# IP Intelligence Briefing: 110.225.227.189/32
## Executive Summary
The IP address 110.225.227.189 is a residential mobile broadband endpoint with low risk profile. The IP is assigned to Network Administrator for ABTS DEL within the Airtel mobile carrier network (AS24560), located in Phase III, New, India. Current risk assessment indicates no active threat indicators or malicious activity.
---
## Technical Profile
Ownership & Network Attribution:
- ASN: 24560 (Bharti Airtel Ltd.)
- Organization: Network Administrator for ABTS DEL
- Network Name: ABTS-DSL-MOH
- CIDR Block: 110.225.192.0/18
- RIR: APNIC (Asia-Pacific)
- Registration: APNIC registry
Geolocation:
- Country: India (IN)
- Region: New
- City: Phase III
- Geo Confidence: 1500km accuracy radius
- Geographic Validation: GeoPlausible flag not set
Network Classification:
- Primary Role: Mobile Residential Endpoint
- Connection Type: LTE/5G Mobile Broadband
- Carrier: Airtel (Bharti Airtel Ltd.)
- MCC/MNC: 404/10
- Mobile Carrier: Confirmed (Yes)
- Residential: Yes
- Cloud/CDN/Proxy/VPN: No
DNS Resolution:
- PTR Record: abts-north-dynamic-189.227.225.110.airtelbroadband.in
- Forward Resolution: Confirmed (1 hostname)
- Email Authentication: SPF and DMARC records present
- Hosted Domain Count: 0
Service Status:
- Open Ports: None detected
- Services: Firewalled / No Services
- TLS Certificates: None
- HTTP Banner: None detected
- Server Fingerprint: No HTTP services responding
---
## Threat Assessment
Current Risk Profile:
- Overall Risk Score: 0
- Reputation: Low Risk
- Authority Score: 0
- Provider Score: 0
- Stability Score: 0
Threat Indicators:
- Blacklist Count: 0
- Abuse Confidence Score: Not applicable
- Known Attacker: No
- Spam Source: No
- Tor Exit Node: No
- Known Campaigns: None
- Threat Feeds: Empty
Control Plane Analysis:
- BGP Prefix: 110.225.227.0/24
- Route Stability: Unstable
- Operator Score: 0.1304 (Minimal)
- DNSSEC Valid: Yes
- DNSBL Listed: 0 of 8 total lists
- RPKI State: Not assessed
---
## Temporal Analysis
Observation History (17 observations):
- Most recent activity: 2026-07-29
- Ownership Changes: 0
- Threat Persistence Days: 0
- Threat Observation Count: 0
- Persistently Malicious: No
- Signal Types Observed: Geolocation, ownership, subnet classification, provider data
The IP has maintained consistent classification as a residential mobile endpoint with no escalation of threat signals over the observation period.
---
## Neighborhood Analysis (Subnet: 110.225.227.0/24)
Subnet Statistics:
- Total Siblings: 11 IPs
- Active Siblings: 4
- Threat Siblings: 0
- Abuse Density: 0
- Subnet Classification: Clean
- Inherited Risk: 0
Neighbor Risk Distribution:
- High Risk: 0
- Medium Risk: 2
- Low Risk: 4
- No Risk Data: 4
Notable Neighbors:
- 110.225.227.175: Risk Score 40, Authority Score 50
- 110.225.227.200: Risk Score 40, Authority Score 50
- 110.225.227.23, 110.225.227.33, 110.225.227.58, 110.225.227.95, 110.225.227.101, 110.225.227.151, 110.225.227.181, 110.225.227.182: Scores 25 or null
---
## Relationship Graph
Connected Entities (9 relationships):
- Network Associations: ABTS-DSL-MOH (4 instances)
- DNS Associations: abts-north-dynamic-189.227.225.110.airtelbroadband.in (5 instances)
No external organizational, certificate, or campaign correlations detected.
---
## Security Recommendations
Risk-Based Actions:
1. Allow by Default - No blocking recommended; IP is classified as low risk residential mobile endpoint
2. Monitor for Service Changes - IP currently shows no open services; monitor for unexpected service emergence
3. Geolocation Validation - Consider geo-validation if traffic patterns inconsistent with expected India-based endpoint
4. No Firewall Rules Required - Current threat profile does not warrant specific blocking rules
Contextual Considerations:
- Traffic from this IP is expected from mobile broadband users in India
- Standard residential/ISP traffic patterns expected
- No historical malicious activity detected
- Subnet neighborhood shows low abuse density
---
## Conclusion
IP 110.225.227.189 is a legitimate residential mobile broadband endpoint operated by Airtel in India. The IP demonstrates no malicious indicators, no threat associations, and no service exposure. Current security posture supports normal traffic handling without specific blocking measures. The subnet neighborhood shows minimal abuse density, consistent with standard residential mobile carrier networks.
Recommendation: No immediate action required. Treat as legitimate residential traffic.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Network Administrator for ABTS DEL |
| ASN | AS24560 |
| Network Name | ABTS-DSL-MOH |
| CIDR Block | 110.225.192.0/18 |
| RIR | APNIC |
| Country | IN |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | abts-north-dynamic-189.227.225.110.airtelbroadband.in |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | abts-north-dynamic-189.227.225.110.airtelbroadband.in |
๐ DNS Hygiene
| Hygiene Score | 60% (Good) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Mobile |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 0% | 0 | 0 |
| reputation | 0% | 0 | 0 |
| geolocation | 0% | 0 | 0 |
| Overall | 12% | 3 | 3 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-07-24 14:25:36 UTC |
| Last Seen | 2026-07-29 23:17:04 UTC |
| Profile Built | 2026-07-29 23:31:10 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 20 |
Full dossier details are available via our API.