# IP Intelligence Briefing: 151.242.43.229/32
Classification: Low Risk | Last Updated: 2026-07-27
Analyst: IPDebrief Intelligence Team
---
## Executive Summary
IP 151.242.43.229 is currently classified as Low Risk with a risk score of 0. The address shows no active services, no open ports, and no associated threat indicators in the current profile. However, historical observations indicate intermittent listing activity on threat intelligence feeds with maximum severity ratings. No relationships or neighborhood activity were identified within the /24 subnet.
---
## Current Profile Assessment
Risk Profile:
- Overall Risk Score: 0 (Low Risk)
- Provider Score: 0
- Authority Score: 0
- Reputation: Low Risk
Network Role: Firewalled / No Services
- No open ports detected
- No TLS certificates or HTTP services
- No DNS records or PTR hostnames
Geolocation Data:
- Country: GB (United Kingdom)
- City: London
- Region: Uusimaa
- Timezone: Europe/London
- Geo Source Count: 2
- Note: Geo consensus shows conflicting data points
---
## Historical Observations (100 Data Points)
Key Historical Findings:
1. 2026-07-27 15:08:04 - Threat listing activity detected
- Listed on 8 threat intelligence feeds
- Listed Count: 1
- Maximum Severity: High
- Categories: [Data truncated in source]
2. 2026-07-27 15:08:03 - DNSSEC validation observed
- Zone: 229.43.242.151.in-addr.arpa
- DNSSEC Valid: True
- RRSIG: False
3. Ownership Variations Observed:
- ASN 56594: "cb-byo-ip - CGI GLOBAL LIMITED, HK" (AE country code)
- RIR: RIPE
- CIDR: 151.242.43.0/24
- Net Name: NET-151-242-43-0-24
Temporal Indicators:
- Ownership Changes: 0
- Threat Persistence Days: 0
- Threat Observation Count: 0
- Is Persistently Malicious: False
---
## Relationship Analysis
Connected Entities: None
- No related subnets, hostnames, organizations, or certificates identified
- Empty relationship graph
---
## Neighborhood Assessment (/24 Subnet)
Subnet: 151.242.43.229/24
- Neighbor Count: 0
- Abuse Density: 0
- Risk Distribution:
- High Risk: 0
- Medium Risk: 0
- Low Risk: 0
- No threat siblings identified
---
## Control Plane Analysis
BGP/Routing:
- Route Changes (30d): 0
- Is Route Stable: False
- Origin ASN: Not detected
DNS/Security:
- DNSBL Listed Count: 0
- DNSSEC Valid: False
- RPKI State: Not detected
- IRR Consistency: Not detected
Traceroute:
- Hop Count: 21
- Transit Networks: Comcast, Cogent
- Timed Out Hops: 2
---
## Behavioral Indicators
Attack Patterns:
- Honeypot Hits: 0
- Enumeration Strikes: 0
- WAF Violations: 0
- Total Incidents: 0
- Auto Banned: False
- Is Active Attacker: False
Campaign Correlation:
- Campaign Likelihood: Not detected
- CERT Matches: 0
- Correlated IPs: 0
---
## Recommended Actions
SOC Team Guidance:
1. Monitor Closely: Historical threat listing activity with high severity warrants continued observation despite current low-risk classification.
2. Geolocation Verification: Conflicting country data (GB, LV, AE) requires manual validation before incident correlation.
3. Subnet Context: No activity detected in the /24 neighborhood reduces likelihood of coordinated infrastructure.
4. Block Decision: Current risk score of 0 does not justify immediate blocking. Maintain passive monitoring unless new threat indicators emerge.
---
Confidence Level: 0.0708 (Low)
Data Sources: IPDebrief Intelligence Platform
Status: Active Monitoring Recommended
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | netutils-mnt |
| ASN | AS56594 |
| Network Name | NET-151-242-43-0-24 |
| CIDR Block | 151.242.43.0/24 |
| RIR | RIPE |
| Country | LV |
| Abuse Contact | Available via RDAP |
🌐 DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No — PTR hostname does not resolve back to this IP (weak signal) |
🔐 DNS Hygiene
| Hygiene Score | 0% (None) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Not signed |
| CAA | Not configured |
☁️ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Single-Service Host |
| Network Tier | Unknown — Insufficient routing data to classify |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 22 | ssh | tcp | Banner detected |
| Closed Ports | 25, 80, 443, 3389, 8080, 8443 (1 open / 7 scanned) | ||
| Server | — |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | None |
| Valid From | — |
| Valid Until | — |
🛡️ Public Network Snapshot
| Origin ASN | AS56594 |
| Network Prefix | 151.242.43.0/24 |
| Route mapping | Found |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 30% | 2 | 5 |
| routing | 8% | 1 | 1 |
| services | 12% | 2 | 2 |
| ownership | 23% | 2 | 4 |
| reputation | 22% | 1 | 3 |
| geolocation | 17% | 2 | 3 |
| Overall | 19% | 10 | 18 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-07-14 09:42:52 UTC |
| Last Seen | 2026-09-29 03:06:27 UTC |
| Profile Built | 2026-09-23 13:51:21 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 22 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 151.242.43.229
Who owns the IP address 151.242.43.229?
151.242.43.229 is registered to netutils-mnt. The address falls within the 151.242.43.0/24 network block. Registration is held at RIPE.
Where is 151.242.43.229 located?
Geolocation data places 151.242.43.229 in London. The local time zone is Asia/Dubai. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 151.242.43.229 malicious or safe?
151.242.43.229 currently carries a moderate risk assessment, meaning some indicators warrant caution, but the evidence is mixed. This assessment is generated from continuously collected signals and can change over time.
What ports are open on 151.242.43.229?
Responsive ports observed on 151.242.43.229 include 22. Port visibility reflects the most recent scan and may change as the host's configuration or firewall rules change.