IPDebrief

117.98.208.217

IP Intelligence Dossier
Your IP: 216.73.216.5
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP INTELLIGENCE BRIEFING: 117.98.208.217/32

Classification: Moderate Risk | Assessment Date: 2026-07-30

Intel Source: IPDebreak Threat Intelligence Platform

---

## EXECUTIVE SUMMARY

The IP address 117.98.208.217 presents a moderate risk profile (55/100) with characteristics consistent with residential mobile broadband connectivity from India. The IP is associated with Bharti Airtel's mobile network infrastructure and exhibits no persistent malicious activity. While the subnet shows clean abuse density, the elevated risk score warrants enhanced monitoring.

---

## NETWORK ATTRIBUTES

AttributeValue
**ASN**24560
**Organization**Rashim Kapoor (UPPAL-HYDERABAD-AP)
**Country**India (IN)
**Region/City**Telangana, Mallฤpur
**Registration**APNIC
**CIDR Block**117.98.192.0/19

---

## CONNECTIVITY CLASSIFICATION

---

## THREAT INDICATORS

Control Plane Analysis:

---

## TEMPORAL ANALYSIS

Observation History (17 signals collected):

Assessment: The IP demonstrates stable characteristics without evolving threat patterns. No escalation of malicious behavior observed in observation history.

---

## NETWORK CONTEXT

Subnet Analysis (117.98.208.0/24):

Relationship Graph:

---

## RECOMMENDED ACTIONS

Priority: HIGH โ€” Risk score (55/100) exceeds normal baseline for residential mobile IPs

Monitoring

Mitigation (Recommended by IPDebrief)

Note: Recommendations are probabilistic. Combine with additional signals before implementing blocking measures.

---

## INTELLIGENCE ASSESSMENT

The IP address 117.98.208.217 represents a residential mobile broadband endpoint from India's Airtel network. While the subnet maintains clean abuse metrics and no persistent malicious activity has been observed, the moderate risk classification suggests potential for opportunistic abuse typical of mobile residential IPs.

Key Considerations for SOC Teams:

Threat Level: MODERATE โ€” Enhanced monitoring recommended; blocking may be warranted based on organizational policy and additional contextual signals.

---

*Report generated: 2026-07-30 | Source: IPDebrief Threat Intelligence Platform*

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ฎ๐Ÿ‡ณ India
RegionTelangana
CityMallฤpur
Timezoneโ€”
Latitude17.44
Longitude78.57

๐Ÿข Ownership & Registration

OrganizationRashim Kapoor
ASNAS24560
Network NameUPPAL-HYDERABAD-AP
CIDR Block117.98.192.0/19
RIRAPNIC
CountryIN
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTRtelemedia-ap-dynamic-217.208.98.117.airtelbroadband.in
Forward ConfirmedNo โ€” PTR hostname does not resolve back to this IP (weak signal)
Forward Hostnamestelemedia-ap-dynamic-217.208.98.117.airtelbroadband.in

๐Ÿ” DNS Hygiene

Hygiene Score60% (Good)
SPFPresent
DMARCPresent
FCrDNSNot verified
DNSSECValid
CAANot configured

โ˜๏ธ Network Classification

InfrastructureMobile
Service PurposeFirewalled / No Services
Network TierUnknown โ€” Insufficient routing data to classify
Mobile

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverโ€”
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
No certificate
Issued by โ€”
N/A
SANsNone
Valid Fromโ€”
Valid Untilโ€”

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
25%
11
routing
25%
11
services
25%
11
ownership
25%
12
reputation
0%
00
geolocation
35%
22
Overall22%67
Coverage: 5/6 dimensions ยท Data sufficiency: partial
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-07-26 15:19:49 UTC
Last Seen2026-07-30 07:57:55 UTC
Profile Built2026-07-30 08:10:40 UTC
Data FreshnessLive
Signal Types19
Total Observations19
๐Ÿ” 19 signal types ยท 19 observations collected
This report is generated from 19+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.