# IP Intelligence Briefing: 193.29.107.147/32
Classification: Low Risk / Defensive Monitoring
Date: July 29, 2026
Analyst: IPDebrief Intelligence Team
---
## Executive Summary
IP 193.29.107.147 is a low-risk endpoint assigned to GLOBALAXS NOC (ASN 9009) under M247-LTD-Copenhagen's network infrastructure. The IP shows no active threat indicators, services, or malicious behavior patterns. Current risk score stands at 25 (Low Risk), with DNSSEC validation enabled and a single historical blacklist listing from August 2025.
---
## Ownership and Infrastructure
| Attribute | Value |
|---|---|
| **ASN** | 9009 (GLOBALAXS NOC) |
| **Organization** | M247-LTD-Copenhagen |
| **Network Block** | 193.29.107.0/24 |
| **RIR** | RIPE |
| **Geolocation** | GB (Manchester/London) |
| **Timezone** | Europe/London |
| **Registration** | 2018-09-10 |
Network Role: Provider infrastructure with no open services (Firewalled / No Services)
---
## Threat Assessment
Risk Score: 25/100 (Low Risk)
Threat Indicators:
- Known Attacker: No
- Spam Source: No
- Tor Exit Node: No
- Abuse Confidence Score: Not applicable
- Blacklist Status: 1 listing (out of 8 monitored lists), max severity: High
- Honeypot Hits: 0
- Enumeration Strikes: 0
- WAF Violations: 0
- Total Incidents: 0
Threat Feeds: None detected
---
## Network Behavior and Services
| Service | Status |
|---|---|
| **Open Ports** | None |
| **HTTP/HTTPS** | Not detected |
| **TLS Certificate** | None |
| **DNS Records** | No PTR hostnames |
| **Forward Resolution** | Not confirmed |
| **Hosted Domains** | 0 |
| **Email Auth (SPF/DMARC)** | Not configured |
Network Classification:
- Cloud: No
- CDN: No
- VPN: No
- Proxy: No
- Tor: No
- Hosting: No
- Mobile: No
- Residential: No
---
## Neighborhood Analysis (193.29.107.0/24)
| Metric | Value |
|---|---|
| **Subnet Abuse Density** | 0 |
| **Total Siblings** | 1 |
| **Active Siblings** | 0 |
| **Threat Siblings** | 0 |
| **Risk Distribution** | 1 Low Risk |
Neighbor IP: 193.29.107.132 (Risk Score: 25, Authority Score: 50)
---
## Observation History (Last 10 Signals)
Recent Activity (July 29, 2026):
- DNSSEC Validation: Confirmed valid (Signal ID: 2342)
- ASN Attribution: ASN 9009, prefix 193.29.107.0/24, source: team-cymru-dns, country code: RO (Signal ID: 2341)
- Blacklist Activity: Listed on 1 of 8 feeds with max severity high (Signal ID: 2344)
- Overall Signal Confidence: Ranges 0.17โ0.90
Temporal Analysis:
- Ownership Changes: 0
- Threat Persistence Days: 0
- Threat Observation Count: 0
- Persistently Malicious: No
---
## Control Plane and Routing
| Attribute | Value |
|---|---|
| **BGP Prefix** | 193.29.107.0/24 |
| **Origin ASN** | 9009 |
| **Route Stability** | False |
| **Route Changes (30d)** | 0 |
| **iBGP/MOAS** | Not applicable |
| **RPKI State** | Not assessed |
| **IRR Consistency** | Not assessed |
| **DNSSEC Valid** | Yes |
Traceroute Summary:
- Hop Count: 18
- Transit Networks: Comcast, Cogent
- Timed Out Hops: 4
---
## Intelligence Narrative
IP 193.29.107.147 represents a firewalled endpoint within M247's European infrastructure. The absence of open services, combined with zero enumeration strikes and WAF violations, indicates this IP is not actively serving web-facing functions. The single historical blacklist listing from 2025 appears resolved, as current threat indicators show no known attacker or spam source flags.
The subnet exhibits minimal abuse density (0), with the single neighboring IP (193.29.107.132) showing identical low-risk characteristics. This suggests coordinated infrastructure deployment rather than adversarial activity.
Recommendation: No immediate blocking required. Monitor for service emergence or new threat indicators. Existing firewall rules should maintain default-deny posture for inbound connections.
---
End of Briefing
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | GLOBALAXS NOC |
| ASN | AS9009 |
| Network Name | M247-LTD-Copenhagen |
| CIDR Block | 193.29.107.0/24 |
| RIR | RIPE |
| Country | DK |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Web Server |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 443 | https | tcp | โ |
| 22 | ssh | tcp | |
| 8080 | http-alt | tcp | โ |
| 3389 | rdp | tcp | โ |
| Closed Ports | 25, 80, 8443 (4 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
| SSH Version | SSH-2.0-OpenSSH_7.6p1 |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 25% | 1 | 1 |
| ownership | 25% | 1 | 2 |
| reputation | 0% | 0 | 0 |
| geolocation | 0% | 0 | 0 |
| Overall | 16% | 4 | 5 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-07-21 06:47:06 UTC |
| Last Seen | 2026-07-29 07:17:47 UTC |
| Profile Built | 2026-07-29 07:31:13 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 20 |
Full dossier details are available via our API.