Intelligence analysis was conducted on IP 96.110.43.130, an endpoint associated with Comcast Cable Communications, LLC (ASN 7922) within the 96.110.0.0/16 block. The address was classified as a residential infrastructure type. While the threat actor classification tagged the host as "Suspicious Host," the overall reputation remained Low Risk with a risk score of 25.
Geolocation data placed the endpoint in Atlanta, GA, USA. However, network measurements indicated a distance of 7,625.7 kilometers, contradicting the physical minimum RTT of 152.5ms for that range. Observations were recorded between August 29, 2026, and September 21, 2026. The broader subnet 96.110.43.130/24 exhibited an abuse density of 0.0312 with one threat sibling among 31 active siblings. DNS resolution confirmed the address via forward hostnames pointing to Comcast infrastructure in Pompano Beach, FL.
Behavioral analysis showed no honeypot hits or active attacker status. Despite the low-risk classification, signal contradictions necessitated a Monitor recommendation with low severity. No specific firewall rules were generated.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Comcast Cable Communications, LLC |
| ASN | AS7922 |
| Network Name | COMCAST-E1-16 |
| CIDR Block | 96.110.0.0/16 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | β |
π DNS Intelligence
| PTR | be-33811-arsc1.pompanobeach.fl.pompano.comcast.net |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | be-33811-arsc1.pompanobeach.fl.pompano.comcast.net |
π DNS Hygiene
| Hygiene Score | 60% (Good) |
| SPF | 2/2 domains |
| DMARC | 2/2 domains |
| FCrDNS | Verified |
| DNSSEC | Not signed |
| CAA | Not configured |
| Domains Checked | 2 domains |
βοΈ Network Classification
| Infrastructure | Residential |
| Service Purpose | Residential Endpoint |
| Network Tier | End-User β Residential ISP endpoint |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 43% | 2 | 5 |
| routing | 27% | 2 | 3 |
| services | 19% | 2 | 2 |
| ownership | 30% | 3 | 3 |
| reputation | 13% | 1 | 2 |
| geolocation | 38% | 2 | 5 |
| Overall | 28% | 12 | 20 |
| Data Coherence | Mostly Consistent (80%) β 1 contradiction(s) |
| Attribution | Moderate (55%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-08-29 02:56:46 UTC |
| Last Seen | 2026-09-21 03:18:39 UTC |
| Profile Built | 2026-09-21 03:32:08 UTC |
| Data Freshness | Live |
| Signal Types | 27 |
| Total Observations | 39 |
Full dossier details are available via our API.