# IP Intelligence Briefing: 211.216.0.36/32
Date: Current Analysis Cycle
Classification: LOW RISK
Report Type: Defensive Intelligence Summary
## Executive Summary
IP address 211.216.0.36 has been assessed as LOW RISK with no active threat indicators. The address is associated with KT Corporation mobile network infrastructure and shows no evidence of malicious activity or abuse.
## Ownership and Registration
- ASN: 4766
- Organization: IP Manager
- Network Name: KORNET-KR
- CIDR Block: 211.216.0.0/13
- RIR: APNIC
- Abuse Contact: Available via RDAP
## Geolocation and Network Characteristics
- Primary Location: South Korea (KT mobile network)
- Secondary Location: United States (conflicting geolocation signal)
- Connection Type: Mobile (KT Corporation, LTE/5G)
- MCC/MNC: 450/08
- Network Role: Residential mobile endpoint
- Status: Firewalled / No services exposed
## Threat Assessment
- Risk Score: 0 (Clean)
- Provider Score: 0
- Authority Score: 0
- Blacklist Count: 0
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
- Threat Persistence: None observed
- Campaign Correlation: None detected
## Network Neighborhood Analysis
- Subnet: 211.216.0.0/24
- Abuse Density: 0%
- Risk Classification: Clean
- Active Siblings: 0
- Threat Siblings: 0
## Relationship Graph
- Same Network: KORNET-KR (2 relationships identified)
- Associated Entities: No external relationships to organizations, hostnames, or certificates
## Observation History
- Total Observations: 14
- Recent Signals:
- Country: KR (South Korea) - Confidence 52%
- Ownership: Stable with no changes
- Network Classification: Mobile carrier infrastructure
- No persistent malicious signals detected
## Control Plane Data
- BGP Prefix: 211.216.0.0/13
- Route Stability: False
- Moas: No
- RPKI State: Not validated
- DNSSEC Valid: True
- DNSBL Listed: 0/8 lists
## Recommended Actions
No firewall or blocking actions recommended at this time. The IP shows no malicious indicators and is associated with legitimate mobile carrier infrastructure.
SOC Guidance: This IP represents normal mobile network traffic. No blocking or monitoring action required unless specific threat intelligence indicates otherwise.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | IP Manager |
| ASN | AS4766 |
| Network Name | KORNET-KR |
| CIDR Block | 211.216.0.0/13 |
| RIR | APNIC |
| Country | KR |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Mobile |
| Service Purpose | Single-Service Host |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | โ |
| Closed Ports | 22, 25, 443, 3389, 8080, 8443 (1 open / 7 scanned) | ||
| Server | Microsoft-IIS/10.0 |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 0% | 0 | 0 |
| reputation | 0% | 0 | 0 |
| geolocation | 0% | 0 | 0 |
| Overall | 12% | 3 | 3 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-07-22 19:32:54 UTC |
| Last Seen | 2026-07-29 15:05:27 UTC |
| Profile Built | 2026-07-29 15:16:34 UTC |
| Data Freshness | Live |
| Signal Types | 18 |
| Total Observations | 18 |
Full dossier details are available via our API.