IP Intelligence Briefing: 8.210.59.99
Date: 2026-06-10
---
**1. Risk Profile**
- Risk Score: 40 (Moderate Risk)
- Reputation: No known malicious activity detected.
- Threat Indicators: No malware, phishing, or exploit campaigns linked.
- Network Role: Web server (HTTP/HTTPS, SSH).
---
**2. Geolocation & Ownership**
- Country: Hong Kong (HK)
- City: Central
- ISP: IRT-ASEPL-SG (Alibaba Cloud, HK)
- ASN: 45102
- Subnet: 8.210.59.99/24 (abuse density: 1/100).
---
**3. Network & Service Activity**
- Services:
- HTTP (port 80), HTTPS (port 443), SSH (port 22).
- TLS Certificate:
- Issuer: WoTrus DV Server CA
- Subject: bijen.com
- SANs: bijen.com, www.bijen.com
- Server Fingerprint: `nginx/1.24.0 (Ubuntu)`
- DNS: No email authentication (SPF/DKIM) detected.
---
**4. Observation History**
- Stability: No significant changes in risk scores (last 30 days).
- Traffic Patterns:
- 200 OK HTTP responses, no suspicious banners.
- RTT: 227โ230ms (plausible Hong Kong latency).
---
**5. Relationships & Neighbors**
- Linked Entities:
- AlibabaCloud_HK (multiple network relationships).
- Subnet Neighbors: No active neighbors detected (isolated IP).
---
**6. Recommendations**
- Monitor: Track TLS certificate validity and HTTP content for anomalies.
- Firewall: Allow traffic on ports 80, 443, and 22; block unsolicited connections.
- Verify: Confirm ownership with Alibaba Cloud for legitimacy.
Conclusion: This IP appears to be a legitimate web server operated by Alibaba Cloud in Hong Kong. No immediate threat detected, but continuous monitoring is advised.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | IRT-ASEPL-SG |
| ASN | AS45102 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | ARIN |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Web Server |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | โ |
| 443 | https | tcp | โ |
| 22 | ssh | tcp | |
| Closed Ports | 25, 3389, 8080, 8443 (3 open / 7 scanned) | ||
| Server | nginx/1.24.0 (Ubuntu) |
| HTTP Title | โ |
| SSH Version | SSH-2.0-OpenSSH_9.6p1 Ubuntu-3ubuntu13.16 |
๐ TLS Certificate
| SANs | bijen.comwww.bijen.com |
| Valid From | 2025-09-01T00:00:00+00:00 |
| Valid Until | 2026-10-02T23:59:59+00:00 |
| TLS Protocol | Tls13 |
| Cipher Suite | TLS_AES_256_GCM_SHA384 |
| Signature Algorithm | sha256RSA |
| Validity Period | 396 days |
| Serial Number | 45643C5738FAE03ACE30B1878A876A19 |
| Thumbprint | 26E2950EC33B45AEFB8237ED8C9B35EC42F448EE |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 33% | 2 | 5 |
| routing | 13% | 1 | 1 |
| services | 26% | 2 | 4 |
| ownership | 20% | 2 | 3 |
| reputation | 18% | 1 | 3 |
| geolocation | 32% | 2 | 3 |
| Overall | 24% | 10 | 19 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-07 23:04:35 UTC |
| Last Seen | 2026-06-26 18:11:36 UTC |
| Profile Built | 2026-06-26 02:23:04 UTC |
| Data Freshness | Live |
| Signal Types | 23 |
| Total Observations | 24 |
Full dossier details are available via our API.