IPDebrief

129.121.126.30

IP Intelligence Dossier
Your IP: 216.73.216.5
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

## IP Intelligence Briefing: 129.121.126.30

Classification: Moderate Risk / No Active Threat Indicators

Date: Current Analysis

Analyst: SOC Intelligence Team

---

Executive Summary

IP address 129.121.126.30 resolves to a US-based infrastructure asset hosted by Unified Layer with a moderate risk profile (score: 50/100). The IP shows no active threat indicators, no open services, and no historical malicious activity. However, the address appears on 2 DNS blacklist lists and exhibits routing characteristics consistent with the 129.121.120.0/21 BGP prefix under ASN 31898.

---

Technical Profile

Geolocation: New York, US (US-NY region)

ASN/Network: ASN 31898, BGP Prefix 129.121.120.0/21

DNS PTR: 129-121-126-30.unifiedlayer.com

Forward Resolution: Confirmed to unifiedlayer.com domain

Service Status: Firewalled / No Open Ports Detected

Infrastructure Type: Corporate/Hosting (not CDN, VPN, proxy, or Tor)

---

Risk Assessment

Overall Risk Score: 50/100 (Moderate)

Provider Score: 0 (No provider-specific risk)

Authority Score: 0 (No authority-specific risk)

Operator Score: 0.1304 (Minimal)

Threat Indicators:

Control Plane:

---

Observation History (12 Signals Recorded)

Recent monitoring indicates:

---

Relationship Network

DNS Associations:

No additional relationships detected to subnets, organizations, or certificates at this time.

---

Neighborhood Analysis

Subnet: 129.121.126.30/24

Neighbor Count: 0

Abuse Density: 0%

Risk Distribution: No high/medium/low risk neighbors detected

---

Recommended Security Actions

Based on the moderate risk profile (score 50), the following firewall rules are recommended:

iptables:

```

iptables -A INPUT -s 129.121.126.30 -j DROP

```

nftables:

```

nft add rule inet filter input ip saddr 129.121.126.30 drop

```

nginx:

```

deny 129.121.126.30;

```

pfSense:

```

129.121.126.30/32

```

Cloudflare WAF:

```json

{

"description": "Block 129.121.126.30 β€” IPDebrief risk score 50",

"action": "block",

"filter": {"expression": "ip.src eq 129.121.126.30"}

}

```

AWS WAF:

```json

{

"Addresses": ["129.121.126.30/32"],

"Description": "IPDebrief risk 50"

}

```

---

Analyst Notes

This IP address presents a moderate risk profile primarily due to DNSBL listings and routing instability. However, no active malicious activity has been observed. The lack of open services and firewalled status reduce immediate threat potential. Security teams may consider blocking this address proactively, though it is not currently flagged as actively malicious. Correlate with internal traffic logs to determine if this IP has been observed attempting connections to your infrastructure.

---

*Report generated using IPDebrief intelligence platform. Data sourced from 12 observation signals and control plane analysis.*

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΊπŸ‡Έ United States
Regionβ€”
CityNew York
Timezoneβ€”
Latitudeβ€”
Longitudeβ€”

🏒 Ownership & Registration

OrganizationOso Grande IP Services, LLC
ASNAS31898
Network NameOGTIPS1-129-121
CIDR Block129.121.0.0/16
RIRARIN
CountryUnited States
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR129-121-126-30.unifiedlayer.com
Forward ConfirmedNo β€” PTR hostname does not resolve back to this IP (weak signal)
Forward Hostnames129-121-126-30.unifiedlayer.com

πŸ” DNS Hygiene

Hygiene Score60% (Good)
SPFPresent
DMARCPresent
FCrDNSNot verified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureUnknown
Service PurposeSingle-Service Host
Network TierUnknown β€” Insufficient routing data to classify
No specific classification

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
22sshtcpβ€”
Closed Ports25, 80, 443, 3389, 8080, 8443 (1 open / 7 scanned)
Serverβ€”
HTTP Titleβ€”

πŸ” TLS Certificate

πŸ”’
No certificate
Issued by β€”
N/A
SANsNone
Valid Fromβ€”
Valid Untilβ€”

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
25%
11
routing
25%
11
services
25%
11
ownership
0%
00
reputation
0%
00
geolocation
0%
00
Overall12%33
Coverage: 3/6 dimensions Β· Data sufficiency: partial
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-07-25 14:52:28 UTC
Last Seen2026-08-07 19:24:28 UTC
Profile Built2026-07-30 04:20:04 UTC
Data FreshnessLive
Signal Types21
Total Observations21
πŸ” 21 signal types Β· 21 observations collected
This report is generated from 21+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.