## IP Intelligence Briefing: 41.13.228.190/32
Classification: Moderate Risk | Date: 2026-07-22 | Region: Cape Town, South Africa
Executive Summary
IP 41.13.228.190 presents a moderate risk profile (score: 40) associated with Vodacom's mobile network infrastructure in Cape Town. The address is firewalled with no active services detected. No active threat indicators, campaigns, or blacklist hits observed. Neighborhood analysis indicates clean subnet with zero abuse density.
Ownership & Infrastructure
- ASN: 29975 (Jacques Hendricks / Vodacom)
- CIDR Block: 41.13.224.0/19 (41.13.224.0 - 41.13.255.255)
- RIR: Afrinic
- Geolocation: South Africa (ZA), Cape Town, WC region
- Infrastructure Type: Mobile carrier network
- Status: Firewalled / No Services (no open ports)
DNS Resolution
- PTR Record: vc-gp-n-41-13-228-190.umts.vodacom.co.za
- Forward Resolution: Confirmed
- Email Authentication: SPF enabled, DMARC enabled
- Hosted Domains: 0
Threat Indicators
- Blacklist Count: 0
- Known Attacker: No
- Spam Source: No
- Tor Exit Node: No
- Proxy: No
- Abuse Confidence Score: Not available
- Threat Feeds: None
Neighborhood Assessment (41.13.228.0/24)
- Abuse Density: 0 (Clean classification)
- Total Siblings: 2
- Active Siblings: 0
- Threat Siblings: 0
- Neighbor IP: 41.13.228.74 (Risk Score: 0, Authority Score: 50)
Historical Observation
- Total Observations: 17
- Last Observation: 2026-07-22T14:48:17
- Threat Persistence: 0 days
- Ownership Changes: 0
- Persistently Malicious: No
Control Plane & Network Stability
- Route Stability: False
- Route Changes (30d): 0
- RPKI State: Not validated
- DNSSEC: Valid
- Operator Score: 0.2609 (Basic)
- DNSBL Listings: 2 lists (8 total DNSBLs checked)
Recommended Actions
SOC Analyst Guidance:
- Action Required: None recommended
- Block List: Not recommended (moderate risk profile, no active threats)
- Monitor: Standard monitoring acceptable
- Context: This is a Vodacom mobile network address in Cape Town. The low-risk neighborhood, absence of open services, and lack of threat indicators suggest this is legitimate mobile infrastructure rather than a malicious actor.
Firewall Rule (if needed for visibility):
```
# No action required - moderate risk, clean infrastructure
# If blocking required for compliance:
iptables -A INPUT -s 41.13.228.190/32 -j DROP
```
Related Entities
- Network: 41.13.224.0 - 41.13.255.255
- Hostname: vc-gp-n-41-13-228-190.umts.vodacom.co.za
End of Briefing
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | Jacques Hendricks |
| ASN | AS29975 |
| Network Name | 41.13.224.0 - 41.13.255.255 |
| CIDR Block | 41.13.224.0/19 |
| RIR | AFRINIC |
| Country | ZA |
| Abuse Contact | — |
🌐 DNS Intelligence
| PTR | vc-gp-n-41-13-228-190.umts.vodacom.co.za |
| Forward Confirmed | Yes — FCrDNS verified |
| Forward Hostnames | vc-gp-n-41-13-228-190.umts.vodacom.co.zavc-nat-wes-c-41-13-228-190.umts.vodacom.co.za |
🔐 DNS Hygiene
| Hygiene Score | 80% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
☁️ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 — Basic operator with some routing infrastructure |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | — |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | None |
| Valid From | — |
| Valid Until | — |
🛡️ Public Network Snapshot
| Origin ASN | AS29975 |
| Network Prefix | 41.13.192.0/18 |
| Route mapping | Found |
| Certificates in transparency logs | 0 certificates |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 25% | 1 | 1 |
| reputation | 0% | 0 | 0 |
| geolocation | 25% | 1 | 1 |
| Overall | 20% | 5 | 5 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-07-02 04:21:52 UTC |
| Last Seen | 2026-08-26 01:11:26 UTC |
| Profile Built | 2026-08-29 08:55:52 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 27 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 41.13.228.190
Who owns the IP address 41.13.228.190?
41.13.228.190 is registered to Jacques Hendricks. The address falls within the 41.13.224.0/19 network block. Registration is held at AFRINIC.
Where is 41.13.228.190 located?
Geolocation data places 41.13.228.190 in Cape Town, Western Cape, South Africa. The local time zone is Africa/Johannesburg. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 41.13.228.190 malicious or safe?
41.13.228.190 currently carries a moderate risk assessment, meaning some indicators warrant caution, but the evidence is mixed. This assessment is generated from continuously collected signals and can change over time.
What is the hostname for 41.13.228.190?
The reverse DNS (PTR) record for 41.13.228.190 is vc-gp-n-41-13-228-190.umts.vodacom.co.za. This hostname is forward-confirmed, meaning it resolves back to the same address.