## IP Intelligence Briefing: 223.185.17.54/32
Classification: Low Risk | Status: Active Monitoring | Region: India (APNIC)
---
Executive Summary
IP address 223.185.17.54 is a mobile-originated IP assigned to Bharti Airtel (ASN 24560, MOHALI-UN network block) with a risk score of 0. The address shows no malicious indicators, no service exposure, and no blacklist presence. The IP is classified as residential mobile (LTE/5G) with no open ports or active services.
---
Ownership & Network Context
- Organization: IRT-BHARTI-MO-IN (Bharti Airtel Limited)
- Network Block: 223.185.16.0/22
- Geolocation: Panchkula, India (HR region)
- ASN: 24560
- Mobile Carrier: Airtel (MCC: 404, MNC: 10)
- Connection Type: Mobile/LTE-5G
---
Threat Indicators
- Risk Score: 0 (Low Risk)
- Abuse Confidence Score: Not applicable
- Blacklist Count: 0
- Known Attacker: No
- Tor Exit Node: No
- Spam Source: No
- Known Campaigns: None identified
- Threat Feeds: No matches
---
Network Role & Services
- Infrastructure Type: Mobile Network
- Service Purpose: Firewalled / No Services
- Open Ports: None detected
- TLS Certificate: Not available
- HTTP Services: Not detected
- DNS Records: No PTR hostnames, no reverse resolution
---
Neighborhood Analysis (223.185.17.0/24)
- Abuse Density: 0
- Subnet Classification: Low Risk
- Total Siblings: 1
- Active Siblings: 1 (223.185.17.207, risk score 25)
- Threat Siblings: 0
The sibling IP 223.185.17.207 shows a moderate risk score (25), but remains within acceptable parameters for mobile network traffic.
---
Historical Observations
- Total Observations: 15 signals
- Recent Activity: Consistent low-risk classification across all recent probes
- Threat Persistence: 0 days
- Ownership Changes: 0
- Service Discovery: No port scans yielding open services
- DNS Behavior: No forward or reverse resolution activity
The IP has demonstrated stable, non-malicious behavior with no temporal degradation in risk posture.
---
Relationships
- Same Network: MOHALI-UN (223.185.16.0/22)
- Related Entities: 2 network-level relationships identified
---
Recommended Actions
Based on the current risk profile (risk score: 0), no specific blocking or filtering rules are recommended. The IP is classified as legitimate mobile infrastructure traffic.
Standard SOC Guidance:
- Monitor for service changes or port openings
- No immediate firewall action required
- Continue standard logging for mobile-originated traffic
- No threat intelligence correlation required at this time
---
Conclusion
IP 223.185.17.54 is a benign mobile-originated address from Bharti Airtel's Indian network. No threat indicators, blacklists, or malicious activity have been detected. The address shows consistent, low-risk behavior and should be treated as legitimate residential mobile traffic. No defensive actions are required beyond standard network monitoring.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | IRT-BHARTI-MO-IN |
| ASN | AS24560 |
| Network Name | MOHALI-UN |
| CIDR Block | 223.185.16.0/22 |
| RIR | APNIC |
| Country | IN |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Mobile |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 46% | 2 | 3 |
| routing | 22% | 1 | 1 |
| services | 32% | 2 | 2 |
| ownership | 47% | 2 | 3 |
| reputation | 23% | 1 | 2 |
| geolocation | 22% | 1 | 1 |
| Overall | 32% | 9 | 12 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-07-21 19:03:23 UTC |
| Last Seen | 2026-07-29 10:36:56 UTC |
| Profile Built | 2026-07-29 16:40:24 UTC |
| Data Freshness | Live |
| Signal Types | 18 |
| Total Observations | 20 |
Full dossier details are available via our API.