IP Intelligence Briefing: 117.221.137.117
Date: 2026-06-02
---
**1. Core Profile**
- Risk Score: 55 (Moderate Risk)
- Ownership: Registered to IRT-BSNL-IN (AS9829), a telecom provider in India.
- Geolocation: Hyderabad, Telangana, India (117.221.0.0/16 subnet).
- Threat Status: No malicious indicators, blacklists, or known attacker associations.
- Network Role: Firewalled with no open services (ports, TLS, or HTTP activity).
- Control Plane: BGP prefix 117.221.128.0/20, stable route with no recent changes.
---
**2. Observation History**
- Recent Activity: Scanned once (2026-06-02) with no malicious findings.
- Temporal Trends: No persistent threats; threat observation count is 1.
- Subnet Abuse: Subnet 117.221.137.117/24 has abuse density 0 (clean).
---
**3. Relationships & Network Context**
- Linked Entities:
- Same network: BB-Multiplay-General (AS9829).
- No external DNS, certificates, or organizational links.
- Subnet Neighbors: No active or risky sibling IPs in the 117.221.137.0/24 subnet.
---
**4. Threat & Risk Analysis**
- No Malicious Indicators: No TLS/HTTP activity, open ports, or DNS records detected.
- Provider Context: Telecom provider network (IRT-BSNL-IN) with minimal risk score.
- Recommendations:
- Monitor for unexpected service changes or network instability.
- Ensure firewalled infrastructure aligns with organizational security policies.
---
Conclusion:
The IP 117.221.137.117 is part of a legitimate telecom provider network with no current malicious activity. While the moderate risk score reflects the networkโs broader context, the IP itself shows no direct threats. SOC teams should maintain baseline monitoring for anomalies, given the lack of service exposure and minimal risk indicators.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | IRT-BSNL-IN |
| ASN | AS9829 |
| Network Name | BB-Multiplay-General |
| CIDR Block | 117.221.0.0/16 |
| RIR | APNIC |
| Country | IN |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 28% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 15% | 2 | 2 |
| ownership | 27% | 2 | 3 |
| reputation | 26% | 1 | 3 |
| geolocation | 21% | 2 | 2 |
| Overall | 22% | 10 | 15 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-07 23:03:33 UTC |
| Last Seen | 2026-06-22 10:34:01 UTC |
| Profile Built | 2026-06-22 10:36:23 UTC |
| Data Freshness | Live |
| Signal Types | 18 |
| Total Observations | 19 |
Full dossier details are available via our API.