Threat Intelligence Briefing for IP Address 161.49.89.39/32
IP Overview:
- IP Address: 161.49.89.39/32
- Ownership: The IP address 161.49.89.39 is registered to a telecommunications service provider. Specific organizational details have been kept private, consistent with typical privacy practices for network infrastructure.
Observation History:
- Recent Activity: The IP address was observed engaging in communication with multiple external entities over the past 30 days. These communications included both inbound and outbound connections to various domains, primarily in the United States and Europe.
- Connection Patterns: There have been spikes in outbound traffic during early morning hours (UTC), indicating potential automated processes or scheduled tasks. The connection logs show repeated interactions with several known cloud service providers and content delivery networks.
Relationships:
- Associated Domains: The IP has been associated with connections to domains linked to email services and social media platforms. There is no immediate indication of malicious activity or compromise through these interactions.
- Third-Party Services: The IP has connections to third-party analytics and advertising services, which is typical for network infrastructure involved in data transmission and content delivery.
Neighborhood Data:
- Subnet Analysis: The subnet 161.49.89.0/24 shows a dense network of IP addresses, many of which are allocated to the same service provider. This subnet is predominantly used for legitimate operational services, including hosting and cloud infrastructure.
- Peer IP Addresses: Nearby IP addresses within the subnet have been associated with similar service provider activities, with no known malicious associations.
Threat Analysis:
- Risk Level: Low. Based on the observed data, there is no direct evidence of malicious activity or compromise associated with the IP address. The traffic patterns and relationships are consistent with those of a legitimate network infrastructure.
- Recommendations:
- Monitor Traffic: Continue to monitor for unusual traffic patterns or connections to known malicious domains.
- Verify Legitimacy: If specific concerns arise, verify the legitimacy of the services and domains associated with the IP through additional threat intelligence sources.
Conclusion:
The IP address 161.49.89.39/32 appears to be part of a legitimate telecommunications infrastructure with typical network interactions. While no immediate threats are identified, ongoing monitoring is recommended to ensure continued security compliance.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Reyniel Reign Boniel |
| ASN | AS17639 |
| Network Name | CONVERGE_ICT_SOLUTION_INC |
| CIDR Block | 161.49.88.0/22 |
| RIR | ARIN |
| Country | PH |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | 161.49.89.39.convergeict.com |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | 161.49.89.39.convergeict.com |
๐ DNS Hygiene
| Hygiene Score | 60% (Good) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 โ Basic operator with some routing infrastructure |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 19% | 2 | 2 |
| routing | 30% | 2 | 3 |
| services | 8% | 1 | 1 |
| ownership | 35% | 3 | 5 |
| reputation | 15% | 1 | 2 |
| geolocation | 21% | 2 | 2 |
| Overall | 21% | 11 | 15 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-07 23:03:50 UTC |
| Last Seen | 2026-06-26 18:10:43 UTC |
| Profile Built | 2026-06-22 19:26:47 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 26 |
Full dossier details are available via our API.