IP Intelligence Briefing for 151.242.30.212
Date: 2026-06-11
---
**1. Profile Summary**
- Risk Score: 50 (Moderate Risk)
- Ownership: Registered to Internet Magnate (Pty) Ltd (AS214209) in South Africa (ZA).
- Geolocation: Located in Gauteng, South Africa (Africa/Johannesburg timezone).
- Network Role: Firewalled / No Services (no open ports or active TLS/HTTP services).
- Threat Indicators: No malicious indicators, blacklists, or known campaigns linked.
---
**2. Observation History**
- Recent Activity (Last 30 Days):
- 14 observations, including DNSSEC validation and RDAP registration.
- No signs of Tor exit nodes, spam sources, or known attackers.
- Abuse Confidence Score: Unavailable.
---
**3. Network Relationships**
- Connected Entities:
- Part of the NET-151-242-30-0-24 subnet (151.242.30.0/24).
- Linked to Internet Magnate (Pty) Ltd (AS214209).
- No direct connections to other IPs or domains.
---
**4. Neighborhood Analysis**
- Subnet (151.242.30.0/24):
- Abuse Density: 0 (clean).
- Neighbors: 5 IPs in the subnet, with 3 medium-risk and 2 low-risk siblings.
- Active Siblings: 1 (151.242.30.55).
- Threat Siblings: 0.
---
**5. Recommended Actions**
- Firewall Rules:
- iptables: `iptables -A INPUT -s 151.242.30.212 -j DROP`
- nftables: `nft add rule inet filter input ip saddr 151.242.30.212 drop`
- Cloudflare WAF: Block IP with rule `{ "action": "block", "expression": "ip.src eq 151.242.30.212" }`
- AWS WAF: Add `151.242.30.212/32` to a rule with description "IPDebrief risk 50".
---
**6. Threat Assessment**
- Risk Context: Moderate risk score (50) with no direct malicious indicators.
- Network Context: Part of a clean subnet with no abuse density.
- Priority: Low to medium; monitor for changes in risk score or network behavior.
---
Conclusion:
151.242.30.212 is registered to a South African entity with no immediate threat indicators. While its risk score is moderate, the subnet shows no abuse activity. SOC teams should consider blocking the IP based on the provided firewall rules, but prioritize higher-risk IPs first. Monitor the subnet for changes in neighbor risk scores.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Internet Magnate (Pty) Ltd |
| ASN | AS214209 |
| Network Name | NET-151-242-30-0-24 |
| CIDR Block | 151.242.30.0/24 |
| RIR | RIPE |
| Country | ZA |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown β Insufficient routing data to classify |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 20% | 1 | 1 |
| routing | 0% | 0 | 0 |
| services | 0% | 0 | 0 |
| ownership | 27% | 2 | 3 |
| reputation | 20% | 1 | 1 |
| geolocation | 13% | 1 | 1 |
| Overall | 13% | 5 | 6 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-29 05:54:37 UTC |
| Last Seen | 2026-06-21 12:22:28 UTC |
| Profile Built | 2026-06-11 19:36:09 UTC |
| Data Freshness | Live |
| Signal Types | 16 |
| Total Observations | 16 |
Full dossier details are available via our API.