## IP Intelligence Briefing: 174.175.21.121/32
Classification: Low Risk
Risk Score: 25/100
Date: July 2026
Executive Summary
IP address 174.175.21.121 is a Comcast residential infrastructure endpoint (AS7922) with a low-risk profile. The address is firewalled with no open services detected. Recent port scanning activity was observed, and the IP appears on one DNS blacklist out of eight total lists. No active malicious campaigns or known attacker associations were identified.
Ownership and Geolocation
- Organization: Comcast Cable Communications, LLC
- ASN: AS7922
- Location: Wilkes-Barre, Pennsylvania, United States
- DNS Hostname: c-174-175-21-121.hsd1.pa.comcast.net
- Geolocation Confidence: 35% (accuracy radius: 2,500 km)
Network Behavior and Services
- Network Role: Firewalled / No Services
- Open Ports: None detected
- TLS/Certificate: Not applicable
- HTTP Title: Not available
- Control Plane: BGP prefix 174.160.0.0/11, origin ASN 7922
- DNSBL Status: Listed on 1 of 8 threat feeds
Threat Indicators
- Known Attacker: No
- Tor Exit Node: No
- Spam Source: No
- Abuse Confidence Score: Not determined
- Campaign Likelihood: None
- Threat Persistence Days: 0
- Total Incidents: 0
Observed Activity
Recent signal observations indicate:
- Port scanning activity detected (July 29, 2026)
- Alienvault OTX threat indicator with confidence 0.75
- Operator score classified as "Basic" (0.2609)
- 16 total signal observations recorded
Subnet Analysis (174.175.21.0/24)
- Neighbor Count: 1 (174.175.21.195)
- Abuse Density: 0
- Neighbor Risk Score: 0
- Overall Risk Distribution: 1 low-risk address
Recommended Actions
No specific firewall rules or blocking recommendations generated based on current risk profile. The low risk score (25) and absence of malicious indicators suggest continued monitoring is sufficient.
SOC Analyst Notes
This IP represents a Comcast residential endpoint with no evidence of active malicious activity. The port scanning signals are consistent with routine network reconnaissance or automated scanning. The single DNSBL listing requires context but does not indicate active abuse. No correlation to known threat campaigns or associated malicious infrastructure.
Recommended Handling: Monitor for changes in risk profile. No immediate blocking action warranted based on current data.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Comcast Cable Communications, LLC |
| ASN | AS7922 |
| Network Name | CPA-15 |
| CIDR Block | 174.175.0.0/16 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | β |
π DNS Intelligence
| PTR | c-174-175-21-121.hsd1.pa.comcast.net |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | c-174-175-21-121.hsd1.pa.comcast.net |
π DNS Hygiene
| Hygiene Score | 80% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Residential |
| Service Purpose | Residential Endpoint |
| Network Tier | End-User β Residential ISP endpoint |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 0% | 0 | 0 |
| reputation | 0% | 0 | 0 |
| geolocation | 25% | 1 | 1 |
| Overall | 16% | 4 | 4 |
| Data Coherence | Mostly Consistent (80%) β 1 contradiction(s) |
| Attribution | Moderate (55%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-07-21 06:46:54 UTC |
| Last Seen | 2026-07-29 07:09:56 UTC |
| Profile Built | 2026-07-29 07:18:38 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 22 |
Full dossier details are available via our API.