IP Intelligence Briefing: 103.8.118.140
Date: 2026-06-10
---
**1. Core Profile**
- Risk Score: 80 (High Risk)
- Ownership:
- ASN: 135225 (SMARTNET16-IN)
- Organization: MANAGING DIRECTOR (APNIC registered)
- Geolocation: Villupuram, Tamil Nadu, India (22°N, 79°E)
- Threat Indicators:
- No direct malicious activity detected (no indicators, blacklists, or campaigns).
- BGP Data: Prefix `103.8.118.0/24` associated with SMARTNET16-IN.
- DNSSEC: Validated but with low confidence (score: 0.15).
---
**2. Observation History**
- Recent Activity (Last 30 Days):
- Listed in 8 threat feeds (3 high-severity, 5 medium).
- BGP prefix confirmed via Team Cymru (ASN 135225).
- No persistent malicious behavior or ownership changes.
- Trend: High-risk association appears recent, with no long-term persistence.
---
**3. Network Relationships**
- Shared Network:
- Subnet `103.8.118.0/24` (managed by SMARTNET16-IN).
- Abuse Density: 16.7% (moderate risk in subnet).
- Neighbors:
- High-Risk Neighbors: 2 IPs (e.g., `103.8.118.145`, `103.8.118.245` with scores 55โ80).
- Medium-Risk Neighbors: 9 IPs (e.g., `103.8.118.11`, `103.8.118.132`).
- Unknown Risk: 1 IP (`103.8.118.204`).
---
**4. Actions & Recommendations**
- Monitor Traffic:
- Track interactions with high-risk neighbors (e.g., `103.8.118.145`, `103.8.118.245`).
- Verify DNSSEC validity and check for BGP anomalies.
- Firewall Rules:
- Block or restrict traffic to/from this subnet if suspicious activity is detected.
- Network Validation:
- Confirm the legitimacy of SMARTNET16-INโs ownership and network operations.
---
Conclusion:
The IP 103.8.118.140 is part of a subnet with mixed risk levels. While no direct malicious activity is observed, its association with threat feeds and high-risk neighbors warrants closer scrutiny. SOC teams should monitor traffic patterns and validate network legitimacy to mitigate potential risks.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | MANAGING DIRECTOR |
| ASN | AS135225 |
| Network Name | SMARTNET16-IN |
| CIDR Block | 103.8.116.0/22 |
| RIR | APNIC |
| Country | IN |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 17% | 1 | 1 |
| routing | 17% | 1 | 1 |
| services | 13% | 1 | 1 |
| ownership | 27% | 2 | 3 |
| reputation | 17% | 1 | 1 |
| geolocation | 21% | 2 | 2 |
| Overall | 19% | 8 | 9 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Fresh
| First Seen | 2026-05-22 18:15:00 UTC |
| Last Seen | 2026-06-26 02:14:31 UTC |
| Profile Built | 2026-06-14 21:02:52 UTC |
| Data Freshness | Fresh |
| Signal Types | 13 |
| Total Observations | 14 |
Full dossier details are available via our API.