IP Intelligence Briefing: 188.113.248.170
Date: June 2, 2026
---
**1. Core Profile**
- Risk Score: 25 (Low Risk)
- Ownership:
- ASN: 49273 (COSCOM-AS)
- Organization: Artur Galiullin (RIPE_REGISTRY)
- Geolocation: Boston, MA, US (RIR: RIPE)
- Threat Indicators:
- No malicious activity detected.
- No blacklists, spam, or known attacker associations.
- Network Role:
- Firewalled host with no open ports or services.
- Classified as "clean" with no infrastructure-type flags.
---
**2. Observation History**
- DNSBL Listings:
- Subnet (188.113.248.0/24) listed in 8 DNSBLs (max severity: High).
- Individual IP not directly listed, but subnet abuse density is 0%.
- Geolocation Validation:
- ICMP blocked; geolocation inferred as Boston, MA (41.2615°N, 69.2177°W).
- Distance to probe: 4,759 km (approx. 2,957 miles).
- BGP Analysis:
- Prefix: 188.113.248.0/24 (COSCOM-AS, UZ).
- Route stability: Unstable (route changes in last 30 days).
---
**3. Relationships**
- Network Affiliation:
- Linked to NET-COSCOM-5 (same ASN, RIPE).
- No connections to known malicious networks, CDN, or Tor.
- Email/Domain:
- No SPF/DKIM records or domain associations.
---
**4. Neighborhood Analysis**
- Subnet: 188.113.248.0/24
- Neighbor Count: 0 (no active sibling IPs reported).
- Abuse Density: 0% (clean subnet).
---
**5. Recommendations**
- Monitor Subnet: Despite low risk, the subnetβs DNSBL listing warrants periodic rechecks.
- Geolocation Caution: ICMP validation is blocked; verify location via alternative methods.
- Network Segmentation: Isolate the host due to firewalled status and lack of service exposure.
- Threat Hunting: Correlate with COSCOM-AS (ASN 49273) for potential infrastructure ties.
Conclusion: 188.113.248.170 is a low-risk, privately owned host with no direct malicious indicators. However, its subnetβs DNSBL history and incomplete geolocation validation suggest further monitoring is prudent.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Artur Galiullin |
| ASN | AS49273 |
| Network Name | β |
| CIDR Block | β |
| RIR | RIPE |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown β Insufficient routing data to classify |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 31% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 15% | 2 | 2 |
| ownership | 26% | 2 | 3 |
| reputation | 28% | 1 | 3 |
| geolocation | 19% | 2 | 2 |
| Overall | 22% | 10 | 15 |
| Data Coherence | Mostly Consistent (80%) β 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-07 23:04:02 UTC |
| Last Seen | 2026-06-23 01:50:09 UTC |
| Profile Built | 2026-06-23 01:52:01 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 22 |
Full dossier details are available via our API.