IP Intelligence Briefing: 135.125.245.121
Date: 2026-06-16
---
**1. Core Profile**
- Risk Score: Low Risk (0/100)
- Provider: OVH (CloudCompute)
- Geolocation:
- Country: US (New York)
- Coordinates: Inferred (latitude: 46.23, longitude: 2.21)
- Timezone: America/New_York
- Network Role:
- Type: CloudHosting
- Services: No open ports, no TLS/HTTP services detected
- Ownership: No ASN/org data available
---
**2. Threat & Behavior**
- Threat Indicators:
- No malicious campaigns, blacklists, or honeypot hits detected.
- Minimal DNSSEC validation (score: 0.15).
- No spam, Tor, or proxy activity.
- Behavioral Flags:
- Active: Yes (last observed 2026-06-16)
- Persistence: No persistent malicious activity.
---
**3. Observation History**
- Recent Signals (Last 30 Days):
- Geolocation: Mixed data (France inferred, US registered).
- DNSSEC: Partial validation (0.15 score).
- Threat Feeds: 4 listings (low-severity, non-actionable).
- Stability: 0 route changes, but no BGP stability confirmed.
- Anomalies:
- Inconsistent geolocation data (US vs. France).
- No recent scans or enumeration attempts.
---
**4. Relationships & Neighborhood**
- Linked Entities:
- No hostname, certificate, or organizational relationships found.
- Subnet Analysis:
- /24 Subnet: 135.125.245.0/24
- Abuse Density: 0% (no malicious neighbors).
- Active Siblings: 0 (no neighboring IPs identified).
---
**5. Recommendations**
- Monitoring:
- Continue baseline monitoring for unexpected service exposure.
- Verify geolocation consistency (US vs. inferred France).
- Mitigation:
- No immediate firewall rules or actions required.
- Ensure DNSSEC validation is fully implemented for this subnet.
---
Conclusion:
The IP 135.125.245.121 is a low-risk, cloud-hosted server with no malicious activity detected. Inconsistent geolocation data and partial DNSSEC validation suggest further verification may be needed, but no immediate action is required. Maintain standard monitoring for anomalies.
Tools Used: `ipdebrief_profile`, `ipdebrief_history`, `ipdebrief_relationships`, `ipdebrief_neighbors`.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | OVH GmbH |
| ASN | AS16276 |
| Network Name | PCI-DE1 |
| CIDR Block | 135.125.244.0/22 |
| RIR | ARIN |
| Country | DE |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 24% | 2 | 2 |
| routing | 17% | 1 | 1 |
| services | 17% | 1 | 1 |
| ownership | 35% | 2 | 3 |
| reputation | 17% | 1 | 2 |
| geolocation | 17% | 1 | 1 |
| Overall | 21% | 8 | 10 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-06-09 08:12:30 UTC |
| Last Seen | 2026-06-21 15:51:56 UTC |
| Profile Built | 2026-06-21 16:06:00 UTC |
| Data Freshness | Live |
| Signal Types | 17 |
| Total Observations | 20 |
Full dossier details are available via our API.