IP Intelligence Briefing: 102.129.60.24
Risk Score: 65 (Moderate Risk)
Last Observed: 2026-06-10
---
**Key Findings**
1. Ownership & Geolocation
- ISP: Jacobus De Beer (afrinic)
- Location: Vanderbijlpark, Gauteng, South Africa (ZA)
- ASN: 327991 | CIDR: 102.129.60.0/24
2. Threat Indicators
- No active malware, phishing, or malicious campaigns detected.
- DNS Associations: Linked to `ms-60-24.megasurf.co.za` (SPF/DMARC configured).
- Network Role: Firewalled with no open services; no CDN/VPN/Proxy detected.
3. Observation History
- 15 total signals over 30 days; 3 DNSBL listings (low-severity).
- No persistent malicious behavior or geolocation anomalies.
4. Neighborhood Risk
- Subnet abuse density: 6.8% (4 high-risk, 30 medium-risk IPs).
- 59 total neighbors; 13 low-risk, 30 medium-risk, 4 high-risk.
---
**Actionable Recommendations**
- Monitor Activity: Increase logging verbosity for traffic from this IP.
- Firewall Rules:
- iptables: `iptables -A INPUT -s 102.129.60.24 -j DROP`
- Cloudflare WAF: Block IP with rule `ip.src eq 102.129.60.24`
- AWS WAF: Add `102.129.60.24/32` to a new rule.
---
Conclusion:
This IP exhibits moderate risk due to its subnetβs abuse density and low-severity DNSBL listings. No immediate threat detected, but monitoring is advised. Implement firewall rules to mitigate potential risks.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Jacobus De Beer |
| ASN | AS327991 |
| Network Name | 102.129.60.0 - 102.129.60.255 |
| CIDR Block | 102.129.60.0/24 |
| RIR | AFRINIC |
| Country | ZA |
| Abuse Contact | β |
π DNS Intelligence
| PTR | ms-60-24.megasurf.co.za |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | ms-60-24.megasurf.co.za |
π DNS Hygiene
| Hygiene Score | 80% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 13% | 1 | 1 |
| routing | 13% | 1 | 1 |
| services | 13% | 1 | 1 |
| ownership | 21% | 2 | 2 |
| reputation | 0% | 0 | 0 |
| geolocation | 13% | 1 | 1 |
| Overall | 12% | 6 | 6 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-25 18:46:42 UTC |
| Last Seen | 2026-06-10 23:15:35 UTC |
| Profile Built | 2026-06-10 23:34:58 UTC |
| Data Freshness | Live |
| Signal Types | 17 |
| Total Observations | 23 |
Full dossier details are available via our API.