# IP Intelligence Briefing: 150.241.246.171/32
Classification: Low Risk
Date Generated: Current
Analyst: Automated Intelligence System
---
## Executive Summary
IP 150.241.246.171 presents a Low Risk threat profile with a risk score of 25. The address is hosted by Micro Hosting Private Limited (ASN: 134926) within the 150.241.246.0/24 subnet registered under APNIC. No active threat indicators or open services were detected. The IP shows limited blacklist exposure (1 of 8 DNSBL listings) but lacks confirmed malicious activity patterns.
---
## Technical Profile
Ownership & Registration:
- ASN: 134926 (MICROHOST-AS - Micro Hosting Private Limited, India)
- Organization: netutils-mnt
- CIDR Block: 150.241.246.0/24
- RIR: APNIC
- Abuse Contact: Available via RDAP
Geolocation:
- Country: US/IN (conflicting signals detected)
- City: Atlanta, US (primary consensus)
- Timezone: America/New_York
- Geographic Consensus: Mixed signals across sources
Network Role:
- Infrastructure Type: Firewalled / No Services
- Connection Type: Not classified
- Proxy/VPN/Tor: Negative on all checks
---
## Threat Indicators
Threat Classification:
- Risk Score: 25 (Low)
- Abuse Confidence Score: Not available
- Known Campaigns: None
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
Blacklist Status:
- DNSBL Listed: 1 of 8 total lists
- Maximum Severity: High (per listing data)
- Threat Persistence Days: 0
Services:
- Open Ports: None detected
- HTTP/HTTPS: Not exposed
- TLS Certificates: None
- Email Authentication: SPF/DMARC not configured
---
## Neighborhood Analysis (150.241.246.0/24)
Subnet Risk Profile:
- Abuse Density: 0%
- Total Siblings: 0
- Active Siblings: 0
- Threat Siblings: 0
Assessment: The /24 subnet shows no abuse activity or neighboring threats. This IP appears isolated within its network block.
---
## Observation History
Total Signals Observed: 11
Recent Activity: Most recent signals from 2026-07-27 (data timeframe)
Key Historical Signals:
- RIR registration data (APNIC)
- ASN attribution (Micro Hosting Private Limited, India)
- DNSSEC validation: Valid
- Blacklist exposure recorded with high severity indicators
Temporal Analysis:
- Ownership Changes: 0
- Threat Persistence Days: 0
- Not persistently malicious
---
## Related Entities
Relationship Graph:
- Same Network: NET-150-241-246-0-24
- No additional relationships detected (organizations, hostnames, certificates)
---
## Recommendations
SOC Actions:
1. Monitor: Continue observation; no immediate blocking required
2. Block: Not recommended based on current risk profile
3. Allowlist: Consider for false positive investigation if traffic observed
4. Investigate: If traffic from this IP is observed, verify against internal threat intelligence
Firewall Rules:
- No specific iptables/nftables rules recommended at this time
- Standard monitoring practices apply
Risk Assessment:
The IP demonstrates infrastructure characteristics consistent with legitimate hosting operations. Limited DNSBL exposure requires awareness but does not indicate active malicious activity. No correlation to known campaigns or attack infrastructure.
---
Source: IPDebrief Intelligence Platform
Confidence Level: High
Last Updated: Current analysis
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | netutils-mnt |
| ASN | AS134926 |
| Network Name | NET-150-241-246-0-24 |
| CIDR Block | 150.241.246.0/24 |
| RIR | APNIC |
| Country | IN |
| Abuse Contact | Available via RDAP |
🌐 DNS Intelligence
| PTR | 171-246-241-150.compute.onutho.com |
| Forward Confirmed | No — PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | 171-246-241-150.compute.onutho.com |
🔐 DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | 0/4 domains |
| DMARC | 0/4 domains |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
| Domains Checked | 4 domains |
☁️ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Web Server |
| Network Tier | Unknown — Insufficient routing data to classify |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | — |
| 443 | https | tcp | — |
| Closed Ports | 22, 25, 3389, 8080, 8443 (2 open / 7 scanned) | ||
| Server | Web server detected |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | *.bluemine.co.inbluemine.co.in |
| Valid From | 2025-09-13T00:00:00+00:00 |
| Valid Until | 2026-10-13T23:59:59+00:00 |
| TLS Protocol | Tls13 |
| Cipher Suite | TLS_AES_256_GCM_SHA384 |
| Signature Algorithm | sha256RSA |
| Validity Period | 395 days |
🛡️ Public Network Snapshot
| Origin ASN | AS134926 |
| Network Prefix | 150.241.246.0/24 |
| Route mapping | Found |
| HSTS | Not detected |
| CSP | Not detected |
| HTTP/2 | Enabled |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 20% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 20% | 2 | 4 |
| ownership | 17% | 2 | 3 |
| reputation | 20% | 1 | 3 |
| geolocation | 17% | 2 | 3 |
| Overall | 17% | 10 | 18 |
| Data Coherence | Mostly Consistent (80%) — 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-07-14 09:42:52 UTC |
| Last Seen | 2026-09-05 13:02:49 UTC |
| Profile Built | 2026-09-05 13:07:15 UTC |
| Data Freshness | Live |
| Signal Types | 24 |
| Total Observations | 36 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 150.241.246.171
Who owns the IP address 150.241.246.171?
150.241.246.171 is registered to netutils-mnt. The address falls within the 150.241.246.0/24 network block. Registration is held at APNIC.
Where is 150.241.246.171 located?
Geolocation data places 150.241.246.171 in Mungia, PV, India. The local time zone is Asia/Kolkata. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 150.241.246.171 malicious or safe?
150.241.246.171 currently carries a low risk assessment, meaning no significant threat indicators have been observed. This assessment is generated from continuously collected signals and can change over time.
What is the hostname for 150.241.246.171?
The reverse DNS (PTR) record for 150.241.246.171 is 171-246-241-150.compute.onutho.com. This hostname is not forward-confirmed, so it should be treated as a weak signal.
What ports are open on 150.241.246.171?
Responsive ports observed on 150.241.246.171 include 80, 443. Port visibility reflects the most recent scan and may change as the host's configuration or firewall rules change.