# IP Intelligence Briefing: 151.158.235.64/32
Date: Analysis completed
Subject: 151.158.235.64/32
Classification: Low Risk with Notable Discrepancies
---
## Executive Summary
IP 151.158.235.64/32 is attributed to organization IRT-RAJANCOMPUTERS-IN (ASN 137655) within RIPE registry block 151.158.235.0/24. The IP carries a risk score of 25 (Low Risk) with no active services detected. However, historical observations reveal geolocation inconsistencies between US (New York) and India (Abohar, Punjab) sources, alongside multiple DNSBL listings. The subnet exhibits minimal abuse density with 10 of 11 neighboring IPs showing low risk.
---
## Ownership and Network Profile
Organization: IRT-RAJANCOMPUTERS-IN
ASN: 137655
CIDR Block: 151.158.235.0/24
RIR: RIPE
Abuse Contact: wapjatt@gmail.com
Registration Date: Data unavailable
Network Classification:
- Infrastructure Type: Not classified as CDN, Cloud, VPN, or Proxy
- Connection Type: Firewalled / No Services
- Mobile Carrier: None detected
- Anycast: No
---
## Geolocation Analysis
Primary Location: United States (US-NY, New York)
Alternative Location: India (Punjab, Abohar)
Confidence: Mixed geolocation sources with conflicting data
The IP shows significant geolocation discrepancies across observation sources, with some systems reporting US infrastructure and others indicating Indian presence. This inconsistency warrants monitoring for potential misconfiguration or multi-region deployment.
---
## Threat Indicators
Risk Score: 25 (Low Risk)
Abuse Confidence Score: Data unavailable
Threat Indicators: None currently active
Campaign Likelihood: Not applicable
Blacklist Status:
- DNSBL Listed Count: 1
- DNSBL Total Lists: 8
- Blacklist Count: 0 (current)
- Listed in: Multiple threat feeds (details available via RDAP)
Notable Signals:
- AlienVault OTX: Threat signal detected (pulse count: 1)
- Multiple blacklist listings observed in historical data
---
## Neighborhood Analysis
Subnet: 151.158.235.0/24
Total Siblings: 11
Abuse Density: 0
Risk Distribution:
- High Risk: 0
- Medium Risk: 0
- Low Risk: 10
Notable Neighbors:
- 151.158.235.67: Risk Score 25
- 151.158.235.86: Risk Score 25
- Remaining 9 neighbors: Risk Score 0, Authority Score 50
The subnet demonstrates minimal abuse activity with the majority of neighbors classified as low risk.
---
## Observation History
Total Observations: 12 signals recorded
Recent Activity: Multiple signals observed on 2026-07-29
Key Historical Signals:
1. Geolocation (Confidence: 0.70): Abohar, Punjab, India
2. Threat Signal (Confidence: 0.75): AlienVault OTX threat detection
3. Blacklist Listings (Confidence: 0.85): 8 total lists, 1 currently listed, maximum severity: High
4. Organization Registration (Confidence: 0.95): IRT-RAJANCOMPUTERS-IN, abuse email wapjatt@gmail.com
5. Network Registration (Confidence: 0.90): RIPE, CIDR 151.158.235.0/24
---
## Technical Services
Open Ports: None detected
TLS Certificate: Not detected
HTTP Title: Not detected
Service Banner: Not detected
Forward DNS Resolution: Confirmed false
Hosted Domain Count: 0
The IP appears to have no publicly accessible services, consistent with a firewalled or backend infrastructure role.
---
## Control Plane Data
Origin ASN: 137655
BGP Prefix: 151.158.235.0/24
Route Changes (30d): 0
Route Stability: Not stable
MoAS: No
RPKI State: Data unavailable
DNSSEC Valid: Yes
CAAA Records: No
---
## Recommended Actions
Based on the risk profile, the following defensive measures are recommended:
1. Monitor: Track geolocation inconsistencies for potential infrastructure changes
2. Blacklist Review: Investigate 8 DNSBL listings, particularly those with high severity
3. Neighbor Awareness: Monitor 151.158.235.67 and 151.158.235.86 for correlated activity
4. Contact Abuse: Consider outreach to abuse email (wapjatt@gmail.com) if malicious activity is observed
5. Service Verification: Verify firewall configuration if this IP is expected to host services
---
Assessment: The IP presents low immediate threat but warrants monitoring due to geolocation discrepancies and historical blacklist activity. No active attack indicators detected at time of analysis.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | IRT-RAJANCOMPUTERS-IN |
| ASN | AS137655 |
| Network Name | RAJANCOMPUTERS-IN |
| CIDR Block | 151.158.235.0/24 |
| RIR | RIPE |
| Country | IN |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 0% | 0 | 0 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 0% | 0 | 0 |
| reputation | 0% | 0 | 0 |
| geolocation | 0% | 0 | 0 |
| Overall | 8% | 2 | 2 |
| Data Coherence | Mostly Consistent (80%) โ 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-07-21 12:54:49 UTC |
| Last Seen | 2026-07-29 08:33:53 UTC |
| Profile Built | 2026-07-29 08:45:51 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 20 |
Full dossier details are available via our API.