IP Intelligence Briefing: 41.221.64.222
Date: 2026-05-30
---
**Risk Assessment**
- Overall Risk Score: 70 (High Risk)
- Threat Indicators: Clean (no malicious indicators, spam, or known attacker associations).
- Network Stability: Unstable (route stability score: 0).
- Geolocation: Mozambique (MZ), coordinates -18.25, 35.
---
**Ownership & Network**
- Registrar: Essineta Cossa (ASN 36865, afrinic).
- Subnet: 41.221.64.0/24 (abuse density: 0, classified as "clean").
- Network Role: Firewalled / No Services (no open ports, no CDN/cloud/mobile/residential flags).
---
**DNS & Hosting**
- PTR Hostname: `ip-41-221-64-222.teledata.mz` (teledata.mz domain).
- DNSSEC: Valid.
- Email Security: SPF and DMARC records present (no email reputation data).
- DNS Anomalies: Some queries timed out (e.g., 192.168.2.108#53).
---
**Observation History**
- Latest Activity: 2026-05-30 (geolocation, subnet abuse density, and network role analysis).
- Consistency: No significant changes in risk signals over the past 30 days.
- Geolocation Plausibility: Flagged as implausible (geoValidation: false).
---
**Relationships**
- Subnet Links: Strong ties to 41.221.64.0/24 (no threat siblings).
- DNS Associations: Linked to `teledata.mz` (no correlated IPs or certificates).
- Operators: Minimal risk (operator score: 0.13).
---
**Neighbor Analysis**
- Subnet Neighbors: 1 total sibling IP (41.221.64.222/24), all inactive.
- Abuse Density: 0% (clean subnet).
---
**Recommendations**
1. Monitor DNS Configuration: Investigate recurring DNS query timeouts (e.g., 192.168.2.108).
2. Geolocation Verification: Validate IP's location (Mozambique) against internal geolocation databases.
3. Network Segmentation: Ensure firewalled IP is isolated in internal networks.
4. Threat Intelligence: Cross-check with threat feeds for potential false negatives in the "clean" classification.
Note: While the IP shows no direct malicious activity, its high risk score and geolocation anomalies warrant further investigation.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Essineta Cossa |
| ASN | AS36865 |
| Network Name | 41.221.64.0 - 41.221.64.255 |
| CIDR Block | 41.221.64.0/24 |
| RIR | AFRINIC |
| Country | MZ |
| Abuse Contact | โ |
๐ DNS Intelligence
| PTR | ip-41-221-64-222.teledata.mz |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | ip-41-221-64-222.teledata.mz |
๐ DNS Hygiene
| Hygiene Score | 60% (Good) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Single-Service Host |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | โ |
| Closed Ports | 22, 25, 443, 3389, 8080, 8443 (1 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 35% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 13% | 1 | 2 |
| ownership | 19% | 2 | 2 |
| reputation | 13% | 1 | 2 |
| geolocation | 13% | 1 | 1 |
| Overall | 18% | 8 | 11 |
| Data Coherence | Mostly Consistent (80%) โ 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-14 01:09:58 UTC |
| Last Seen | 2026-06-13 03:45:46 UTC |
| Profile Built | 2026-06-11 09:41:19 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 23 |
Full dossier details are available via our API.