THREAT INTELLIGENCE BRIEFING
Target IP: 176.222.61.170/32
EXECUTIVE SUMMARY
Intellectually classified as low-risk, the target IP 176.222.61.170 presents minimal threat indicators. The address is geolocated to Sulaymaniyah Governorate, Iraq, and belongs to RIPE Registry allocation 176.222.60.0/22 under organization mnt-iq-iqonline-1 (ASN 48492). No active malicious signals were observed during the intelligence gathering cycle.
RISK PROFILE
- Overall Risk Score: 25 (Low Risk)
- Reputation Classification: Low Risk
- Abuse Confidence: Not applicable
- Threat Indicators: None detected
- Blacklist Status: Clean (0 blacklist entries)
- DNSBL Presence: Listed on 1 of 8 evaluated lists
- Network Role: Firewalled / No Services Detected
NETWORK CHARACTERISTICS
- ASN: 48492
- Organization: mnt-iq-iqonline-1
- Network: IQ-LARSA-20190828
- CIDR Block: 176.222.60.0/22
- RIR: RIPE
- Abuse Contact: fttx.team@iq.email
- Geolocation: Sulaymaniyah Governorate, Iraq (35.56°N, 45.43°E)
- IPv6: Not detected
SERVICE ANALYSIS
- Open Ports: None detected
- TLS Certificates: None detected
- HTTP Services: None detected
- Server Banners: None detected
- DNS Records: None detected (no forward resolution)
- Email Authentication: SPF/DMARC not configured
HISTORY OF OBSERVATIONS
The IP has generated 11 observation signals in the monitoring period. The most recent assessment dated 2026-07-25 classified the subnet as "clean" with zero abuse density. Ownership stability shows no changes during the observation window. Threat persistence metrics indicate 0 threat observation days, and the IP is not classified as persistently malicious.
RELATIONSHIP ANALYSIS
The IP maintains a single relationship entry:
- Type: Same Network
- Target: IQ-LARSA-20190828 (network block)
NEIGHBORHOOD CONTEXT
Analysis of the /24 subnet (176.222.61.170/24) revealed:
- Subnet Abuse Density: 0%
- Risk Distribution: 2 low-risk neighbors, 0 medium-risk, 0 high-risk
- Total Siblings: 2
- Active Siblings: 1
- Threat Siblings: 0
Identified neighboring IPs:
- 176.222.61.124: Risk Score 0, Authority Score 50 (Low Risk)
- 176.222.61.134: Risk Score 25, Authority Score 50 (Low Risk)
THREAT INTELLIGENCE NARRATIVE
The IP 176.222.61.170 demonstrates a benign operational profile consistent with legitimate infrastructure. The address is part of an Iraqi telecommunications network allocation (IQ-LARSA-20190828) with no evidence of abuse or malicious activity. Network scanning confirmed no open ports or active services, indicating either a passive IP or properly secured endpoint. The surrounding /24 subnet shows an abuse density of zero and maintains a low-risk classification across all neighbor IPs.
SOC ACTIONS RECOMMENDATION
No immediate blocking or mitigation actions required. The IP presents no actionable threat indicators. Routine monitoring may continue, but no firewall rules, WAF policies, or alerting thresholds are recommended beyond standard baseline monitoring. The abuse contact fttx.team@iq.email is available for reporting purposes if future incidents arise.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | mnt-iq-iqonline-1 |
| ASN | AS48492 |
| Network Name | IQ-LARSA-20190828 |
| CIDR Block | 176.222.60.0/22 |
| RIR | RIPE |
| Country | IQ |
| Abuse Contact | Available via RDAP |
🌐 DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No — PTR hostname does not resolve back to this IP (weak signal) |
🔐 DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
☁️ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown — Insufficient routing data to classify |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | — |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | None |
| Valid From | — |
| Valid Until | — |
🛡️ Public Network Snapshot
| Origin ASN | AS48492 |
| Network Prefix | 176.222.61.0/24 |
| Route mapping | Found |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 28% | 2 | 3 |
| routing | 8% | 1 | 1 |
| services | 8% | 1 | 1 |
| ownership | 17% | 2 | 3 |
| reputation | 8% | 1 | 2 |
| geolocation | 8% | 1 | 1 |
| Overall | 13% | 8 | 11 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-07-09 13:31:39 UTC |
| Last Seen | 2026-08-26 23:20:07 UTC |
| Profile Built | 2026-08-29 07:05:41 UTC |
| Data Freshness | Live |
| Signal Types | 15 |
| Total Observations | 16 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 176.222.61.170
Who owns the IP address 176.222.61.170?
176.222.61.170 is registered to mnt-iq-iqonline-1. The address falls within the 176.222.60.0/22 network block. Registration is held at RIPE.
Where is 176.222.61.170 located?
Geolocation data places 176.222.61.170 in Sulaymaniyah, Sulaymaniyah Governorate, IQ. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 176.222.61.170 malicious or safe?
176.222.61.170 currently carries a low risk assessment, meaning no significant threat indicators have been observed. This assessment is generated from continuously collected signals and can change over time.