Intellect analyst reviewed IP address 172.58.3.241/32. The asset was identified as a T-Mobile USA, Inc. endpoint within the 172.32.0.0/11 block. Geolocation data placed the traffic origin in Atlanta, Georgia. The network role was classified as a mobile carrier with LTE/5G technology. No services were observed running on open ports; the service purpose was recorded as firewalled.
Threat assessment returned a Low Risk designation with a risk score of 25. While no specific known attacker signatures or spam source indicators were present, the threat actor classification included a "suspicious" tag. A single DNS blacklist listing was detected out of a total of eight potential lists. The surrounding neighborhood was classified as clean with an abuse density of 0. Behavioral analysis showed zero incidents and the host was not flagged as an active attacker.
Current recommendations advised a monitoring action with low severity. The profile confidence was rated as very low due to data sufficiency constraints. The data remained consistent with no observed contradictions.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | T-Mobile USA, Inc. |
| ASN | AS21928 |
| Network Name | TMO9 |
| CIDR Block | 172.32.0.0/11 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 0% (None) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Not signed |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Mobile |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown β Insufficient routing data to classify |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 0% | 0 | 0 |
| reputation | 0% | 0 | 0 |
| geolocation | 0% | 0 | 0 |
| Overall | 12% | 3 | 3 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-09-11 22:34:04 UTC |
| Last Seen | 2026-09-11 22:34:04 UTC |
| Profile Built | 2026-09-11 22:45:42 UTC |
| Data Freshness | Live |
| Signal Types | 17 |
| Total Observations | 17 |
Full dossier details are available via our API.