IPDebrief

103.39.247.141

IP Intelligence Dossier
Your IP: 216.73.217.131
{ } JSON 🔧 Full Actions API
🤖 Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# INTELLIGENCE BRIEFING: 103.39.247.141

## EXECUTIVE SUMMARY

IP address 103.39.247.141 presents moderate risk (score: 55) with no active threat indicators. The IP belongs to infrastructure under IRT-WEBSTAR-IN (ASN: 133720), registered with APNIC in India (Maharashtra, Ulhasnagar). The address is currently firewalled with no active services. While the IP itself shows no malicious activity, it appears on 3 out of 8 DNSBLs, suggesting historical reputation concerns.

---

## NETWORK OWNERSHIP & CLASSIFICATION

AttributeValue
ASN133720
OrganizationIRT-WEBSTAR-IN
Network NameWEBSTAR
CIDR Block103.39.247.0/24
RIRAPNIC
CountryIndia (IN)
RegionMaharashtra
CityUlhasnagar

Network Role: Infrastructure provider with firewalled configuration. No CDN, cloud, VPN, proxy, or hosting services detected. Not classified as bogon, mobile, residential, or Tor exit node.

---

## THREAT PROFILE

IndicatorStatus
Known AttackerNo
Tor Exit NodeNo
Spam SourceNo
Active Threat IndicatorsNone
Known CampaignsNone
Blacklist Count0
DNSBL Listings3 of 8 total lists

Risk Assessment: Moderate risk score (55/100) driven primarily by DNSBL presence rather than active malicious behavior. No evidence of persistence or campaign association.

---

## INFRASTRUCTURE ANALYSIS

DNS Resolution:

Services:

Control Plane:

---

## OBSERVATION HISTORY

17 signal observations recorded, most recent: 2026-07-27. Historical signals show consistent network ownership with no ownership changes. Geolocation signals validate the India/Maharashtra location assignment. No persistent malicious activity detected in the observation window.

---

## NEIGHBORHOOD ANALYSIS

Subnet: 103.39.247.0/24

The IP resides in a low-abuse subnet with no neighboring IPs flagged for malicious activity.

---

## RELATIONSHIP MAPPING

8 relationships identified:

No associations to external organizations, hostnames beyond the PTR record, or certificates.

---

## ACTIONS & RECOMMENDATIONS

Based on the moderate risk score and DNSBL presence:

1. Monitor: Track for service activation and DNSBL status changes

2. Block: Consider blocking at network perimeter if traffic patterns suggest abuse

3. Investigate: Review inbound traffic for potential reputation-based filtering issues

4. No Immediate Threat: No active malicious indicators requiring immediate containment

---

Analyst Note: This IP represents infrastructure-level presence with historical reputation concerns but no current active threat indicators. The moderate risk score warrants monitoring rather than immediate blocking actions.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

Country🇮🇳 India
RegionMaharashtra
CityUlhasnagar
Timezone—
Latitude19.22
Longitude73.15

🏢 Ownership & Registration

OrganizationIRT-WEBSTAR-IN
ASNAS133720
Network NameWEBSTAR
CIDR Block103.39.244.0/22
RIRAPNIC
CountryIN
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR103.39.247.141.zessnetworks.com
Forward ConfirmedNo — PTR hostname does not resolve back to this IP (weak signal)
Forward Hostnames103.39.247.141.zessnetworks.com

🔐 DNS Hygiene

Hygiene Score60% (Good)
SPFPresent
DMARCPresent
FCrDNSNot verified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureUnknown
Service PurposeFirewalled / No Services
Network TierUnknown — Insufficient routing data to classify
No specific classification

🔌 Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Server—
HTTP Title—

🔐 TLS Certificate

🔒
No certificate
Issued by —
N/A
SANsNone
Valid From—
Valid Until—

🛡️ Public Network Snapshot

Origin ASNAS133720
Network Prefix103.39.247.0/24
Route mappingFound

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
35%
22
routing
25%
11
services
25%
11
ownership
0%
00
reputation
25%
11
geolocation
0%
00
Overall18%55
Coverage: 4/6 dimensions · Data sufficiency: partial
Data CoherenceMostly Consistent (80%) — 1 contradiction(s)
AttributionLow (35%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid
⚠ Geo sources disagree on country: US, IN

📅 Observation Timeline 🔄 Live

First Seen2026-07-13 09:16:41 UTC
Last Seen2026-08-31 21:52:11 UTC
Profile Built2026-08-31 21:57:40 UTC
Data FreshnessLive
Signal Types22
Total Observations27
🔍 22 signal types · 27 observations collected
This report is generated from 22+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API 🔧 Actions API 📧 Enterprise Access

❓ Frequently Asked Questions About 103.39.247.141

Who owns the IP address 103.39.247.141?

103.39.247.141 is registered to IRT-WEBSTAR-IN. The address falls within the 103.39.244.0/22 network block. Registration is held at APNIC.

Where is 103.39.247.141 located?

Geolocation data places 103.39.247.141 in Ulhasnagar, Maharashtra, India. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.

Is 103.39.247.141 malicious or safe?

103.39.247.141 currently carries a moderate risk assessment, meaning some indicators warrant caution, but the evidence is mixed. This assessment is generated from continuously collected signals and can change over time.

What is the hostname for 103.39.247.141?

The reverse DNS (PTR) record for 103.39.247.141 is 103.39.247.141.zessnetworks.com. This hostname is not forward-confirmed, so it should be treated as a weak signal.

🏘️ Related IP Addresses

Nearby addresses in 103.39.244.0/22

Browse related networks

ℹ️ About This Report

All data shown is publicly available network metadata — IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.