# IP Intelligence Briefing: 103.228.147.250
## Executive Summary
IP address 103.228.147.250 presents a Moderate Risk (40/100) profile. The address is associated with Gujarat Television network infrastructure (ASN: 45916, APNIC) and is currently firewalled with no active services. The subnet 103.228.147.0/24 shows clean classification with zero abuse density, though one sibling IP (103.228.147.139) carries a matching risk score of 40.
## Ownership and Network Classification
- Organization: Technical analyst / GUJARATTELEVISION
- ASN: 45916
- CIDR: 103.228.144.0/22
- RIR: APNIC (India)
- Country: India (IN)
- Network Role: Firewalled / No Services
## Threat Indicators Assessment
- Abuse Confidence: Not available
- Blacklist Count: 0
- Known Attacker: No
- Spam Source: No
- Tor Exit Node: No
- DNSBL Listings: 2 of 8 total lists
- Campaign Correlation: None detected
## Network Behavior
- Open Ports: None detected
- Services: No HTTP, TLS, or banner services
- DNS Resolution: No PTR records or forward resolution
- Email Authentication: SPF/DMARC not configured
- Certificate Authority: No certificates present
## Temporal Analysis
- Observation Count: 13 signals recorded
- Observation Period: Recent activity (July 24, 2026)
- Ownership Changes: None detected
- Threat Persistence: Not persistently malicious
- Route Stability: False (routing instability noted)
- Operator Score: 0.1304 (Minimal)
## Neighborhood Assessment
Subnet: 103.228.147.0/24
- Abuse Density: 0 (Clean)
- Total Siblings: 7
- Threat Siblings: 0
- Notable Neighbor: 103.228.147.139 (Risk Score: 40, Authority Score: 50)
## Recommended Security Actions
Based on risk profile, the following firewall rules are recommended:
iptables:
```
iptables -A INPUT -s 103.228.147.250 -j DROP
```
nftables:
```
nft add rule inet filter input ip saddr 103.228.147.250 drop
```
nginx:
```
deny 103.228.147.250;
```
Cloudflare WAF: Block IP with expression `ip.src eq 103.228.147.250`
AWS WAF: Include `103.228.147.250/32` in IP set with description "IPDebrief risk 40"
## Intelligence Narrative
The target IP 103.228.147.250 belongs to the GUJARATTELEVISION network block and is currently configured with no open services, suggesting defensive posture. While the IP itself shows no active malicious indicators, the presence of DNSBL listings (2/8) and a sibling IP (103.228.147.139) with matching risk score warrants monitoring. Route instability has been noted, which may indicate infrastructure transitions. The clean subnet classification and zero abuse density suggest the IP is not part of a coordinated attack infrastructure. SOC analysts may elect to block this IP due to the moderate risk score and DNSBL presence, though the lack of active threat indicators suggests low immediate threat.
---
*Generated: July 2026 | Source: IPDebrief Intelligence Platform*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | Technical analyst |
| ASN | AS45916 |
| Network Name | GUJARATTELEVISION |
| CIDR Block | 103.228.144.0/22 |
| RIR | APNIC |
| Country | IN |
| Abuse Contact | Available via RDAP |
🌐 DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No — PTR hostname does not resolve back to this IP (weak signal) |
🔐 DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
☁️ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown — Insufficient routing data to classify |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | — |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | None |
| Valid From | — |
| Valid Until | — |
🛡️ Public Network Snapshot
| Origin ASN | AS45916 |
| Network Prefix | 103.228.147.0/24 |
| Route mapping | Found |
| Certificates in transparency logs | 0 certificates |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 50% | 2 | 3 |
| reputation | 0% | 0 | 0 |
| geolocation | 25% | 1 | 1 |
| Overall | 25% | 6 | 7 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-07-06 18:15:49 UTC |
| Last Seen | 2026-08-31 04:16:12 UTC |
| Profile Built | 2026-08-29 02:31:38 UTC |
| Data Freshness | Live |
| Signal Types | 17 |
| Total Observations | 23 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 103.228.147.250
Who owns the IP address 103.228.147.250?
103.228.147.250 is registered to Technical analyst. The address falls within the 103.228.144.0/22 network block. Registration is held at APNIC.
Where is 103.228.147.250 located?
Geolocation data places 103.228.147.250 in India. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 103.228.147.250 malicious or safe?
103.228.147.250 currently carries a moderate risk assessment, meaning some indicators warrant caution, but the evidence is mixed. This assessment is generated from continuously collected signals and can change over time.