IP Intelligence Briefing: 115.98.2.246
Date: 2026-06-06
---
**1. Core Profile**
- Risk Score: Moderate (40/100)
- Ownership: Residential endpoint owned by Hathway Cable and Datacom Limited (AS17488).
- Geolocation: Hyderabad, Telangana, India (IN).
- Network Role: Residential infrastructure, no cloud/CDN/VPN indicators.
- Threat Indicators: No active malicious campaigns, spam, or known attacker associations.
---
**2. Observation History**
- Recent Activity (23 observations):
- Mixed signals: 5 "pulse" events (potential threats) noted in 2026-06-06, but no confirmed malicious behavior.
- DNS records tied to hathway.com with valid SPF/DMArc configurations.
- Geolocation data inconsistent (missing coordinates, but plausible for Hyderabad).
---
**3. Network Relationships**
- Linked Entities:
- Same network: HATHWAY-NET (AS17488).
- DNS associations: 2.98.115.246.hathway.com (repeatedly resolved).
- No direct links to C2 servers, malware, or botnets.
---
**4. Subnet Analysis**
- Subnet: 115.98.2.0/24
- Neighbor Data: No active sibling IPs detected; subnet classified as "mostly clean" with low abuse density.
---
**5. Actionable Insights**
- Monitor: Track DNS activity for hathway.com and check for unexpected traffic patterns.
- Verify: Confirm if the "pulse" events (threat pulses) are false positives or linked to network misconfigurations.
- Context: Residential IP with no direct malicious indicators, but moderate risk due to mixed historical signals.
---
Conclusion:
This IP is a residential endpoint associated with Hathway Cable, showing no immediate malicious activity. However, its moderate risk score and historical "pulse" events warrant monitoring for anomalies. No urgent mitigation required, but ongoing observation is recommended.
Tools Used: `ipdebrief_profile`, `ipdebrief_history`, `ipdebrief_relationships`, `ipdebrief_neighbors`.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | HATHWAY CABLE AND DATACOM LIMITED |
| ASN | AS17488 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | APNIC |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | 2.98.115.246.hathway.com |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | 2.98.115.246.hathway.com |
๐ DNS Hygiene
| Hygiene Score | 60% (Good) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 4 |
| routing | 19% | 1 | 2 |
| services | 19% | 2 | 2 |
| ownership | 27% | 2 | 3 |
| reputation | 22% | 1 | 3 |
| geolocation | 35% | 2 | 3 |
| Overall | 25% | 10 | 17 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Recent
| First Seen | 2026-05-13 06:36:48 UTC |
| Last Seen | 2026-06-17 00:40:48 UTC |
| Profile Built | 2026-06-17 00:18:50 UTC |
| Data Freshness | Recent |
| Signal Types | 21 |
| Total Observations | 21 |
Full dossier details are available via our API.