# IP Intelligence Briefing: 111.92.148.193/32
Classification: Low Risk / Minimal Threat | Date: July 30, 2026
Analyst: IPDebrief Intelligence Team
---
## Executive Summary
IP address 111.92.148.193 presents a low-risk profile (Risk Score: 15) with no active threat indicators. The address is associated with Pakistani hosting infrastructure and demonstrates stable network characteristics despite route instability flags. No malicious campaigns, known attacker associations, or spam source classifications were identified.
## Ownership and Infrastructure
- ASN: 134489
- Organization: Talha Naeem / SkyNet-Multi-Services-Pvt-Ltd
- CIDR Block: 111.92.128.0/20
- RIR: APNIC
- Registration Authority Score: 0
## Geolocation
- Country: Pakistan (PK)
- Region: Punjab
- City: Rahim Yar Khan
- Coordinates: 28.68°N, 70.34°E
- Geolocation Confidence: Plausible (1 source, consensus confirmed)
- Note: ICMP validation blocked; minimum possible RTT: 115.4ms
## Network Role and Services
- Service Purpose: Firewalled / No Services
- Open Ports: None detected
- TLS Certificates: None
- DNS PTR Records: None
- Forward Resolution: None confirmed
- Infrastructure Type: Not cloud, CDN, VPN, proxy, or hosting provider
## Threat Assessment
- Threat Indicators: None
- Known Attacker: No
- Spam Source: No
- Tor Exit Node: No
- Blacklist Count: 0
- Threat Feeds: Empty
- Campaign Likelihood: None
- Associated Campaigns: 0
## Control Plane Analysis
- BGP Prefix: 111.92.148.0/24
- Route Stability: False
- Operator Score: 0.1304 (Minimal)
- RPKI State: Not validated
- DNSSEC: Valid
- DNSBL Listings: 1 of 8 total lists
- IRR Consistency: Not assessed
## Neighborhood Analysis (111.92.148.0/24)
- Subnet Classification: Clean
- Abuse Density: 0
- Total Siblings: 2
- Active Siblings: 2
- Threat Siblings: 0
- Notable Neighbor: 111.92.148.197 (Risk Score: 25, Authority Score: 50)
## Historical Observations
Observation Count: 16 signals across the observation period.
Recent signals (July 30, 2026):
- Geolocation: Confirmed Pakistan (Punjab, Rahim Yar Khan)
- Subnet Classification: Clean / No inherited risk
- Service Scan: No open ports; ports scanned but no services detected
- Banner Analysis: No TLS or HTTP banners
- Campaign Correlation: Zero correlated IPs
## Temporal Analysis
- Ownership Changes: 0
- Threat Persistence Days: 0
- Threat Observation Count: 0
- Persistently Malicious: No
## Recommended Actions
Current Risk Level: Low / Monitor
Recommended Firewall Rules:
- Default allow (no blocking required at this time)
- Consider monitoring for changes in threat indicators
- No immediate mitigation actions necessary
SOC Guidance:
This IP presents minimal threat risk and is not associated with known malicious activity. However, monitor for:
1. Changes in DNSBL listing status
2. Emergence of open ports or service banners
3. Any shift in geolocation consistency
4. Correlation with the higher-risk neighbor (111.92.148.197)
---
*Intelligence generated from IPDebrief automated analysis platform. All data sourced from real-time network probes, threat intelligence feeds, and historical observation records.*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Talha Naeem |
| ASN | AS134489 |
| Network Name | SkyNet-Multi-Services-Pvt-Ltd |
| CIDR Block | 111.92.128.0/20 |
| RIR | APNIC |
| Country | PK |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 0% | 0 | 0 |
| reputation | 0% | 0 | 0 |
| geolocation | 0% | 0 | 0 |
| Overall | 12% | 3 | 3 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-07-27 15:45:59 UTC |
| Last Seen | 2026-07-30 12:28:28 UTC |
| Profile Built | 2026-07-30 12:38:26 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 20 |
Full dossier details are available via our API.