 3 |
| geolocation | 27% | 2 | 3 |
| Overall | 21% | 10 | 15 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-10 04:11:47 UTC |
| Last Seen | 2026-06-25 22:52:13 UTC |
| Profile Built | 2026-06-25 23:00:31 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 20 |
Full dossier details are available via our API.