# IP Intelligence Briefing: 61.9.8.115
Classification: Low Risk / Infrastructure
Date: Current Analysis
Target: 61.9.8.115/32
---
## Executive Summary
Target IP 61.9.8.115 is a low-risk infrastructure address belonging to Converge ICT Network (AS17639), a Philippine telecommunications provider. The IP exhibits minimal threat indicators with no active services, no known malicious activity, and a clean reputation profile. Risk score: 25/100.
---
## Ownership & Network Attribution
- Organization: ABUSE CONVERGEPH (Converge ICT Network)
- ASN: 17639
- CIDR Block: 61.9.8.0/22
- RIR: APNIC
- Geolocation: Philippines (PH), Bicol Region, Pili
- Abuse Contact: abuse@convergeict.com
- Network Registration: APNIC registry
---
## Threat Assessment
Overall Risk Score: 25/100 (Low Risk)
Threat Indicators:
- Blacklist Count: 0
- Known Attacker: No
- Spam Source: No
- Tor Exit Node: No
- Known Campaigns: None
- Pulsedive Risk: N/A
Control Plane:
- DNSBL Listed: 1/8 total lists
- Operator Score: 0.1304 (Minimal)
- Route Stability: False
- IRR Consistency: Pending verification
---
## Network Services
- Open Ports: None detected
- TLS Certificates: None
- Hosted Domains: 0
- DNS Records: No forward resolution
- Email Authentication: SPF: No, DMARC: No
- Service Classification: Firewalled / No Services
---
## Neighborhood Analysis (61.9.8.0/24)
- Total Siblings: 52
- Active Siblings: 16
- Abuse Density: 0
- Risk Distribution:
- High Risk: 0
- Medium Risk: 7
- Low Risk: 44
- Threat Siblings: 0
The target IP resides in a subnet with low overall abuse density. Several neighbor IPs show risk scores of 25-50, but the target maintains a low-risk profile consistent with infrastructure routing or upstream services.
---
## Observation History
Total Observations: 13 signals tracked
Recent Activity (2026-07-28):
- Subnet classification: Clean (abuse density: 0)
- Geolocation: Philippines (confidence: 0.52)
- Organization attribution: ABUSE CONVERGEPH (confidence: 0.90-0.95)
- Regional classification: Bicol Region, Pili
No temporal escalation in threat indicators observed. Historical data indicates consistent infrastructure classification with stable network attribution.
---
## Relationships
- Connected Entity: Converge_ICT_Network (Same Network)
- Certificate Matches: 0
- Correlated IPs: 0
- Campaign Correlations: 0
---
## Recommended Actions
Firewall Policy: No blocking required
- IP classified as legitimate ISP infrastructure
- No malicious indicators present
- Standard allow-with-monitoring policy appropriate
Monitoring:
- Track for service changes or unexpected port openings
- Monitor for DNSBL additions
- Continue baseline observation for anomaly detection
Escalation: None required
- Risk profile remains low
- No campaign correlation detected
- No abuse contacts requiring notification
---
## Conclusion
IP 61.9.8.115 is a legitimate Converge ICT Network infrastructure address with no active threat indicators. The address should be treated as low-risk network traffic from a Philippine ISP. No blocking or alerting is recommended. Standard monitoring procedures apply.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | ABUSE CONVERGEPH |
| ASN | AS17639 |
| Network Name | Converge_ICT_Network |
| CIDR Block | 61.9.8.0/22 |
| RIR | APNIC |
| Country | PH |
| Abuse Contact | Available via RDAP |
🌐 DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No — PTR hostname does not resolve back to this IP (weak signal) |
🔐 DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
☁️ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown — Insufficient routing data to classify |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | — |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | None |
| Valid From | — |
| Valid Until | — |
🛡️ Public Network Snapshot
| Origin ASN | AS17639 |
| Network Prefix | 61.9.8.0/22 |
| Route mapping | Found |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 21% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 12% | 2 | 2 |
| ownership | 36% | 2 | 5 |
| reputation | 8% | 1 | 2 |
| geolocation | 25% | 2 | 4 |
| Overall | 18% | 10 | 18 |
| Data Coherence | Mostly Consistent (80%) — 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-07-18 17:43:29 UTC |
| Last Seen | 2026-09-02 20:15:27 UTC |
| Profile Built | 2026-09-02 20:33:58 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 31 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 61.9.8.115
Who owns the IP address 61.9.8.115?
61.9.8.115 is registered to ABUSE CONVERGEPH. The address falls within the 61.9.8.0/22 network block. Registration is held at APNIC.
Where is 61.9.8.115 located?
Geolocation data places 61.9.8.115 in Pili, Bicol Region, Philippines. The local time zone is Asia/Manila. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 61.9.8.115 malicious or safe?
61.9.8.115 currently carries a low risk assessment, meaning no significant threat indicators have been observed. This assessment is generated from continuously collected signals and can change over time.