IPDebrief

161.115.239.71

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP INTELLIGENCE BRIEFING: 161.115.239.71/32

Classification: LOW RISK / RESIDENTIAL ENDPOINT

Analysis Date: 2026-06-05

Primary Source: IPDebrief Intelligence Platform

---

## EXECUTIVE SUMMARY

IP 161.115.239.71 is classified as a low-risk residential endpoint hosted by Flux Telecom, LLC (ASN 6079). The IP demonstrates minimal threat indicators, no known malicious activity, and belongs to a residential service provider infrastructure. While the broader subnet shows mixed classification characteristics, this specific IP presents no immediate threat to network security operations.

---

## OWNERSHIP & INFRASTRUCTURE

AttributeValue
ASN6079 (Flux Telecom, LLC)
RegistrationARIN
LocationLos Angeles, California, CA
Network RoleResidential Endpoint
ClassificationResidential (not CDN, Cloud, VPN, or Proxy)
BGP Prefix161.115.232.0/21
Route StabilityStable

The IP operates as a standard residential endpoint with no evidence of infrastructure abuse. RPKI validation and routing stability indicate legitimate BGP operations.

---

## THREAT INDICATORS

Current Threat Profile:

No active threat indicators detected. The IP does not match known campaigns or correlate with attacker infrastructure patterns.

---

## NETWORK NEIGHBORHOOD ANALYSIS

Subnet: 161.115.239.0/24

MetricValue
Total Siblings16 IPs
Abuse Density0.5 (mixed classification)
Threat Siblings8 out of 16
Risk DistributionLow risk (all 16 neighbors)
Inherited Risk20

Neighborhood Note: The /24 subnet exhibits mixed classification with 50% threat sibling ratio. However, this specific IP (161.115.239.71) maintains low risk characteristics independent of neighborhood context.

---

## OBSERVATION HISTORY

Temporal Analysis: 18 historical observations tracked since 2026-06-05

The IP demonstrates consistent benign behavior with no degradation or escalation in threat profile over the observation period.

---

## RECOMMENDED ACTIONS

Firewall/Security Recommendations:

SOC Analyst Guidance:

---

## INDICATORS FOR INTEGRATION

Indicator TypeValueConfidence
IP Address161.115.239.71N/A (Low Risk)
ASN6079N/A
OrganizationFlux Telecom, LLCN/A

---

END OF BRIEFING

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡จ๐Ÿ‡ฆ Canada
RegionCalifornia
CityLos Angeles
Timezoneโ€”
Latitude33.96
Longitude-118.39

๐Ÿข Ownership & Registration

OrganizationFlux Telecom, LLC
ASNAS6079
Network Nameโ€”
CIDR Block161.115.232.0/21
RIRARIN
Countryโ€”
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTR RecordNo PTR
Forward ConfirmedNo โ€” PTR hostname does not resolve back to this IP (weak signal)

๐Ÿ” DNS Hygiene

Hygiene Score20% (Poor)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECValid
CAANot configured

โ˜๏ธ Network Classification

InfrastructureResidential
Service PurposeResidential Endpoint
Network TierEnd-User โ€” Residential ISP endpoint
Residential

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverโ€”
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
No certificate
Issued by โ€”
N/A
SANsNone
Valid Fromโ€”
Valid Untilโ€”

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
27%
23
routing
24%
23
services
15%
22
ownership
24%
34
reputation
13%
12
geolocation
19%
22
Overall20%1216
Coverage: 6/6 dimensions ยท Data sufficiency: sufficient
Data CoherenceMostly Consistent (80%) โ€” 1 contradiction(s)
AttributionLow (35%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid
โš  Geo sources disagree on country: US, CA

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-05-10 04:11:33 UTC
Last Seen2026-06-25 22:26:34 UTC
Profile Built2026-06-25 22:43:29 UTC
Data FreshnessLive
Signal Types20
Total Observations22
๐Ÿ” 20 signal types ยท 22 observations collected
This report is generated from 20+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.