## IP Intelligence Briefing: 174.56.226.213/32
Executive Summary: IP address 174.56.226.213 is classified as Low Risk with a risk score of 0. No active threat indicators, blacklist entries, or malicious campaigns detected. The IP demonstrates stable infrastructure characteristics with no observed service exposure.
---
**Infrastructure Profile**
- Risk Assessment: Low Risk (Score: 0/100)
- Geolocation: New York, US (US-NY)
- ASN/Ownership: Not resolved in database; geolocation sources indicate US infrastructure
- Network Classification: Firewalled / No Services Detected
- Control Plane Status: Route stability flags show false; operator score: 0
**Threat Indicators**
- Known Attacker Status: No
- Tor Exit Node: No
- Spam Source: No
- Blacklist Count: 0
- Active Threat Campaigns: None detected
- Reputation Sources: No associated reputation feeds flagged
**Service Exposure**
- Open Ports: None detected
- DNS Resolution: No PTR records; forward resolution: false
- TLS/HTTP Services: No certificates or web services identified
- Email Auth: No SPF/DMARC records associated
**Historical Observations**
Seven observations recorded between 2026-07-29:
- ASN Detection: AS7922 (Comcast) detected in Georgia, US
- Scanning Activity: Port scans observed (specific ports omitted from report)
- Geolocation: Consistent US-based location (Augusta, GA and New York, NY)
- Classification: Minimal risk classification assigned
**Network Neighborhood**
- Subnet: 174.56.226.213/24
- Abuse Density: 0.0
- Risk Distribution: No high/medium/medium risk neighbors identified
- Related Entities: No relationship graph connections detected
**Behavioral Indicators**
- Honeypot Hits: 0
- Enumeration Strikes: 0
- WAF Violations: 0
- Total Incidents: 0
- Active Attacker Status: Inactive
**Recommended Actions**
No security actions recommended. The IP presents no immediate threat to organizational infrastructure. Routine monitoring may be maintained at standard baseline levels.
---
Analyst Notes: The IP shows characteristics of residential or enterprise Comcast infrastructure with firewalled service exposure. Historical scans detected but no successful compromise attempts. No correlation with known threat actors or campaigns.
Classification: INFORMATIONAL - LOW RISK
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Comcast Cable Communications, Inc. |
| ASN | AS7922 |
| Network Name | AUGUSTA-CPE-9 |
| CIDR Block | 174.56.192.0/18 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | β |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Residential |
| Service Purpose | Residential Endpoint |
| Network Tier | End-User β Residential ISP endpoint |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 0% | 0 | 0 |
| routing | 0% | 0 | 0 |
| services | 0% | 0 | 0 |
| ownership | 0% | 0 | 0 |
| reputation | 0% | 0 | 0 |
| geolocation | 25% | 1 | 1 |
| Overall | 4% | 1 | 1 |
| Data Coherence | Mostly Consistent (80%) β 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-07-21 06:46:54 UTC |
| Last Seen | 2026-07-29 07:11:28 UTC |
| Profile Built | 2026-07-29 07:17:12 UTC |
| Data Freshness | Live |
| Signal Types | 19 |
| Total Observations | 19 |
Full dossier details are available via our API.