# IP Intelligence Briefing: 102.205.153.6/32
Classification: Low Risk | Country: Sierra Leone (SL) | Report Generated: 2026-07-27
---
## Executive Summary
IP address 102.205.153.6 is classified as Low Risk with a risk score of 25. The address is geolocated to Sierra Leone and is currently firewalled with no active services detected. No known threat indicators, malicious campaigns, or persistent attacker behavior have been observed. The IP belongs to AS329109 and operates within the 102.205.153.0/24 subnet.
---
## Risk Assessment
| Metric | Value |
|---|---|
| Risk Score | 25 (Low Risk) |
| Reputation | Low Risk |
| Operator Score | 0.1304 (Minimal) |
| Abuse Confidence | Not applicable |
| Is Known Attacker | No |
| Is Spam Source | No |
| Is Tor Exit Node | No |
| Blacklist Status | Listed on 1 of 8 DNSBLs |
---
## Technical Profile
Network Infrastructure:
- ASN: 329109
- BGP Prefix: 102.205.153.0/24
- Service Purpose: Firewalled / No Services
- Open Ports: None detected
- TLS Certificates: None
- HTTP Services: None
DNS Configuration:
- Forward Resolution: Failed
- PTR Records: None
- Hosted Domains: 0
- SPF/DMARC: Not configured
- DNSSEC: Valid
Geolocation:
- Country: Sierra Leone (SL)
- Coordinates: 8.5°N, 11.5°W
- Geo Sources: 1
- Geo Consensus: True
---
## Threat Intelligence
Active Threat Indicators: None
Campaign Associations: None detected
Behavioral Analysis:
- Total Incidents: 0
- Honeypot Hits: 0
- Enumeration Strikes: 0
- WAF Violations: 0
- Auto-Banned: No
- Persistently Malicious: No
Control Plane:
- Route Stability: Unstable (route changes detected in last 30 days)
- RPKI State: Not evaluated
- IRR Consistency: Not evaluated
- DNSBL Listed: Yes (1 of 8 lists)
---
## Observation History
The IP has generated 8 observations with the following notable signals:
1. Network Classification: Confirmed not CDN, Tor, VPN, proxy, cloud, hosting, or mobile
2. Operator Score: Minimal (0.1304) with 1 of 8 max signals
3. DNSSEC: Valid (confidence 0.90)
4. Blacklist Detection: Listed on multiple lists (confidence 0.85, max severity: high)
Temporal analysis shows 0 ownership changes and 0 threat persistence days.
---
## Neighborhood Analysis (102.205.153.0/24)
Subnet Statistics:
- Total Siblings: 24
- Abuse Density: 0
- High Risk Neighbors: 0
- Medium Risk Neighbors: 0
- Low Risk Neighbors: 3
Notable Neighbors:
- 102.205.153.3: Risk Score 25, Authority Score 50
- 102.205.153.16: Risk Score 0, Authority Score 50
- 102.205.153.18: Risk Score 25, Authority Score 50
The subnet demonstrates minimal abuse density with most sibling IPs showing no risk scores.
---
## Relationship Graph
No relationships detected for this IP address. The analysis found no links to subnets, hostnames, organizations, or certificates.
---
## Recommended Actions
Immediate Actions: No specific firewall rules or blocking recommendations generated. The IP presents low risk characteristics.
Monitoring Recommendations:
- Continue monitoring for service activation (currently firewalled)
- Track subnet-level activity for correlation with neighbors 102.205.153.3 and 102.205.153.18
- Monitor DNSBL listing status
Decision Guidance: This IP does not warrant immediate blocking. However, maintain logging for baseline activity and review if any behavioral changes occur.
---
## Confidence Metrics
- Overall Confidence: 0.1667 (Low)
- Data Sufficiency: Limited
- Evidence Sources: Minimal
Note: Risk assessment based on current available intelligence. Re-evaluate if new threat indicators emerge or if the IP begins showing active service behavior.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | SMART TELCOM LIMITED |
| ASN | AS329561 |
| Network Name | ORG-STL10-AFRINIC |
| CIDR Block | 102.205.152.0/22 |
| RIR | AFRINIC |
| Country | SL |
| Abuse Contact | — |
🌐 DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No — PTR hostname does not resolve back to this IP (weak signal) |
🔐 DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
☁️ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown — Insufficient routing data to classify |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | — |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | None |
| Valid From | — |
| Valid Until | — |
🛡️ Public Network Snapshot
| Origin ASN | AS329561 |
| Network Prefix | 102.205.152.0/22 |
| Route mapping | Found |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 0% | 0 | 0 |
| reputation | 0% | 0 | 0 |
| geolocation | 25% | 1 | 1 |
| Overall | 16% | 4 | 4 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-07-14 21:57:48 UTC |
| Last Seen | 2026-09-02 18:38:41 UTC |
| Profile Built | 2026-09-02 18:43:03 UTC |
| Data Freshness | Live |
| Signal Types | 17 |
| Total Observations | 23 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 102.205.153.6
Who owns the IP address 102.205.153.6?
102.205.153.6 is registered to SMART TELCOM LIMITED. The address falls within the 102.205.152.0/22 network block. Registration is held at AFRINIC.
Where is 102.205.153.6 located?
Geolocation data places 102.205.153.6 in London, ENG, United Kingdom. The local time zone is Europe/London. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 102.205.153.6 malicious or safe?
102.205.153.6 currently carries a low risk assessment, meaning no significant threat indicators have been observed. This assessment is generated from continuously collected signals and can change over time.