IPDebrief

43.106.82.89

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

INTELLIGENCE BRIEFING: 43.106.82.89/32

Profile Summary

The IP address 43.106.82.89 registered to IRT-ASEPL-SG (AS45102), an infrastructure entity under the Alibaba network. Geolocation placed the address in Singapore (SG) at coordinates 1.35, 103.82. Risk assessment assigned a score of 25, categorized as Low Risk, with operator scores reflecting minimal threat activity (0.1304).

Network and Service Classification

Network reconnaissance revealed the address as firewalled with no open services. DNS queries returned no PTR hostnames, and forward resolution failed to resolve any hostnames. The IP lacks TLS certificates, HTTP titles, or service banners. The control plane indicated stable BGP prefix 43.106.0.0/15 under ASN 45102.

Threat Indicators and Reputation

Threat intelligence sources reported no active indicators. The address did not appear as a known attacker, Tor exit node, or spam source. Blacklist queries returned zero listings across scanned feeds. Campaign correlation showed no likelihood of association with active threat campaigns, with zero matching certificates and zero correlated IPs.

Observation History

Analysis of 23 historical observations tracked from June 2026 indicated consistent minimal risk classification. Recent signal types included ownership verification, routing data, and reputation assessments. The address demonstrated zero threat persistence days and one total threat observation event. No ownership changes occurred during the observation period.

Neighborhood Analysis

The /24 subnet 43.106.82.0.0/24 displayed an abuse density of 1 with classification marked mostly_clean. Subnet analysis identified one threat sibling among total siblings. However, direct neighbor enumeration returned zero active neighbors with zero high, medium, or low risk distribution.

Relationship Graph

The relationship graph enumerated 20 relationships, all classified as "Same Network" associations to the ASEPL-SG network entity.

Recommended Actions

Given the low risk score, absence of threat indicators, and confirmed infrastructure status under Alibaba, no immediate blocking or firewall rules were recommended. The IP demonstrated characteristics consistent with legitimate cloud or hosting infrastructure with no active malicious behavior. SOC teams may monitor for service changes but no immediate action required.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΈπŸ‡¬ Singapore
RegionSG
CitySingapore
TimezoneAsia/Singapore
Latitude1.35
Longitude103.82

🏒 Ownership & Registration

OrganizationIRT-ASEPL-SG
ASNAS45102
Network Nameβ€”
CIDR Blockβ€”
RIRAPNIC
Countryβ€”
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR RecordNo PTR
Forward ConfirmedNo β€” PTR hostname does not resolve back to this IP (weak signal)

πŸ” DNS Hygiene

Hygiene Score20% (Poor)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureUnknown
Service PurposeFirewalled / No Services
Network TierUnknown β€” Insufficient routing data to classify
No specific classification

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverβ€”
HTTP Titleβ€”

πŸ” TLS Certificate

πŸ”’
No certificate
Issued by β€”
N/A
SANsNone
Valid Fromβ€”
Valid Untilβ€”

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
42%
25
routing
21%
12
services
15%
22
ownership
24%
23
reputation
24%
13
geolocation
21%
22
Overall24%1017
Coverage: 6/6 dimensions Β· Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-05-07 23:04:19 UTC
Last Seen2026-06-23 12:33:01 UTC
Profile Built2026-06-23 12:50:56 UTC
Data FreshnessLive
Signal Types20
Total Observations26
πŸ” 20 signal types Β· 26 observations collected
This report is generated from 20+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.