# IP Intelligence Briefing: 36.77.0.84/32
## Executive Summary
IP address 36.77.0.84 is a moderately risky (50/100) Indonesian residential or hosting endpoint operated by Febrian Setiadi under ASN 7713 (TLKM). The IP is currently firewalled with no open services, no active threat indicators, and resides in a clean subnet (36.77.0.0/24) with zero abuse density. No known malicious campaigns or campaign correlations detected.
## Ownership and Infrastructure
- ASN: 7713 (TLKM - Telkom Indonesia)
- Organization: Febrian Setiadi
- Network Block: 36.77.0.0/20 (CIDR: TLKM_BB_SERVICE_36_77_DIVRE1-2)
- Geolocation: Indonesia (ID), East Java, Trenggalek (1500km accuracy radius)
- Classification: Firewalled / No Services
- RIR: APNIC
## Threat Assessment
- Risk Score: 50 (Moderate Risk)
- Abuse Confidence Score: Not available
- Blacklist Status: Listed on 2 out of 8 DNSBLs (dnsblListedCount: 2)
- Threat Feeds: No active threat indicators
- Known Campaigns: None
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
## Technical Profile
- Operator Score: 0.1304 (Minimal)
- Route Stability: False (route changes observed in 30-day window)
- RPKI State: Not verified
- DNSSEC: Valid
- Mobile/Proxy/VPN: No
- Cloud/CDN/Hosting: Not classified
- Open Ports: None detected
- TLS/HTTP: No certificates or web services
## Neighborhood Analysis
- Subnet: 36.77.0.84/24
- Abuse Density: 0.0 (Clean)
- Total Siblings: 1
- Active/Threat Siblings: 0
- Risk Distribution: Zero high/medium/low risk neighbors
## Relationship Graph
Four relationships identified, all pointing to the same network entity (TLKM_BB_SERVICE_36_77_DIVRE1-2). No external relationships to organizations, hostnames, or SSL certificates detected.
## Observation History
Thirteen signal observations recorded as of July 30, 2026. Key observations include:
- Network type and geolocation signals (confidence: 30-52%)
- Subnet classification: Clean with zero inherited risk
- Operator score consistently minimal (0.1304)
- No persistent malicious behavior (threatPersistenceDays: 0)
- No ownership changes detected
## Recommended Actions
- Monitoring: No immediate action required. Monitor for changes in threat indicators or service exposure.
- Blocking: Not recommended at this time. Risk score (50) does not warrant aggressive blocking.
- Investigation: If this IP appears in security events, investigate context (e.g., port scan source, connection attempt). Consider reviewing DNSBL listings if email traffic is observed.
- Subnet Awareness: The broader /24 subnet is classified as clean with no threat siblings.
## SOC Analyst Notes
This IP represents a low-risk endpoint with moderate classification primarily due to DNSBL listings and operator score. The IP is currently inactive (no open services) and resides in a clean neighborhood. No active threat intelligence correlates. If security alerts are generated from this IP, validate context before taking action. The absence of service banners, certificates, or threat indicators suggests this may be a dormant or residential endpoint.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Febrian Setiadi |
| ASN | AS7713 |
| Network Name | TLKM_BB_SERVICE_36_77_DIVRE1-2 |
| CIDR Block | 36.77.0.0/20 |
| RIR | APNIC |
| Country | ID |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 25% | 1 | 2 |
| reputation | 0% | 0 | 0 |
| geolocation | 25% | 1 | 1 |
| Overall | 20% | 5 | 6 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-07-29 10:34:13 UTC |
| Last Seen | 2026-07-31 07:31:48 UTC |
| Profile Built | 2026-07-30 21:49:28 UTC |
| Data Freshness | Live |
| Signal Types | 16 |
| Total Observations | 16 |
Full dossier details are available via our API.