# IP Intelligence Briefing: 117.222.49.39
## Executive Summary
IP 117.222.49.39 is a residential endpoint belonging to BSNL's Multiplay network (AS9829, IRT-BSNL-IN) with a moderate risk score of 55. The IP is geolocated to Nagpur, Maharashtra, India. No active threat indicators or known campaign associations were identified. The subnet classification remains clean with zero abuse density.
## Ownership and Network Classification
- Organization: IRT-BSNL-IN (AS9829)
- Network Name: BB-Multiplay-General
- CIDR Block: 117.222.0.0/16
- Infrastructure Type: Residential
- Registration Authority: APNIC
- BGP Prefix: 117.222.48.0/20
## Risk Assessment
- Overall Risk Score: 55 (Moderate Risk)
- Abuse Confidence Score: Not applicable
- DNSBL Status: Listed on 3 of 8 threat intelligence feeds
- ISP Operator Score: 0.1304 (Minimal)
- Route Stability: Unstable (isRouteStable: false)
## Geolocation Data
- Country: India (IN)
- Region: Maharashtra (MH)
- City: Nagpur
- Geo Confidence: 52% accuracy (1,500 km radius)
- Coordinates: 20.59°N, 78.96°E
## Threat Indicators
- Blacklist Count: 0
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
- Active Threat Feeds: None detected
- Campaign Associations: None
## Historical Observations
Analysis of 17 historical observations indicates:
- Recent geolocation signals from June 2026 confirm Nagpur, India placement
- One Alienvault OTX signal flagged `has_threats: true` with 4 associated pulses
- Network role signals show inconsistency, with one observation indicating `is_residential: false`
- Reputation signals vary, with operator scores ranging from 0 to 0.1304
- No persistent malicious behavior or threat persistence days recorded
## Neighborhood Analysis
- Subnet: 117.222.49.39/24
- Abuse Density: 0 (clean classification)
- Threat Siblings: 0
- Active Siblings: 0
- Total Siblings: 1
- No neighboring IPs with elevated risk profiles detected
## Network Relationships
The IP maintains 9 relationships, all associated with the BB-Multiplay-General network segment. No external organization, certificate, or hostname relationships beyond network-level associations were identified.
## Recommended Actions
Based on the moderate risk profile:
- Standard residential IP with no immediate threat indicators
- Monitor for changes in DNSBL status (currently listed on 3 of 8 feeds)
- Route instability warrants periodic revalidation
- No immediate blocking required; allow-list if legitimate traffic source
- Consider geographic filtering if Nagpur, India is outside expected traffic patterns
## Conclusion
IP 117.222.49.39 represents a residential BSNL endpoint with moderate risk characteristics but no active threat indicators. The clean neighborhood profile and absence of threat campaigns support continued monitoring rather than immediate remediation. The IP should be treated as a standard residential endpoint unless additional threat intelligence emerges.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | IRT-BSNL-IN |
| ASN | AS9829 |
| Network Name | BB-Multiplay-General |
| CIDR Block | 117.222.0.0/16 |
| RIR | APNIC |
| Country | IN |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 15% | 2 | 2 |
| routing | 13% | 1 | 1 |
| services | 8% | 1 | 1 |
| ownership | 24% | 2 | 3 |
| reputation | 13% | 1 | 2 |
| geolocation | 19% | 2 | 2 |
| Overall | 15% | 9 | 11 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Recent
| First Seen | 2026-05-10 16:13:49 UTC |
| Last Seen | 2026-06-26 02:01:32 UTC |
| Profile Built | 2026-06-27 09:33:52 UTC |
| Data Freshness | Recent |
| Signal Types | 17 |
| Total Observations | 17 |
Full dossier details are available via our API.