IPDebrief

202.70.132.189

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

IP Intelligence Briefing: 202.70.132.189

Executive Summary

The target IP address 202.70.132.189 presents as a low-risk endpoint with no active threat indicators. The address is associated with Nawala Hostmasters (ASN 149877) in Bandung, West Java, Indonesia, and operates within a clean subnet environment.

Network Classification & Ownership

The IP belongs to the 202.70.132.0/23 BGP prefix operated by AS149877 (Nawala Hostmasters). RIR registration shows APNIC jurisdiction. The address resolves to reverse DNS entry 189.132.70.202.in-addr.herza.id under the herza.id domain. The IP classification indicates "Firewalled / No Services" with no open ports detected.

Threat Assessment

Current risk score stands at 25 (Low Risk). No threat indicators were identified, including:

The control plane analysis shows route stability with one DNSBL listing recorded. Geolocation validation returned plausible Indonesia coordinates (11,364.8 km distance from probe location) despite ICMP validation failures.

Network Neighborhood Analysis

The /24 subnet (202.70.132.0/24) demonstrates clean classification with 0% abuse density. No neighboring IPs were flagged for malicious activity, and the subnet inherited risk score remains at 0.

Observation History

Analysis of 21 historical observations reveals stable ownership patterns with zero ownership changes recorded. Threat observation count totaled 1 with no persistent malicious behavior detected. The most recent signals (June 2026) show minimal operator scoring. ICMP validation has been consistently blocked across observations.

Relationship Graph

The IP maintains 24 relationship entries, predominantly Same Network associations to NAWALA-ID infrastructure and DNS associations to the reverse hostname 189.132.70.202.in-addr.herza.id. No anomalous external associations were identified.

Security Recommendations

No specific firewall rules or mitigation actions are recommended at this time. The low risk score (25) and clean neighborhood profile suggest standard monitoring is appropriate. SOC teams may treat this IP as a benign infrastructure endpoint unless new threat indicators emerge.

Final Classification: LOW RISK โ€” Legitimate Indonesian hosting infrastructure with no active malicious activity.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ฎ๐Ÿ‡ฉ Indonesia
RegionWest Java
CityBandung
Timezoneโ€”
Latitude-6.96
Longitude107.62

๐Ÿข Ownership & Registration

OrganizationNawala Hostmasters
ASNAS149877
Network Nameโ€”
CIDR Blockโ€”
RIRAPNIC
Countryโ€”
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTR189.132.70.202.in-addr.herza.id
Forward ConfirmedNo โ€” PTR hostname does not resolve back to this IP (weak signal)
Forward Hostnames189.132.70.202.in-addr.herza.id

๐Ÿ” DNS Hygiene

Hygiene Score60% (Good)
SPFPresent
DMARCPresent
FCrDNSNot verified
DNSSECValid
CAANot configured

โ˜๏ธ Network Classification

InfrastructureUnknown
Service PurposeFirewalled / No Services
Network TierUnknown โ€” Insufficient routing data to classify
No specific classification

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverโ€”
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
No certificate
Issued by โ€”
N/A
SANsNone
Valid Fromโ€”
Valid Untilโ€”

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
24%
23
routing
13%
11
services
15%
22
ownership
27%
23
reputation
22%
13
geolocation
27%
23
Overall21%1015
Coverage: 6/6 dimensions ยท Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-05-10 04:11:47 UTC
Last Seen2026-06-25 22:52:13 UTC
Profile Built2026-06-25 23:00:31 UTC
Data FreshnessLive
Signal Types20
Total Observations20
๐Ÿ” 20 signal types ยท 20 observations collected
This report is generated from 20+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.