Intelligence Briefing: 82.215.111.39/32
Risk Assessment
Analysis identified the IP address as Low Risk with a reputation score of 25. The host was classified as a "Suspicious Host" despite the low score, driven by the presence of threat indicators lacking specific classification.
Ownership and Infrastructure
The address is registered under ASN 59668 (orgName: mnt-uz-turonmedia-1, netname: UZ-TURONMEDIA-20031117) within the RIPE registry. Geolocation data placed the host in Navoiy Region, Uzbekistan (UZ), though geo sources disagreed on country classification. Network role analysis indicated the service purpose was "Firewalled / No Services," with no open ports detected.
Technical Configuration
DNS resolution confirmed the PTR hostname 82.215.111.39.ip-trans.turontelecom.uz under the domain turontelecom.uz. Forward resolution was confirmed, but forward hostnames did not match PTR records perfectly. Email authentication showed SPF was enabled while DMARC was missing. The control plane indicated route instability over the last 30 days, with BGP prefix 82.215.96.0/20.
Threat Indicators and Anomalies
Behavioral analysis recorded zero honeypot hits, zero enumeration strikes, and zero known campaigns. The primary threat section listed a blacklist count of 0, but control plane data reported a DNSBL listing count of 1 against 8 total lists. Signal contradictions were noted, including inconsistent geo validation and conflicting DNSBL metrics.
Operational Recommendation
Action: Monitor. Severity: Low.
Reason: Signal contradictions present β monitor for changes.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | mnt-uz-turonmedia-1 |
| ASN | AS59668 |
| Network Name | UZ-TURONMEDIA-20031117 |
| CIDR Block | 82.215.96.0/20 |
| RIR | RIPE |
| Country | UZ |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | 82.215.111.39.ip-trans.turontelecom.uz |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | 82.215.111.39.ip-trans.turontelecom.uz |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Present |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Not signed |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown β Insufficient routing data to classify |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 0% | 0 | 0 |
| reputation | 0% | 0 | 0 |
| geolocation | 25% | 1 | 1 |
| Overall | 16% | 4 | 4 |
| Data Coherence | Mostly Consistent (80%) β 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-09-16 03:38:20 UTC |
| Last Seen | 2026-09-16 03:38:20 UTC |
| Profile Built | 2026-09-16 03:53:46 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 21 |
Full dossier details are available via our API.