# INTELLIGENCE BRIEFING: 41.13.76.193/32
Classification: Moderate Risk (Score: 40)
Date: 2026-07-28
Source: IPDebrief Intelligence Platform
---
## EXECUTIVE SUMMARY
IP address 41.13.76.193 is a South African residential/network infrastructure address registered to Jacques Hendricks (AS29975, 41.13.64.0/19). The IP demonstrates moderate risk characteristics with 2 DNSBL listings across 8 total lists. Current threat indicators show no active malicious activity, but the moderate risk score warrants monitoring. The address resolves to a Vodacom network hostname (vc-nat-gp-n-41-13-76-193.umts.vodacom.co.za) with no open services detected.
---
## OWNERSHIP & REGISTRATION
- Organization: Jacques Hendricks
- ASN: 29975
- Network Block: 41.13.64.0/19
- Registration RIR: AFRINIC
- CIDR Block: 41.13.64.0/19
---
## GEOLOCATION
- Country: South Africa (ZA)
- Region: Gauteng
- City: Pretoria
- Coordinates: -30.56, 22.94 (800km accuracy radius)
- Timezone: Africa/Johannesburg
- Geolocation Consensus: True (1 source)
---
## THREAT INTELLIGENCE
| Metric | Value |
|---|---|
| Risk Score | 40 (Moderate Risk) |
| Blacklist Count | 0 |
| DNSBL Listings | 2 of 8 |
| Known Attacker | No |
| Tor Exit Node | No |
| Spam Source | No |
| Active Threat Indicators | None |
| Known Campaigns | None |
The IP is not currently flagged as a known attacker, Tor exit node, or spam source. Two DNSBL listings indicate historical reputation issues, though current blacklist count shows zero active listings.
---
## NETWORK CLASSIFICATION
- Service Purpose: Firewalled / No Services
- Open Ports: None detected
- Infrastructure Type: Residential/Network
- Cloud Provider: No
- CDN: No
- VPN/Proxy: No
- Hosting: No
- Mobile: No
The address shows no active service banners or TLS certificates, indicating a passive or firewalled endpoint.
---
## DNS ANALYSIS
- PTR Record: vc-nat-gp-n-41-13-76-193.umts.vodacom.co.za
- Forward Resolution: Confirmed (1 record)
- SPF Record: Present
- DMARC Record: Present
- Hosted Domains: 0
DNS records indicate association with Vodacom's mobile network infrastructure (UMTS). Email authentication records are configured.
---
## OBSERVATION HISTORY
The IP has 15 recorded observations with the most recent activity on 2026-07-28. Historical data shows:
- Subnet classification consistently reported as "clean" with 0 abuse density
- Multiple geolocation signals converging on Pretoria, South Africa
- No ownership changes recorded
- No persistent malicious behavior detected
---
## NETWORK RELATIONSHIPS
- DNS Associations: vc-nat-gp-n-41-13-76-193.umts.vodacom.co.za
- Network Affiliation: 41.13.64.0 - 41.13.95.255
---
## NEIGHBORHOOD ANALYSIS
- Subnet: 41.13.76.193/24
- Abuse Density: 0
- Active Siblings: 0
- Threat Siblings: 0
- High Risk Neighbors: 0
The /24 subnet shows no neighboring threat activity, indicating localized risk rather than broader subnet compromise.
---
## SECURITY ACTIONS
Recommended Firewall Rules:
```bash
# iptables
iptables -A INPUT -s 41.13.76.193 -j DROP
# nftables
nft add rule inet filter input ip saddr 41.13.76.193 drop
# nginx
deny 41.13.76.193;
# pfSense
41.13.76.193/32
# Cloudflare WAF
{"description":"Block 41.13.76.193 — IPDebrief risk score 40","action":"block","filter":{"expression":"ip.src eq 41.13.76.193"}}
# AWS WAF
{"Addresses":["41.13.76.193/32"],"Description":"IPDebrief risk 40"}
```
Risk Assessment: Block recommendation based on moderate risk score (40). Current threat indicators show no active malicious behavior, but DNSBL listings and moderate risk profile justify defensive blocking. Combine with additional threat intelligence signals before implementation.
---
## ANALYST RECOMMENDATIONS
1. Monitor the IP for increased threat activity given moderate risk classification
2. Review DNSBL listings to understand historical reputation issues
3. Correlate with any observed malicious traffic patterns from this range
4. Implement firewall rules if traffic from this IP is unexpected in your environment
5. Consider blocking the entire /19 block if the subnet shows consistent abuse patterns
Confidence Level: Moderate – Risk score based on multiple signal types including DNSBL, geolocation, and network classification.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | Jacques Hendricks |
| ASN | AS29975 |
| Network Name | 41.13.64.0 - 41.13.95.255 |
| CIDR Block | 41.13.64.0/19 |
| RIR | AFRINIC |
| Country | ZA |
| Abuse Contact | — |
🌐 DNS Intelligence
| PTR | vc-nat-gp-n-41-13-76-193.umts.vodacom.co.za |
| Forward Confirmed | Yes — FCrDNS verified |
| Forward Hostnames | vc-nat-gp-n-41-13-76-193.umts.vodacom.co.za |
🔐 DNS Hygiene
| Hygiene Score | 80% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
☁️ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown — Insufficient routing data to classify |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | — |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | None |
| Valid From | — |
| Valid Until | — |
🛡️ Public Network Snapshot
| Origin ASN | AS29975 |
| Network Prefix | 41.13.64.0/19 |
| Route mapping | Found |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 23% | 2 | 3 |
| routing | 8% | 1 | 1 |
| services | 12% | 2 | 2 |
| ownership | 12% | 2 | 2 |
| reputation | 8% | 1 | 2 |
| geolocation | 17% | 2 | 3 |
| Overall | 13% | 10 | 13 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-07-18 11:34:55 UTC |
| Last Seen | 2026-09-02 18:05:49 UTC |
| Profile Built | 2026-09-02 18:07:46 UTC |
| Data Freshness | Live |
| Signal Types | 19 |
| Total Observations | 23 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 41.13.76.193
Who owns the IP address 41.13.76.193?
41.13.76.193 is registered to Jacques Hendricks. The address falls within the 41.13.64.0/19 network block. Registration is held at AFRINIC.
Where is 41.13.76.193 located?
Geolocation data places 41.13.76.193 in Pretoria, Gauteng, South Africa. The local time zone is Africa/Johannesburg. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 41.13.76.193 malicious or safe?
41.13.76.193 currently carries a moderate risk assessment, meaning some indicators warrant caution, but the evidence is mixed. This assessment is generated from continuously collected signals and can change over time.
What is the hostname for 41.13.76.193?
The reverse DNS (PTR) record for 41.13.76.193 is vc-nat-gp-n-41-13-76-193.umts.vodacom.co.za. This hostname is forward-confirmed, meaning it resolves back to the same address.