# IPDEBRIEF INTELLIGENCE BRIEFING
Target IP: 38.100.222.121/32
Date: 2026-07-29
Classification: LOW RISK / PASSIVE INFRASTRUCTURE
## Executive Summary
The IP address 38.100.222.121 is associated with Z COM NETWORKS (AS152605) in Lahore, Pakistan. The address exhibits a risk score of 0 with no active threat indicators. The IP appears to be a passive network infrastructure address with no open services or active scanning behavior observed.
## Risk Assessment
| Metric | Value | Assessment |
|---|---|---|
| Risk Score | 0 | LOW RISK |
| Provider Score | 0 | MINIMAL |
| Authority Score | 0 | MINIMAL |
| Blacklist Count | 0 | CLEAN |
| Tor Exit Node | No | N/A |
| Known Attacker | No | N/A |
## Network Ownership & Geolocation
- Organization: Z COM NETWORKS
- ASN: 152605
- CIDR Block: 38.100.220.0/22
- Country: Pakistan (PK)
- Region: Punjab
- City: Lahore
- Registration: ARIN
## Technical Observations
- Network Role: Firewalled / No Services
- Open Ports: None detected
- DNS Status: Forward resolution inactive; no PTR records
- Email Auth: No SPF or DMARC records
- TLS/HTTP: No certificates or web content detected
- Route Stability: Unstable routing (route changes detected)
- DNSSEC: Valid
- Operator Score: 0.1304 (Minimal)
## Threat Indicators
- Abuse Confidence Score: Not applicable
- Threat Feeds: No matches
- Known Campaigns: None
- Spam Source: False
- Proxy/VPN/CDN: Negative across all categories
## Historical Signal Analysis
13 observations recorded since initial detection. No persistent malicious behavior observed:
- Ownership changes: 0
- Threat persistence days: 0
- Threat observation count: 0
- Is persistently malicious: False
Signal types observed include network classification, port scanning activity, geolocation data, and operator scoring. No escalation in risk profile detected over the observation period.
## Neighborhood Analysis (38.100.222.0/24)
- Total Siblings: 5
- Abuse Density: 0
- Risk Distribution: 4 low-risk, 0 medium/high-risk
- Notable Siblings:
- 38.100.222.9 (Risk: 25, Authority: 50)
- 38.100.222.211 (Risk: 25, Authority: 50)
- 38.100.222.217 (Risk: 25, Authority: 50)
- 38.100.222.243 (Risk: 25, Authority: 50)
## Network Relationships
- Same Network: Z-COM-CGNT-NET-2 (3 occurrences)
- No additional organizational or hostname relationships detected.
## Recommended Actions
No immediate security actions recommended. The IP demonstrates passive infrastructure characteristics with no active threat signals. Standard logging and monitoring are sufficient. No firewall blocking or WAF rules required at this time.
## SOC Analyst Notes
This IP belongs to a low-abuse-density subnet with minimal risk indicators. The absence of open services, combined with zero risk scores and no blacklist presence, suggests this is legitimate infrastructure or a decommissioned address. Continue monitoring but no escalation required.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Z COM NETWORKS |
| ASN | AS152605 |
| Network Name | Z-COM-CGNT-NET-2 |
| CIDR Block | 38.100.220.0/22 |
| RIR | ARIN |
| Country | Pakistan |
| Abuse Contact | โ |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 25% | 1 | 1 |
| reputation | 0% | 0 | 0 |
| geolocation | 0% | 0 | 0 |
| Overall | 16% | 4 | 4 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-07-24 02:13:57 UTC |
| Last Seen | 2026-07-29 21:29:44 UTC |
| Profile Built | 2026-07-29 21:40:07 UTC |
| Data Freshness | Live |
| Signal Types | 15 |
| Total Observations | 15 |
Full dossier details are available via our API.