IPDebrief

134.249.13.141

IP Intelligence Dossier
Your IP: 216.73.217.131
{ } JSON 🔧 Full Actions API
🤖 Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP INTELLIGENCE BRIEFING: 134.249.13.141/32

## Executive Summary

Target IP 134.249.13.141 is a low-risk residential broadband connection assigned to Kyivstar network infrastructure in Kyiv, Ukraine. Risk score of 25/100 with no active malicious indicators. Requires standard monitoring without immediate blocking action.

---

## Infrastructure Profile

Network Classification: Residential Broadband

ISP Organization: Kyivstar (broadband.kyivstar.net)

ASN: 15895 | BGP Prefix: 134.249.0.0/16

Geolocation: Kyiv, Ukraine (UA) | Coordinates: 49.69°N, 30.76°E

Timezone: Europe/Kyiv

Service Status: Firewalled/No Services Detected

---

## Threat Indicators

Risk Score: 25 (Low Risk)

Threat Classification: Clean with minor concerns

IndicatorStatus
Known AttackerNo
Tor Exit NodeNo
Spam SourceNo
Blacklist Count1 of 8 lists
Honeypot Hits0
Enumeration Strikes0
WAF Violations0

DNSBL Status: Single listing detected across 8 total DNSBL feeds. Maximum severity: high.

Control Plane: Route changes: 0 (30d) | RPKI State: Unknown | IRR Consistency: Unknown

---

## Observation History

Total Observations: 14 signals recorded

Most Recent Activity: 2026-07-28

Key Historical Signals:

Temporal Analysis: No persistent malicious behavior. Zero threat persistence days.

---

## Relationship Mapping

Direct Associations: 2 relationships identified

No associations detected with:

---

## Neighborhood Analysis

Subnet: 134.249.13.141/24

Neighbor Count: 0 siblings detected

Abuse Density: 0%

Risk Distribution: High: 0 | Medium: 0 | Low: 0

No neighboring IPs show elevated risk profiles.

---

## Recommended Actions

Current Risk Posture: Monitor but do not block

Firewall Rules: None required at this time

WAF Configuration: Standard rules applicable

Threat Intelligence: Add to watchlist for continued monitoring

Justification: Low risk score (25) with no active malicious behavior. Single DNSBL listing does not justify blocking for legitimate residential traffic. Geo validation failure and forward DNS resolution issues are consistent with residential broadband characteristics.

---

## Intelligence Assessment

This IP represents legitimate residential broadband infrastructure with minimal threat indicators. The combination of zero open services, no attack signatures, and residential classification supports classification as low-risk. The single DNSBL listing warrants awareness but does not elevate threat posture. Standard SOC monitoring procedures apply.

Classification: LOW RISK

Action Required: Continue monitoring

Priority: Standard

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

Country🇺🇦 Ukraine
Region30
CityKyiv
TimezoneEurope/Kyiv
Latitude49.69
Longitude30.76

🏢 Ownership & Registration

OrganizationKyivstar PJSC
ASNAS15895
Network NameKYIVSTAR-NET-5
CIDR Block134.249.0.0/18
RIRARIN
CountryUA
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR134-249-13-141.broadband.kyivstar.net
Forward ConfirmedNo — PTR hostname does not resolve back to this IP (weak signal)
Forward Hostnames134-249-13-141.broadband.kyivstar.net

🔐 DNS Hygiene

Hygiene Score60% (Good)
SPFPresent
DMARCPresent
FCrDNSNot verified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureUnknown
Service PurposeFirewalled / No Services
Network TierUnknown — Insufficient routing data to classify
No specific classification

🔌 Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Server—
HTTP Title—

🔐 TLS Certificate

🔒
No certificate
Issued by —
N/A
SANsNone
Valid From—
Valid Until—

🛡️ Public Network Snapshot

Origin ASNAS15895
Network Prefix134.249.0.0/16
Route mappingFound

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
25%
23
routing
8%
11
services
12%
22
ownership
17%
23
reputation
20%
13
geolocation
12%
22
Overall15%1014
Coverage: 1/6 dimensions · Data sufficiency: partial
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

📅 Observation Timeline 🔄 Live

First Seen2026-07-16 04:31:04 UTC
Last Seen2026-09-03 02:55:03 UTC
Profile Built2026-09-03 03:02:18 UTC
Data FreshnessLive
Signal Types21
Total Observations26
🔍 21 signal types · 26 observations collected
This report is generated from 21+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API 🔧 Actions API 📧 Enterprise Access

❓ Frequently Asked Questions About 134.249.13.141

Who owns the IP address 134.249.13.141?

134.249.13.141 is registered to Kyivstar PJSC. The address falls within the 134.249.0.0/18 network block. Registration is held at ARIN.

Where is 134.249.13.141 located?

Geolocation data places 134.249.13.141 in Kyiv, 30, Ukraine. The local time zone is Europe/Kyiv. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.

Is 134.249.13.141 malicious or safe?

134.249.13.141 currently carries a low risk assessment, meaning no significant threat indicators have been observed. This assessment is generated from continuously collected signals and can change over time.

What is the hostname for 134.249.13.141?

The reverse DNS (PTR) record for 134.249.13.141 is 134-249-13-141.broadband.kyivstar.net. This hostname is not forward-confirmed, so it should be treated as a weak signal.

🏘️ Related IP Addresses

Browse related networks

ℹ️ About This Report

All data shown is publicly available network metadata — IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.