INTELLIGENCE BRIEFING: 79.25.187.138
Classification: Moderate Risk (Score: 40/100)
Assessment Date: 2026-06-26
Network Attribution & Ownership:
The IP address 79.25.187.138 is associated with ASN 3269 (BBBEASYIP STAFF / Telecom Italia S.p.A.), a Tier-1 Italian telecommunications provider. The IP falls within the 79.24.0.0/15 BGP prefix and operates under the RIR RIPE. Control plane analysis indicates stable routing with no recent route changes over the past 30 days.
Geolocation:
Geolocation data places the IP in Padua, Veneto, Italy (IT). Multiple geo sources corroborated this position with 500km accuracy radius. Reverse DNS resolution confirmed the hostname "host-79-25-187-138.retail.telecomitalia.it" with forward DNS confirmation active.
Technical Profile:
Network classification identified the IP as mobile infrastructure operated by TIM (Telecom Italia S.p.A.) via LTE/5G technology (MCC: 222, MNC: 01). No open ports or active services were detected. The IP presents as "Firewalled / No Services" with no TLS certificates or HTTP content observed.
Threat Indicators:
DNSBL listing showed the IP on 2 of 8 total blacklist feeds. Reputation sources included AlienVault OTX with threat persistence flags. No active threat indicators, known campaigns, or attacker signatures were present in the profile.
Historical Analysis:
Observation history revealed 26 signal observations. Recent activity included ASN and geolocation signals from multiple threat intelligence sources. One blacklist listing event was recorded with medium severity classification. DMARC and SPF records remained active for the associated telecomitalia.it domain.
Network Neighborhood:
Analysis of the 79.25.187.0/24 subnet revealed zero neighboring IPs. Abuse density scored 0.0, with no high, medium, or low-risk siblings detected. The subnet classification remained "clean" with inherited risk of 0.
Recommended Actions:
No immediate firewall or blocking actions recommended. The IP exhibits characteristics consistent with legitimate mobile broadband infrastructure. SOC teams should monitor for behavioral anomalies but no immediate containment required.
Risk Summary:
The IP represents a moderate-risk profile typical of residential mobile broadband connections. No active malicious indicators present. Standard monitoring practices apply.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | BBBEASYIP STAFF |
| ASN | AS3269 |
| Network Name | โ |
| CIDR Block | 79.24.0.0/15 |
| RIR | RIPE |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | host-79-25-187-138.retail.telecomitalia.it |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | host-79-25-187-138.retail.telecomitalia.it |
๐ DNS Hygiene
| Hygiene Score | 80% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Mobile |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 38% | 2 | 4 |
| routing | 35% | 2 | 3 |
| services | 15% | 2 | 2 |
| ownership | 27% | 3 | 4 |
| reputation | 22% | 1 | 3 |
| geolocation | 19% | 2 | 2 |
| Overall | 26% | 12 | 18 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-11 15:05:42 UTC |
| Last Seen | 2026-06-26 11:16:04 UTC |
| Profile Built | 2026-06-26 11:23:29 UTC |
| Data Freshness | Live |
| Signal Types | 24 |
| Total Observations | 25 |
Full dossier details are available via our API.