IP Intelligence Briefing: 31.208.53.84
Date: 2026-06-18
---
**1. Profile Summary**
- Risk Score: 70 (High Risk)
- Ownership: Owned by BB2-MNT (RIPE), registered to Bredband2.com (Sweden).
- Geolocation: Västerås, Västmanland County, Sweden.
- Network Role: Firewalled / No Services (no open ports or TLS certificates detected).
- Threat Indicators: No direct malicious activity (no indicators, blacklists, or campaigns).
- DNS: PTR hostname 31-208-53-84.cust.bredband2.com with SPF/DMArc records.
- Control Plane: DNSSEC valid, listed in 4 DNSBLs (abuse confidence score not available).
---
**2. Observation History**
- Latest Activity: June 18, 2026 (multi-signal geolocation inference, Sweden).
- Network Stability:
- BGP route stability: Unstable (route changes in 30 days).
- RTT (Round-Trip Time): Avg 110ms, min 108ms, max 116ms.
- No Persistent Threats: No repeated malicious signals or ownership changes.
---
**3. Relationships**
- Network Associations:
- Linked to BREDBAND2-NET-SE (same ISP network).
- DNS associations with 31-208-53-84.cust.bredband2.com (some DNS queries timed out).
- No External Threat Links: No connections to known malicious domains, organizations, or campaigns.
---
**4. Neighborhood Analysis**
- Subnet: 31.208.53.84/24.
- Neighbor Activity:
- 0 active IPs in the subnet.
- Abuse Density: 0 (clean subnet).
- No Sibling Risks: No neighboring IPs flagged for abuse or threats.
---
**5. Actionable Insights**
- Monitor DNSBL Listings: The IP is listed in 4 DNSBLs; investigate potential false positives or abuse.
- Verify Network Stability: The BGP route is unstable; confirm ISP reliability.
- Check DNS Resilience: Some DNS queries timed out; ensure DNS resolution redundancy.
- No Immediate Threat: No direct malicious activity detected, but high-risk score warrants further monitoring.
---
Conclusion:
The IP 31.208.53.84 is part of a Swedish ISP network with no direct malicious indicators. While DNSBL listings and unstable BGP routes suggest potential risks, no active threats or persistent malicious behavior were observed. SOC teams should prioritize monitoring DNS health and network stability, but no immediate action is required based on current data.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | BB2-MNT |
| ASN | AS29518 |
| Network Name | β |
| CIDR Block | β |
| RIR | RIPE |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | 31-208-53-84.cust.bredband2.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | 31-208-53-84.cust.bredband2.com |
π DNS Hygiene
| Hygiene Score | 80% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 26% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 11% | 1 | 2 |
| ownership | 20% | 2 | 3 |
| reputation | 21% | 1 | 3 |
| geolocation | 30% | 2 | 3 |
| Overall | 20% | 9 | 15 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-07 23:04:15 UTC |
| Last Seen | 2026-06-23 09:57:34 UTC |
| Profile Built | 2026-06-23 10:25:02 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 23 |
Full dossier details are available via our API.