IPDebrief

59.60.152.230

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

Threat Intelligence Briefing: IP 59.60.152.230/32

Overview:

The IP address 59.60.152.230/32 was observed and analyzed through various cybersecurity tools to generate a detailed profile. This briefing provides a comprehensive summary of the IP's characteristics, history, and network associations, intended to assist SOC analysts in assessing potential risks and security implications.

Profile Summary:

Actionable Insights:

1. Monitoring: Implement continuous monitoring of traffic originating from this IP to detect any anomalies or spikes in activity that could indicate malicious intent.

2. Traffic Analysis: Conduct deep packet inspection on traffic associated with this IP to identify any payloads that may suggest unauthorized data access or exfiltration attempts.

3. Threat Intelligence Correlation: Cross-reference the IP's activity with known threat actor behaviors and campaigns to determine if there is any alignment with established threat profiles.

4. Domain Validation: Verify the legitimacy of the domains associated with this IP. Ensure that they are not being used for phishing or other malicious activities.

5. Geographic Considerations: Consider the geopolitical implications of the IP's location when assessing potential threats, especially if the IP is involved in sensitive data exchanges.

Conclusion:

The IP address 59.60.152.230/32 exhibits a mix of legitimate and potentially risky behaviors. While primarily associated with standard web services, its activity patterns and network relationships warrant careful monitoring and analysis to mitigate any potential security risks. SOC teams should prioritize continuous observation and employ advanced threat detection techniques to ensure network security.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡จ๐Ÿ‡ณ China
Regionโ€”
Cityโ€”
Timezoneโ€”
Latitude34.77
Longitude113.72

๐Ÿข Ownership & Registration

OrganizationChinanet Hostmaster
ASNAS4134
Network NameCHINANET-FJ
CIDR Block59.60.0.0/15
RIRAPNIC
CountryCN
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTR230.152.60.59.broad.zz.fj.dynamic.163data.com.cn
Forward ConfirmedNo โ€” PTR hostname does not resolve back to this IP (weak signal)
Forward Hostnames230.152.60.59.broad.zz.fj.dynamic.163data.com.cn

๐Ÿ” DNS Hygiene

Hygiene Score20% (Poor)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECValid
CAANot configured

โ˜๏ธ Network Classification

InfrastructureMobile
Service PurposeFirewalled / No Services
Network TierUnknown โ€” Insufficient routing data to classify
Mobile

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverโ€”
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
No certificate
Issued by โ€”
N/A
SANsNone
Valid Fromโ€”
Valid Untilโ€”

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
27%
23
routing
27%
23
services
24%
23
ownership
30%
34
reputation
22%
13
geolocation
27%
23
Overall26%1219
Coverage: 6/6 dimensions ยท Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-05-09 17:41:42 UTC
Last Seen2026-06-25 19:40:54 UTC
Profile Built2026-06-25 19:49:47 UTC
Data FreshnessLive
Signal Types24
Total Observations25
๐Ÿ” 24 signal types ยท 25 observations collected
This report is generated from 24+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.