# IP Intelligence Briefing: 103.30.82.66/32
## Executive Summary
IP address 103.30.82.66 is classified as Moderate Risk (risk score: 40) with ownership attributed to IRT-APNANET4-IN (ASN 133661) in Jalandhar, Punjab, India. The IP exhibits firewalled/no-service characteristics with no active open ports, but operates within a subnet showing elevated abuse density (0.6). Neighborhood analysis reveals 3 of 5 active siblings are flagged as threats.
## Ownership and Infrastructure
- ASN: 133661
- Organization: IRT-APNANET4-IN
- Country: India (IN)
- City: Jalandhar, Punjab
- BGP Prefix: 103.30.80.0/22
- Routing Status: Stable (routeChanges30d: 0)
- DNSSEC: Valid
- Service Profile: Firewalled / No Services (no open ports detected)
## Threat Assessment
The IP shows the following threat indicators:
- Blacklist Count: 0
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
- DNSBL Listings: 2 out of 8 total lists
- Threat Observation Count: 1
- Persistence: Not persistently malicious (threatPersistenceDays: 0)
## Neighborhood Analysis (103.30.82.0/24)
The subnet exhibits moderate abuse density (0.6) with the following characteristics:
- Total Siblings: 5
- Active Siblings: 3
- Threat Siblings: 3
- Classification: Mostly clean
- Inherited Risk: 7
Notable Neighbor IPs:
| IP Address | Risk Score | Authority Score |
|---|---|---|
| 103.30.82.29 | 55 | 50 |
| 103.30.82.58 | 40 | 50 |
| 103.30.82.62 | 40 | 50 |
| 103.30.82.70 | 55 | 50 |
## Observation History
Eighteen signal observations recorded, with the most recent activity on 2026-06-17. Observed signals include:
- Subnet abuse density assessment (0.6)
- Geolocation inference (IN, confidence 0.52)
- Operator score assessment (0.2609)
- Threat list verification (clear)
- Ownership stability verification
## Network Role Classification
The IP is classified as:
- Not a provider, CDN, VPN, proxy, or Tor
- Not cloud-based or hosting infrastructure
- Not mobile carrier or residential
- Not bogon or anycast
## Recommended Actions
Based on the moderate risk profile and neighborhood context:
1. Monitor: Track traffic patterns to this IP and its siblings
2. Block: Consider blocking if traffic patterns indicate abuse
3. Investigate: Monitor associated siblings (103.30.82.29, 103.30.82.70) which show elevated risk scores (55)
4. Allow: No immediate block required based on current profile, but maintain monitoring
## Conclusion
103.30.82.66 is a firewalled IP in a moderately risky subnet with no active services. While the IP itself shows no direct threat indicators, the neighborhood context warrants continued monitoring. The subnet's 0.6 abuse density and 3 flagged threat siblings suggest potential for coordinated activity. Recommend baseline monitoring with escalation if traffic patterns change.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | IRT-APNANET4-IN |
| ASN | AS133661 |
| Network Name | โ |
| CIDR Block | 103.30.80.0/22 |
| RIR | APNIC |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 โ Basic operator with some routing infrastructure |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 29% | 2 | 3 |
| routing | 32% | 2 | 3 |
| services | 15% | 2 | 2 |
| ownership | 31% | 3 | 4 |
| reputation | 28% | 1 | 3 |
| geolocation | 21% | 2 | 2 |
| Overall | 26% | 12 | 17 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-07 23:03:26 UTC |
| Last Seen | 2026-06-22 07:13:45 UTC |
| Profile Built | 2026-06-22 07:19:18 UTC |
| Data Freshness | Live |
| Signal Types | 19 |
| Total Observations | 20 |
Full dossier details are available via our API.