## IPDEBRIEF INTELLIGENCE BRIEFING
Target: 171.48.38.169/32
Date: 2026-07-30
Classification: Moderate Risk (Score: 50)
---
EXECUTIVE SUMMARY
IP 171.48.38.169 is a mobile device endpoint (Airtel/Bharti Airtel) located in Pune, Maharashtra, India. The IP belongs to ABTS-DSL-DEL network (ASN 24560) and presents moderate risk with no active threat indicators. No malicious activity or known campaign associations detected.
---
NETWORK OWNERSHIP & ATTRIBUTION
- ASN: 24560
- Organization: Network Administrator for ABTS DEL
- Network Name: ABTS-DSL-DEL
- CIDR Block: 171.48.32.0/19
- RIR: APNIC
- Mobile Carrier: Airtel (Bharti Airtel Ltd.) - LTE/5G technology
- Geolocation: India (IN), Maharashtra, Pune (±1500km accuracy)
---
THREAT INTELLIGENCE
- Risk Score: 50/100 (Moderate Risk)
- Abuse Confidence Score: Not calculated
- Blacklist Status: 0 entries
- Known Campaigns: None identified
- Threat Feeds: No indicators
- Not classified as: Tor exit node, known attacker, spam source, or proxy
- DNSBL Listings: 2 of 8 total lists (dnsblListedCount)
---
NETWORK CHARACTERISTICS
- Service Classification: Firewalled / No Services
- Open Ports: None detected
- TLS Certificates: None
- HTTP Services: None
- Infrastructure Type: Mobile endpoint (not cloud/CDN/VPN/hosting)
- Connection Type: Mobile carrier assignment (Airtel)
---
CONTROL PLANE ANALYSIS
- Origin ASN: 24560
- BGP Prefix: 171.48.32.0/21
- Route Stability: False (isRouteStable)
- RPKI State: Not validated
- IRR Consistency: Not assessed
- Route Changes (30d): 0
- MOAS Status: Not a Multiple Origin Autonomous System
- DNSSEC: Valid
- Operator Score: 0.1304 (Minimal)
---
NEIGHBORHOOD ANALYSIS
- Subnet: 171.48.38.169/24
- Abuse Density: 0 (clean)
- Classification: clean
- Inherited Risk: 0
- Total Siblings: 1
- Active Siblings: 0
- Threat Siblings: 0
- High/Medium Risk Neighbors: 0
---
RELATIONSHIP GRAPH
- Total Relationships: 5
- Relationship Types: Same Network (ABTS-DSL-DEL) - 5 instances
- Associated Entities: None beyond network infrastructure
---
OBSERVATION HISTORY
- Total Observations: 14
- Timeline: Recent observations from 2026-07-30
- Ownership Changes: 0
- Threat Persistence Days: 0
- Threat Observation Count: 0
- Persistently Malicious: False
- Signal Confidence Ranges: 0.30 - 0.85
Signals observed include geolocation inference (52% confidence, India), network classification (clean subnet classification), port scanning (no services detected), and ownership verification.
---
RECOMMENDED ACTIONS
Based on the moderate risk classification and mobile endpoint nature:
- Monitor for any emerging threat indicators
- No immediate blocking recommended
- Standard logging advised for mobile traffic patterns
- No specific firewall rules required at this time
---
ANALYST NOTES
This IP represents a legitimate mobile subscriber endpoint with no active malicious indicators. The moderate risk score (50) reflects general network classification rather than specific threat activity. The mobile carrier assignment (Airtel) and residential/mobile classification suggest consumer or enterprise mobile usage. No immediate defensive action required; maintain baseline monitoring.
Status: LOW PRIORITY / MONITOR
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Network Administrator for ABTS DEL |
| ASN | AS24560 |
| Network Name | ABTS-DSL-DEL |
| CIDR Block | 171.48.32.0/19 |
| RIR | APNIC |
| Country | IN |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Mobile |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 0% | 0 | 0 |
| reputation | 0% | 0 | 0 |
| geolocation | 0% | 0 | 0 |
| Overall | 12% | 3 | 3 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-07-28 22:21:56 UTC |
| Last Seen | 2026-07-30 18:52:40 UTC |
| Profile Built | 2026-07-30 19:05:28 UTC |
| Data Freshness | Live |
| Signal Types | 17 |
| Total Observations | 17 |
Full dossier details are available via our API.