IP address 96.108.41.38 was identified as a residential endpoint associated with Comcast Cable Communications, LLC (ASN 7922). The address maintained a low-risk reputation score of 20 and recorded zero active threat indicators, blacklist listings, or known campaign associations. Behavioral analysis showed no honeypot strikes, enumeration attempts, or web application firewall violations.
Geographic validation revealed a contradiction; the consensus location indicated the United States, yet Round-Trip Time (RTT) physics measurements suggested a distance of 7625.7 kilometers with an RTT of 51.0 milliseconds, which fell below the minimum possible latency of 152.5 milliseconds for that distance. The immediate subnet (96.108.41.0/24) was classified as clean with zero threat siblings.
Although the IP presented as a standard residential connection, data sufficiency scores remained high while overall confidence was very low due to conflicting geolocation metrics. The analysis recommended monitoring for potential configuration anomalies rather than immediate blocking. No firewall rules were required based on current findings.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Comcast Cable Communications, LLC |
| ASN | AS7922 |
| Network Name | COMCAST-E1-14 |
| CIDR Block | 96.108.0.0/17 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | β |
π DNS Intelligence
| PTR | po-1-xar01.bluelight.tn.knox.comcast.net |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | po-1-xar01.bluelight.tn.knox.comcast.net |
π DNS Hygiene
| Hygiene Score | 60% (Good) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Not signed |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Residential |
| Service Purpose | Residential Endpoint |
| Network Tier | End-User β Residential ISP endpoint |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 19% | 2 | 2 |
| ownership | 19% | 2 | 2 |
| reputation | 13% | 1 | 2 |
| geolocation | 33% | 2 | 4 |
| Overall | 21% | 10 | 14 |
| Data Coherence | Mostly Consistent (80%) β 1 contradiction(s) |
| Attribution | Moderate (55%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-09-09 02:00:32 UTC |
| Last Seen | 2026-09-20 16:41:57 UTC |
| Profile Built | 2026-09-22 20:29:44 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 31 |
Full dossier details are available via our API.