IP Intelligence Briefing: 182.95.230.74
Date: 2026-06-02
---
**1. Core Profile**
- Risk Score: 80 (High Risk)
- Ownership: Owned by IRT-BHARTI-IN (Bharti Airtel Ltd., India).
- Geolocation: India (IN), mobile network (LTE/5G).
- Network Role: Mobile IP, no public services detected.
- Threat Indicators: No direct malware, phishing, or spam signals.
---
**2. Observation History**
- Recent Activity:
- Subnet abuse density: 0.3333 (mixed classification).
- Geo-validation confirmed plausible location (India), with average RTT of 287ms.
- No persistent malicious activity detected.
---
**3. Network Relationships**
- Linked Entities:
- Subnet: 182.95.230.0/24 (abuse density: 33.33%).
- Same network operator: BHARTI-IN (Bharti Airtel).
- Neighbors:
- 5 IPs in the same /24 subnet, all with high risk scores (80).
- 2 threat siblings detected in the subnet.
---
**4. Threat Context**
- Subnet Risk: High abuse density (1/3 of neighbors flagged).
- Mobile Carrier: Airtel (India), LTE/5G, MCC 404, MNC 10.
- No Direct Threats: No DNS, TLS, or service-based indicators of compromise.
---
**5. Recommendations**
- Monitor Subnet: Investigate the 182.95.230.0/24 subnet for coordinated activity.
- Block High-Risk Neighbors: Consider blocking the 5 high-risk IPs in the subnet.
- Verify Ownership: Confirm Bharti Airtelโs network segmentation to rule out false positives.
- Correlate with Threat Feeds: Cross-reference with known malicious networks or campaigns.
---
Summary: This IP is part of a high-risk mobile subnet under Bharti Airtel. While no direct malicious activity is detected, the subnetโs abuse density and high-risk neighbors warrant further investigation. SOC teams should prioritize monitoring and segmentation of this network.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | IRT-BHARTI-IN |
| ASN | AS9498 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | APNIC |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Mobile |
| Service Purpose | Single-Service Host |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 22 | ssh | tcp | โ |
| Closed Ports | 25, 80, 443, 3389, 8080, 8443 (1 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 36% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 26% | 2 | 3 |
| ownership | 20% | 2 | 3 |
| reputation | 27% | 1 | 3 |
| geolocation | 30% | 2 | 3 |
| Overall | 25% | 10 | 17 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-07 23:03:59 UTC |
| Last Seen | 2026-06-26 08:23:26 UTC |
| Profile Built | 2026-06-23 00:10:55 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 25 |
Full dossier details are available via our API.