IPDebrief

151.158.235.64

IP Intelligence Dossier
Your IP: 216.73.216.5
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP Intelligence Briefing: 151.158.235.64/32

Date: Analysis completed

Subject: 151.158.235.64/32

Classification: Low Risk with Notable Discrepancies

---

## Executive Summary

IP 151.158.235.64/32 is attributed to organization IRT-RAJANCOMPUTERS-IN (ASN 137655) within RIPE registry block 151.158.235.0/24. The IP carries a risk score of 25 (Low Risk) with no active services detected. However, historical observations reveal geolocation inconsistencies between US (New York) and India (Abohar, Punjab) sources, alongside multiple DNSBL listings. The subnet exhibits minimal abuse density with 10 of 11 neighboring IPs showing low risk.

---

## Ownership and Network Profile

Organization: IRT-RAJANCOMPUTERS-IN

ASN: 137655

CIDR Block: 151.158.235.0/24

RIR: RIPE

Abuse Contact: wapjatt@gmail.com

Registration Date: Data unavailable

Network Classification:

---

## Geolocation Analysis

Primary Location: United States (US-NY, New York)

Alternative Location: India (Punjab, Abohar)

Confidence: Mixed geolocation sources with conflicting data

The IP shows significant geolocation discrepancies across observation sources, with some systems reporting US infrastructure and others indicating Indian presence. This inconsistency warrants monitoring for potential misconfiguration or multi-region deployment.

---

## Threat Indicators

Risk Score: 25 (Low Risk)

Abuse Confidence Score: Data unavailable

Threat Indicators: None currently active

Campaign Likelihood: Not applicable

Blacklist Status:

Notable Signals:

---

## Neighborhood Analysis

Subnet: 151.158.235.0/24

Total Siblings: 11

Abuse Density: 0

Risk Distribution:

Notable Neighbors:

The subnet demonstrates minimal abuse activity with the majority of neighbors classified as low risk.

---

## Observation History

Total Observations: 12 signals recorded

Recent Activity: Multiple signals observed on 2026-07-29

Key Historical Signals:

1. Geolocation (Confidence: 0.70): Abohar, Punjab, India

2. Threat Signal (Confidence: 0.75): AlienVault OTX threat detection

3. Blacklist Listings (Confidence: 0.85): 8 total lists, 1 currently listed, maximum severity: High

4. Organization Registration (Confidence: 0.95): IRT-RAJANCOMPUTERS-IN, abuse email wapjatt@gmail.com

5. Network Registration (Confidence: 0.90): RIPE, CIDR 151.158.235.0/24

---

## Technical Services

Open Ports: None detected

TLS Certificate: Not detected

HTTP Title: Not detected

Service Banner: Not detected

Forward DNS Resolution: Confirmed false

Hosted Domain Count: 0

The IP appears to have no publicly accessible services, consistent with a firewalled or backend infrastructure role.

---

## Control Plane Data

Origin ASN: 137655

BGP Prefix: 151.158.235.0/24

Route Changes (30d): 0

Route Stability: Not stable

MoAS: No

RPKI State: Data unavailable

DNSSEC Valid: Yes

CAAA Records: No

---

## Recommended Actions

Based on the risk profile, the following defensive measures are recommended:

1. Monitor: Track geolocation inconsistencies for potential infrastructure changes

2. Blacklist Review: Investigate 8 DNSBL listings, particularly those with high severity

3. Neighbor Awareness: Monitor 151.158.235.67 and 151.158.235.86 for correlated activity

4. Contact Abuse: Consider outreach to abuse email (wapjatt@gmail.com) if malicious activity is observed

5. Service Verification: Verify firewall configuration if this IP is expected to host services

---

Assessment: The IP presents low immediate threat but warrants monitoring due to geolocation discrepancies and historical blacklist activity. No active attack indicators detected at time of analysis.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ฎ๐Ÿ‡ณ India
RegionPunjab
CityAbohar
Timezoneโ€”
Latitude30.14
Longitude74.20

๐Ÿข Ownership & Registration

OrganizationIRT-RAJANCOMPUTERS-IN
ASNAS137655
Network NameRAJANCOMPUTERS-IN
CIDR Block151.158.235.0/24
RIRRIPE
CountryIN
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTR RecordNo PTR
Forward ConfirmedNo โ€” PTR hostname does not resolve back to this IP (weak signal)

๐Ÿ” DNS Hygiene

Hygiene Score20% (Poor)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECValid
CAANot configured

โ˜๏ธ Network Classification

InfrastructureUnknown
Service PurposeFirewalled / No Services
Network TierUnknown โ€” Insufficient routing data to classify
No specific classification

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverโ€”
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
No certificate
Issued by โ€”
N/A
SANsNone
Valid Fromโ€”
Valid Untilโ€”

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
0%
00
routing
25%
11
services
25%
11
ownership
0%
00
reputation
0%
00
geolocation
0%
00
Overall8%22
Coverage: 2/6 dimensions ยท Data sufficiency: partial
Data CoherenceMostly Consistent (80%) โ€” 1 contradiction(s)
AttributionLow (35%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid
โš  Geo sources disagree on country: US, IN

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-07-21 12:54:49 UTC
Last Seen2026-07-29 08:33:53 UTC
Profile Built2026-07-29 08:45:51 UTC
Data FreshnessLive
Signal Types20
Total Observations20
๐Ÿ” 20 signal types ยท 20 observations collected
This report is generated from 20+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.