IP Intelligence Briefing: 8.210.100.113
Date: 2026-06-09
---
**1. Core Profile**
- Risk Score: 25 (Low Risk)
- Ownership:
- ASN: AS45102 (AlibabaCloud_HK)
- Organization: Alibaba (US) Technology Co., Ltd.
- Region: Hong Kong (HK)
- Geolocation:
- Country: Hong Kong (HK)
- Coordinates: 22.28°N, 114.18°E
- Timezone: Asia/Hong_Kong
- Threat Indicators:
- No known malware, spam, or attack campaigns.
- Proxy Classification: Identified as a VPN (high-risk signal).
- DNSBL Listing: Flagged in 1 of 8 DNSBLs (high-severity threat).
---
**2. Network Behavior**
- Services: No open ports or active services detected.
- Control Plane:
- BGP Prefix: 8.210.0.0/17
- Routing: Minimal operator risk (score: 0.13).
- DNSSEC: Validated.
- Subnet: 8.210.100.113/24 (clean, no abusive neighbors).
---
**3. Observation History**
- Recent Activity (Last 30 Days):
- Proxy Activity: Confirmed as a VPN (proxycheck.io).
- Threat Signals:
- Listed in 1 high-severity DNSBL.
- No persistent malicious activity.
- Geolocation Consistency: Plausible but no recent changes.
---
**4. Relationships**
- Linked Entities:
- Network: AlibabaCloud_HK (AS45102).
- No Hostnames/Domains: No DNS or email records associated.
- Subnet: 8.210.100.113/24 (no active/suspect neighbors).
---
**5. Recommendations**
- Block/Restrict:
- Block the IP in firewalls (e.g., iptables, Cloudflare WAF) due to proxy classification.
- Monitor for traffic patterns consistent with VPN misuse.
- Verify Legitimacy:
- Confirm if the IP is a legitimate Alibaba service or compromised infrastructure.
- Expand Scope:
- Investigate related subnets (8.210.0.0/17) for potential lateral movement.
---
Conclusion:
The IP is associated with Alibaba but exhibits proxy activity and a high-severity DNSBL listing, suggesting potential misuse. While the overall risk is low, the combination of proxy classification and DNSBL flags warrants closer monitoring.
Tools Used: `ipdebrief_profile`, `ipdebrief_history`, `ipdebrief_relationships`, `ipdebrief_neighbors`.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | IRT-ASEPL-SG |
| ASN | AS45102 |
| Network Name | AlibabaCloud_HK |
| CIDR Block | 8.210.0.0/16 |
| RIR | ARIN |
| Country | HK |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 19% | 2 | 2 |
| routing | 13% | 1 | 1 |
| services | 13% | 1 | 1 |
| ownership | 27% | 2 | 3 |
| reputation | 13% | 1 | 1 |
| geolocation | 13% | 1 | 1 |
| Overall | 16% | 8 | 9 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-21 14:58:21 UTC |
| Last Seen | 2026-06-09 12:40:27 UTC |
| Profile Built | 2026-06-09 12:46:40 UTC |
| Data Freshness | Live |
| Signal Types | 15 |
| Total Observations | 15 |
Full dossier details are available via our API.