# IP Intelligence Briefing: 39.36.89.12/32
## Executive Summary
IP 39.36.89.12 presents a low-risk profile (Risk Score: 15) with no active threat indicators. The address is associated with Pakistan Telecommunication Company Limited (PTCL) infrastructure in Faisalabad, Punjab, Pakistan. No malicious activity, open services, or neighborhood threats were detected.
## Ownership and Geolocation
| Attribute | Value |
|---|---|
| ASN | 17557 (PKTELECOM-AS-PK) |
| Organization | Munir Ahmed |
| Netname | PTCLBB-PK |
| Country | Pakistan (PK) |
| City | Faisalabad |
| Region | Punjab |
| RIR | APNIC |
| CIDR Block | 39.32.0.0/11 |
| BGP Prefix | 39.36.0.0/17 |
## Network Classification
- Infrastructure Type: Provider/ISP infrastructure
- Service Status: Firewalled / No Services Detected
- Network Role: Not CDN, VPN, Proxy, Tor, Hosting, or Mobile
- Open Ports: None detected
- HTTP/HTTPS: No TLS certificates, no HTTP titles, no server banners
## Threat Assessment
Current Indicators
- Risk Score: 15 (Low Risk)
- Abuse Confidence Score: Not applicable
- Blacklist Count: 1 out of 8 total DNSBL listings
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
- Known Campaigns: None identified
- Threat Persistence Days: 0
- Persistently Malicious: No
Control Plane Signals
- DNSSEC Valid: Yes
- Route Stable: No
- RPKI State: Not evaluated
- Route Changes (30d): 0
- MOAS: No
## Behavioral Analysis
| Metric | Value |
|---|---|
| Honeypot Hits | 0 |
| Enumeration Strikes | 0 |
| WAF Violations | 0 |
| Total Incidents | 0 |
| Auto-Banned | No |
## Historical Observations
Total Observations: 12 signals captured as of 2026-07-29
Recent Activity Timeline:
- 2026-07-29 22:48:07 UTC: Ownership signal (Confidence: 0.85) โ No ownership changes detected
- 2026-07-29 22:47:19 UTC: Geographic validation (Confidence: 0.50) โ Location plausible, ICMP blocked
- 2026-07-29 22:44:27 UTC: DNSBL listing signal (Confidence: 0.85) โ Listed on 1 of 8 lists, max severity: medium
- 2026-07-29 22:44:25 UTC: DNSSEC validation (Confidence: 0.90) โ Validated
- 2026-07-29 22:44:25 UTC: ASN resolution (Confidence: 0.85) โ ASN 17557, PKTELECOM-AS-PK
Temporal Stability: No ownership changes recorded. IP is not persistently malicious.
## Relationship Graph
Direct Relationships: 2
- Same Network: PTCLBB-PK (2 instances)
No additional relationships to hostnames, organizations, or certificates detected.
## Neighborhood Analysis
| Metric | Value |
|---|---|
| Subnet | 39.36.89.12/24 |
| Neighbor Count | 0 |
| Abuse Density | 0 |
| High-Risk Neighbors | 0 |
| Medium-Risk Neighbors | 0 |
| Low-Risk Neighbors | 0 |
| Active Threat Siblings | 0 |
No sibling IPs with threat activity detected in the local /24 subnet.
## Recommended Security Actions
Status: No specific firewall rules or mitigations recommended.
Risk Score: 15 (Low Risk) โ IP does not warrant blocking based on current profile.
---
## Analyst Notes
This IP address represents legitimate ISP infrastructure from Pakistan Telecommunication Company Limited. The single DNSBL listing is of medium severity and may be related to historical or transitional activity rather than active malicious use. No open services, threat indicators, or neighborhood threats were identified.
Monitoring Recommendation: Standard monitoring is appropriate. No immediate blocking or mitigation required.
Classification: Low Risk โ Passive infrastructure IP with no active threat signals.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Munir Ahmed |
| ASN | AS17557 |
| Network Name | PTCLBB-PK |
| CIDR Block | 39.32.0.0/11 |
| RIR | APNIC |
| Country | PK |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 0% | 0 | 0 |
| routing | 0% | 0 | 0 |
| services | 0% | 0 | 0 |
| ownership | 25% | 1 | 2 |
| reputation | 0% | 0 | 0 |
| geolocation | 25% | 1 | 1 |
| Overall | 8% | 2 | 3 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-07-24 08:18:47 UTC |
| Last Seen | 2026-07-29 22:43:18 UTC |
| Profile Built | 2026-07-29 22:52:50 UTC |
| Data Freshness | Live |
| Signal Types | 13 |
| Total Observations | 13 |
Full dossier details are available via our API.