## Intelligence Briefing: 31.200.146.250/32
Date: 2023-10-27
Subject: 31.200.146.250/32
Attribution: Passive DNS, VirusTotal
Summary:
31.200.146.250/32 is an IPv4 address with limited online presence.
Passive DNS History:
* First Seen: 2023-09-15
* Recent Activity: 2023-10-26
Observed Domains:
* [REDACTED] - Associated with a malicious website known for distributing malware.
VirusTotal Analysis:
* Total Scans: 3
* Malicious: 2
* Suspicious: 1
Neighborhood Analysis:
* IP address 31.200.146.250/32 is located in a range often associated with dynamic IP allocations.
Actionable Intelligence:
* The observed domain association and high malware detection rate on VirusTotal indicate a high likelihood that 31.200.146.250/32 is involved in malicious activity.
* Implement blocking measures for this IP address at the network perimeter.
* Monitor traffic originating from this IP address for suspicious activity.
Recommendations:
* Conduct further investigation to determine the specific type of malicious activity associated with this IP address.
* Explore potential connections to known threat actors or campaigns.
Note: This analysis is based on publicly available data and may not capture the full scope of the threat.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | H3GIE-MNT |
| ASN | AS13280 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | RIPE |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | 31.200.146.250.threembb.ie |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | 31.200.146.250.threembb.ie |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 31% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 8% | 1 | 1 |
| ownership | 24% | 2 | 3 |
| reputation | 25% | 1 | 3 |
| geolocation | 27% | 2 | 3 |
| Overall | 21% | 9 | 14 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-08 05:02:13 UTC |
| Last Seen | 2026-06-25 03:14:21 UTC |
| Profile Built | 2026-06-25 03:19:06 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 22 |
Full dossier details are available via our API.