# IP Intelligence Briefing
Target IP: 2a13:f41:3f6:7e61:8f1d:3c8d:2363:9af2/128
Classification: Low Risk / Benign
Analysis Date: 2026-09-18
Confidence Level: Very Low (8.3%)
## Executive Summary
IP address 2a13:f41:3f6:7e61:8f1d:3c8d:2363:9af2 presents no significant threat indicators. The address belongs to ASN 214483 (FiberPower LLC), with registration under organization sc-rapidseedbox-1-mnt. No malicious activity, blacklisting, or attack patterns were observed during analysis. Recommended action: Allow traffic.
## Network Ownership and Routing
The IP address originates from ASN 214483 (FiberPower LLC, US) with BGP prefix 2a13:f40::/29. Routing data shows the prefix is not route-stable. Control plane analysis indicates no RPKI validation, no IRR consistency, and zero DNSBL listings. The network operates under ARIN jurisdiction with abuse contact available via RDAP.
## Geolocation and Location Data
Geolocation consensus identifies the IP in Seychelles (country code: SC) with coordinates 55.67°E, -4.58°S. One observation from MaxMind Geolite2 confirmed the same country with confidence 0.70. A separate proxycheck-io signal indicated Singapore with VPN classification, but this represents conflicting geolocation data rather than confirmed proxy behavior.
## Threat Indicators
- Risk Score: 0
- Abuse Confidence Score: Not applicable
- Blacklist Count: 0
- Known Campaigns: None
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
Threat indicators remain empty across all feeds and sources.
## Network Services and DNS
No open ports were detected. The IP shows "Firewalled / No Services" classification. DNS analysis revealed no PTR records, no forward resolution, and no hosted domains. DNSSEC validation failed, and no SPF, DMARC, or CAA records were present. TLS certificates and HTTP titles were not observed.
## Behavioral Analysis
The IP shows no active attacker indicators. Honeypot hits: 0, enumeration strikes: 0, WAF violations: 0, total incidents: 0. The address is not auto-banned and is not classified as persistently malicious. Threat persistence days: 0, threat observation count: 0.
## Neighborhood Analysis
The /48 subnet (2a13:f41:3f6:7e61:8f1d:3c8d:2363:9af2/48) contains no neighbors. Abuse density is 0 with zero high or medium risk siblings. No threat-related sibling IPs were identified.
## Historical Observations
Ten observations were recorded within a single minute on 2026-09-18, indicating recent scanning activity but no malicious behavior. Signals include ASN registration data, geolocation probes, and DNS lookups. One observation flagged VPN/proxy behavior from proxycheck-io with risk score 66, but this contradicts the overall low-risk profile.
## Intelligence Assessment
This IPv6 address represents a benign infrastructure endpoint with no observed malicious activity. The conflicting geolocation signals (Seychelles vs Singapore VPN) warrant monitoring but do not indicate active compromise. The network appears to be a content delivery or infrastructure network with no public-facing services exposed.
## Recommended Actions
No firewall rules or blocking actions are recommended. The IP should be allowed through standard network policies. SOC analysts may monitor for any changes in behavior, particularly regarding the VPN/proxy classification signal.
---
*Report generated by IPDebrief Intelligence Platform. All data sourced from live observations as of 2026-09-18.*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | sc-rapidseedbox-1-mnt |
| ASN | AS214483 |
| Network Name | SC-RAPIDSEEDBOX-20251303 |
| CIDR Block | β |
| RIR | ARIN |
| Country | SC |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 0% (None) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Not signed |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown β Insufficient routing data to classify |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 20% | 1 | 2 |
| routing | 20% | 1 | 1 |
| services | 28% | 2 | 2 |
| ownership | 40% | 2 | 3 |
| reputation | 20% | 1 | 2 |
| geolocation | 28% | 2 | 2 |
| Overall | 26% | 9 | 12 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-09-18 03:23:29 UTC |
| Last Seen | 2026-09-19 08:49:25 UTC |
| Profile Built | 2026-09-19 08:50:27 UTC |
| Data Freshness | Live |
| Signal Types | 18 |
| Total Observations | 20 |
Full dossier details are available via our API.