IPDebrief

42.200.230.175

IP Intelligence Dossier
Your IP: 216.73.217.131
{ } JSON 🔧 Full Actions API
🤖 Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IPDEBRIEF INTELLIGENCE BRIEFING

Target IP: 42.200.230.175/32

Date: Current Assessment

Classification: Low Risk / Static Infrastructure

## Executive Summary

The target IP 42.200.230.175 presents a low-risk profile with a risk score of 25/100. The IP resolves to static infrastructure under the imsbiz.com domain (42-200-230-175.static.imsbiz.com), operated by HKT Limited (ASN 4760). While the primary profile indicates US-based location, historical observations reveal geographic inconsistencies with Hong Kong positioning. The IP maintains no active services or open ports, operating as a firewalled endpoint.

## Ownership and Network Context

The IP routes through Comcast networks with a traceroute path of 18 hops. Route stability is marked as false, indicating dynamic routing changes.

## DNS and Service Analysis

The domain imsbiz.com exhibits no email authentication configuration (no SPF or DMARC records). DNSBL listings show 1 listing across 8 total lists.

## Geographic Observations

Profile geolocation indicates US-New York with 2 geo-sources, though consensus validation is false. Historical observations from July 2026 show conflicting geolocation data:

This geographic inconsistency warrants monitoring but does not indicate active threat behavior.

## Threat Indicators and Reputation

Historical data indicates 13 observations over the reporting period. One observation recorded blacklist listings with high severity across 8 lists. No known attacker indicators, spam source flags, or threat feed matches were detected.

## Relationship Graph

The IP maintains a single relationship:

No organizational, subnet, or certificate relationships were identified beyond the DNS record.

## Neighborhood Analysis

The /24 subnet contains no neighboring IP addresses with detectable threat activity.

## Behavioral Indicators

## Recommended Actions

1. Monitor Geographic Anomalies: Continue tracking the geographic inconsistency between US and HK signals. Investigate if this indicates legitimate multi-location deployment or potential spoofing.

2. DNSBL Monitoring: The IP shows 1 DNSBL listing. Monitor for escalation in blacklist status.

3. Passive Monitoring: No active blocking recommended. The IP presents as low-risk static infrastructure with no active services.

4. Baseline Establishment: No incidents or behavioral anomalies detected. Maintain passive monitoring posture.

5. Domain Reputation Check: imsbiz.com lacks email authentication. If this IP is contacted via email, verify sender legitimacy.

## Conclusion

IP 42.200.230.175 represents static, firewalled infrastructure under HKT Limited with minimal threat indicators. The geographic inconsistency and single DNSBL listing warrant periodic review but do not indicate immediate malicious activity. Recommended approach: passive monitoring with alerting on geographic or reputation changes.

---

Generated by IPDebrief Intelligence Platform

Data Source: IPDebrief Signal Repository

Classification: Internal Use - SOC Analysis

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

Country🇭🇰 Hong Kong
RegionHK
CityHong Kong
TimezoneAsia/Hong_Kong
Latitude22.40
Longitude114.11

🏢 Ownership & Registration

OrganizationTECHNICAL ADMINISTRATORS
ASNAS4760
Network NameHKT-BIA
CIDR Block42.200.128.0/17
RIRAPNIC
CountryHK
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR42-200-230-175.static.imsbiz.com
Forward ConfirmedYes — FCrDNS verified
Forward Hostnames42-200-230-175.static.imsbiz.com

🔐 DNS Hygiene

Hygiene Score40% (Fair)
SPFNot configured
DMARCNot configured
FCrDNSVerified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureUnknown
Service PurposeFirewalled / No Services
Network TierUnknown — Insufficient routing data to classify
No specific classification

🔌 Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Server—
HTTP Title—

🔐 TLS Certificate

🔒
No certificate
Issued by —
N/A
SANsNone
Valid From—
Valid Until—

🛡️ Public Network Snapshot

Origin ASNAS4760
Network Prefix42.200.224.0/19
Route mappingFound

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
0%
00
routing
0%
00
services
0%
00
ownership
0%
00
reputation
0%
00
geolocation
0%
00
Overall0%00
Coverage: 6/6 dimensions · Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (70%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

📅 Observation Timeline 🔄 Live

First Seen2026-07-07 06:27:58 UTC
Last Seen2026-08-28 19:37:10 UTC
Profile Built2026-08-29 02:28:45 UTC
Data FreshnessLive
Signal Types21
Total Observations24
🔍 21 signal types · 24 observations collected
This report is generated from 21+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API 🔧 Actions API 📧 Enterprise Access

❓ Frequently Asked Questions About 42.200.230.175

Who owns the IP address 42.200.230.175?

42.200.230.175 is registered to TECHNICAL ADMINISTRATORS. The address falls within the 42.200.128.0/17 network block. Registration is held at APNIC.

Where is 42.200.230.175 located?

Geolocation data places 42.200.230.175 in Hong Kong, HK, Hong Kong. The local time zone is Asia/Hong_Kong. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.

Is 42.200.230.175 malicious or safe?

42.200.230.175 currently carries a low risk assessment, meaning no significant threat indicators have been observed. This assessment is generated from continuously collected signals and can change over time.

What is the hostname for 42.200.230.175?

The reverse DNS (PTR) record for 42.200.230.175 is 42-200-230-175.static.imsbiz.com. This hostname is forward-confirmed, meaning it resolves back to the same address.

🏘️ Related IP Addresses

Browse related networks

ℹ️ About This Report

All data shown is publicly available network metadata — IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.