## IP Intelligence Briefing: 117.207.224.158/32
Executive Summary
The target IP address 117.207.224.158 presents as low-risk with a composite risk score of 30. No active malicious indicators or known threat campaigns have been observed. The address currently exhibits no open services and maintains a firewalled operational state.
Profile Overview
- Risk Score: 30 (Low Risk)
- Reputation: Low Risk
- Control Plane Origin: ASN 9829 (BSNL-NIB - National Internet Backbone, India)
- BGP Prefix: 117.207.224.0/20
- Geolocation: New York, US (reported by single source)
- Service Status: Firewalled / No Services Active
- Open Ports: None detected
- DNS Resolution: No PTR records, forward resolution inactive
Threat Indicators
- Blacklist Status: Listed on 2 of 8 DNSBLs checked
- Known Attacker: No
- Tor Exit Node: No
- Spam Source: No
- Campaign Association: No known campaigns linked
- Honeypot Hits: 0
- WAF Violations: 0
Network Neighborhood Analysis
The /24 subnet (117.207.224.158/24) contains no neighboring IP intelligence records. No sibling IPs with risk data were discovered in the immediate vicinity, resulting in an abuse density of 0.
Temporal History (July 29, 2026)
Eight observation signals were recorded. Key findings include:
- Reverse DNS resolution confirmed for zone 158.224.207.117.in-addr.arpa
- DNSSEC validation confirmed as valid
- ASN prefix 117.207.224.0/20 attributed to BSNL-NIB
- Two DNSBL listings observed with maximum severity level of medium
Relationship Graph
No associated entities were identified in the relationship graph. No linked hostnames, organizations, certificates, or subnets were discovered.
Recommended Actions
No specific security actions or firewall rules are recommended at this time. The IP address currently presents minimal threat indicators and no active malicious behavior. Standard network monitoring protocols should continue.
Intelligence Assessment
The target IP is operational but inactive (firewalled). While listed on a minor number of DNSBLs, no evidence supports active abuse or malicious intent. The geolocation discrepancy (US report vs. ASN registration in India) warrants periodic monitoring but does not indicate compromise at this time.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | IRT-BSNL-IN |
| ASN | AS9829 |
| Network Name | BB-Multiplay |
| CIDR Block | 117.207.0.0/16 |
| RIR | APNIC |
| Country | IN |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 0% | 0 | 0 |
| reputation | 0% | 0 | 0 |
| geolocation | 0% | 0 | 0 |
| Overall | 12% | 3 | 3 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-07-21 19:02:36 UTC |
| Last Seen | 2026-07-29 10:02:59 UTC |
| Profile Built | 2026-07-29 10:12:43 UTC |
| Data Freshness | Live |
| Signal Types | 17 |
| Total Observations | 17 |
Full dossier details are available via our API.