# IP INTELLIGENCE BRIEFING: 93.120.239.98/32
Classification: Moderate Risk (Score: 55)
Status: Residential Endpoint - Mobile Network
Last Updated: June 25, 2026
---
## EXECUTIVE SUMMARY
IP address 93.120.239.98 is a residential endpoint assigned to Rostelecom PJSC (ASN 12389) with mobile carrier Tele2 RU. The IP is geolocated to Nizhniy Novgorod, Russia (RU). No active threat indicators, known campaigns, or malicious reputation sources detected. Subnet abuse density is zero with no neighboring threats observed.
---
## OWNERSHIP & INFRASTRUCTURE
- ASN: 12389 (ROSTELECOM-MNT)
- Organization: Rostelecom PJSC
- CIDR Block: 93.120.192.0/18
- RIR: RIPE
- Registration: Via RDAP abuse contact
- Infrastructure Type: Residential
- Connection Technology: LTE (Mobile)
---
## GEOLOCATION
- Country: Russia (RU)
- Region: NIZ (Nizhniy Novgorod)
- Coordinates: 56.3327°N, 44.0012°E
- Distance: 2,427 km (from probe origin)
- Validation Status: ICMP blocked - unable to validate
- Geo Plausibility: Confirmed
---
## NETWORK CLASSIFICATION
| Attribute | Value |
|---|---|
| Provider | No |
| CDN | No |
| Cloud | No |
| VPN | No |
| Proxy | No |
| Tor | No |
| Hosting | No |
| Mobile | **Yes** |
| Residential | **Yes** |
| Bogon | No |
| Anycast | No |
PTR Hostname: 93-120-239-98.static.mts-nn.ru
Domain: mts-nn.ru
---
## THREAT INDICATORS
- Known Attacker: No
- Spam Source: No
- Tor Exit Node: No
- Blacklist Count: 0
- Campaign Association: None detected
- Cert Matches: 0
Control Plane:
- Route Stability: False
- DNSBL Listed: 3 of 8 lists
- Operator Score: 0.1304 (Minimal)
---
## OBSERVATION HISTORY (21 Observations)
Recent signals (June 25, 2026):
- No attacker classification
- No Tor/VPN/proxy indicators
- No spam source designation
- Blacklist count: 0
Historical signals indicate consistent residential/mobile endpoint classification with no escalation in risk posture.
---
## NETWORK RELATIONSHIPS
- Same Network Pool: NNOV-STATIC-POOL (multiple associations)
- DNS Associations: 93-120-239-98.static.mts-nn.ru (13 associations)
- Related Entities: 26 total (primarily DNS and network-level)
---
## NEIGHBORHOOD ANALYSIS (Subnet: 93.120.239.98/24)
- Abuse Density: 0 (Clean)
- Active Siblings: 0
- Threat Siblings: 0
- Total Siblings: 1
---
## SECURITY ACTIONS
Recommended: Standard residential endpoint monitoring. No blocking required.
Observation: IP represents legitimate residential mobile endpoint with no malicious activity observed.
---
## ANALYST NOTES
This IP is a residential mobile endpoint on Rostelecom's infrastructure with no threat indicators. The zero abuse density in the /24 subnet and absence of blacklist associations suggest normal endpoint behavior. Monitor for any changes in classification or threat indicators during routine traffic analysis.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | ROSTELECOM-MNT |
| ASN | AS12389 |
| Network Name | โ |
| CIDR Block | 93.120.192.0/18 |
| RIR | RIPE |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | 93-120-239-98.static.mts-nn.ru |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | 93-120-239-98.static.mts-nn.ru |
๐ DNS Hygiene
| Hygiene Score | 60% (Good) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Residential |
| Service Purpose | Residential Endpoint |
| Network Tier | End-User โ Residential ISP endpoint |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 35% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 15% | 2 | 2 |
| ownership | 20% | 2 | 3 |
| reputation | 28% | 1 | 3 |
| geolocation | 27% | 2 | 3 |
| Overall | 23% | 10 | 15 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-08 05:02:39 UTC |
| Last Seen | 2026-06-25 04:11:51 UTC |
| Profile Built | 2026-06-25 04:25:01 UTC |
| Data Freshness | Live |
| Signal Types | 24 |
| Total Observations | 25 |
Full dossier details are available via our API.