IPDebrief

151.242.43.229

IP Intelligence Dossier
Your IP: 216.73.217.131
{ } JSON 🔧 Full Actions API
🤖 Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP Intelligence Briefing: 151.242.43.229/32

Classification: Low Risk | Last Updated: 2026-07-27

Analyst: IPDebrief Intelligence Team

---

## Executive Summary

IP 151.242.43.229 is currently classified as Low Risk with a risk score of 0. The address shows no active services, no open ports, and no associated threat indicators in the current profile. However, historical observations indicate intermittent listing activity on threat intelligence feeds with maximum severity ratings. No relationships or neighborhood activity were identified within the /24 subnet.

---

## Current Profile Assessment

Risk Profile:

Network Role: Firewalled / No Services

Geolocation Data:

---

## Historical Observations (100 Data Points)

Key Historical Findings:

1. 2026-07-27 15:08:04 - Threat listing activity detected

- Listed on 8 threat intelligence feeds

- Listed Count: 1

- Maximum Severity: High

- Categories: [Data truncated in source]

2. 2026-07-27 15:08:03 - DNSSEC validation observed

- Zone: 229.43.242.151.in-addr.arpa

- DNSSEC Valid: True

- RRSIG: False

3. Ownership Variations Observed:

- ASN 56594: "cb-byo-ip - CGI GLOBAL LIMITED, HK" (AE country code)

- RIR: RIPE

- CIDR: 151.242.43.0/24

- Net Name: NET-151-242-43-0-24

Temporal Indicators:

---

## Relationship Analysis

Connected Entities: None

---

## Neighborhood Assessment (/24 Subnet)

Subnet: 151.242.43.229/24

- High Risk: 0

- Medium Risk: 0

- Low Risk: 0

---

## Control Plane Analysis

BGP/Routing:

DNS/Security:

Traceroute:

---

## Behavioral Indicators

Attack Patterns:

Campaign Correlation:

---

## Recommended Actions

SOC Team Guidance:

1. Monitor Closely: Historical threat listing activity with high severity warrants continued observation despite current low-risk classification.

2. Geolocation Verification: Conflicting country data (GB, LV, AE) requires manual validation before incident correlation.

3. Subnet Context: No activity detected in the /24 neighborhood reduces likelihood of coordinated infrastructure.

4. Block Decision: Current risk score of 0 does not justify immediate blocking. Maintain passive monitoring unless new threat indicators emerge.

---

Confidence Level: 0.0708 (Low)

Data Sources: IPDebrief Intelligence Platform

Status: Active Monitoring Recommended

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

Country🇦🇪 United Arab Emirates
Region—
CityLondon
TimezoneAsia/Dubai
Latitude23.42
Longitude53.85

🏢 Ownership & Registration

Organizationnetutils-mnt
ASNAS56594
Network NameNET-151-242-43-0-24
CIDR Block151.242.43.0/24
RIRRIPE
CountryLV
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR RecordNo PTR
Forward ConfirmedNo — PTR hostname does not resolve back to this IP (weak signal)

🔐 DNS Hygiene

Hygiene Score0% (None)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECNot signed
CAANot configured

☁️ Network Classification

InfrastructureUnknown
Service PurposeSingle-Service Host
Network TierUnknown — Insufficient routing data to classify
No specific classification

🔌 Services & Open Ports

PortServiceProtocolBanner
22sshtcpBanner detected
Closed Ports25, 80, 443, 3389, 8080, 8443 (1 open / 7 scanned)
Server—
HTTP Title—

🔐 TLS Certificate

🔒
No certificate
Issued by —
N/A
SANsNone
Valid From—
Valid Until—

🛡️ Public Network Snapshot

Origin ASNAS56594
Network Prefix151.242.43.0/24
Route mappingFound

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
30%
25
routing
8%
11
services
12%
22
ownership
23%
24
reputation
22%
13
geolocation
17%
23
Overall19%1018
Coverage: 6/6 dimensions · Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

📅 Observation Timeline 🔄 Live

First Seen2026-07-14 09:42:52 UTC
Last Seen2026-09-29 03:06:27 UTC
Profile Built2026-09-23 13:51:21 UTC
Data FreshnessLive
Signal Types20
Total Observations22
🔍 20 signal types · 22 observations collected
This report is generated from 20+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API 🔧 Actions API 📧 Enterprise Access

❓ Frequently Asked Questions About 151.242.43.229

Who owns the IP address 151.242.43.229?

151.242.43.229 is registered to netutils-mnt. The address falls within the 151.242.43.0/24 network block. Registration is held at RIPE.

Where is 151.242.43.229 located?

Geolocation data places 151.242.43.229 in London. The local time zone is Asia/Dubai. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.

Is 151.242.43.229 malicious or safe?

151.242.43.229 currently carries a moderate risk assessment, meaning some indicators warrant caution, but the evidence is mixed. This assessment is generated from continuously collected signals and can change over time.

What ports are open on 151.242.43.229?

Responsive ports observed on 151.242.43.229 include 22. Port visibility reflects the most recent scan and may change as the host's configuration or firewall rules change.

🏘️ Related IP Addresses

Browse related networks

ℹ️ About This Report

All data shown is publicly available network metadata — IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.