# IP Intelligence Briefing: 170.247.215.231/32
## Executive Summary
IP 170.247.215.231 presents as a low-risk residential broadband address with no active threat indicators. The address is associated with CIX BROADBAND infrastructure in the United States and exhibits stable network characteristics with no service exposure.
## Risk Assessment
| Metric | Value |
|---|---|
| Risk Score | 25 (Low Risk) |
| Abuse Confidence | Not applicable |
| Blacklist Count | 0 |
| Stability Score | 0 |
| Provider Authority | 0 |
## Ownership & Geolocation
- Organization: TELECOMUNICACIONES ROCARLI C.A (CIX BROADBAND)
- ASN: 265641
- CIDR Block: 170.247.215.0/24
- Location: Newark, New Jersey, United States (US-NJ)
- Timezone: America/New_York
- RIR: ARIN
## Network Classification
- Role: Firewalled / No Services
- Infrastructure Type: Residential broadband
- Cloud/CDN/VPN Status: None detected
- Mobile/Carrier: None detected
- DNSSEC: Valid
- Route Stability: False
## DNS & Service Analysis
- PTR Hostname: dyn-170-247-215-231-mun.cixve.net.215.247.170.in-addr.arpa
- Forward Resolution: Confirmed (1 hostname)
- Open Ports: None detected
- HTTP/HTTPS: No services exposed
- TLS Certificates: None
- Email Authentication: No SPF/DMARC records
## Threat Indicators
- Known Attacker: No
- Tor Exit Node: No
- Spam Source: No
- Active Campaigns: None
- Threat Feeds: None
- Abuse Confidence: Not applicable
## Neighborhood Context (170.247.215.0/24)
- Subnet Classification: Mixed
- Abuse Density: 0.3333 (moderate)
- Total Siblings: 6
- Active Siblings: 3
- Threat Siblings: 2
- Risk Distribution: 4 low-risk, 0 medium, 0 high
Neighbor IPs with notable scores:
- 170.247.215.52: Risk 25, Authority 50
- 170.247.215.111: Risk 25, Authority 50
- 170.247.215.135: Risk 25, Authority 50
- 170.247.215.166: Risk 25, Authority 50
## Observation History
19 total observations recorded. Recent signals indicate:
- Subnet abuse density at 0.3333 as of 2026-07-29
- Ownership data consistently attributed to CIX BROADBAND
- No ownership changes observed
- Threat persistence days: 0
## Recommendations
- No immediate firewall actions recommended based on current risk profile
- Monitor subnet abuse density trends for emerging threat activity
- Standard residential broadband traffic classification applies
- No blocking required; allow-listing unnecessary
## Conclusion
This IP address represents benign residential broadband infrastructure with no current malicious activity. The moderate neighborhood abuse density reflects typical residential ISP characteristics rather than coordinated threat activity. SOC analysts may classify this as low-priority traffic requiring standard residential broadband handling procedures.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | TELECOMUNICACIONES ROCARLI C.A (CIX BROADBAND) |
| ASN | AS265641 |
| Network Name | 170.247.215.0 - 170.247.215.255 |
| CIDR Block | 170.247.215.0/24 |
| RIR | ARIN |
| Country | VE |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | dyn-170-247-215-231-mun.cixve.net.215.247.170.in-addr.arpa |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | dyn-170-247-215-231-mun.cixve.net.215.247.170.in-addr.arpa |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown β Insufficient routing data to classify |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 35% | 2 | 2 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 0% | 0 | 0 |
| reputation | 25% | 1 | 1 |
| geolocation | 0% | 0 | 0 |
| Overall | 18% | 5 | 5 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-07-22 19:32:29 UTC |
| Last Seen | 2026-07-29 14:49:03 UTC |
| Profile Built | 2026-07-29 15:00:42 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 20 |
Full dossier details are available via our API.