The IP address 31.42.125.152 was assessed as Low Risk with a risk score of 25. It was assigned to ASN 152565 (IPBNB Abuse Contact) under the CLOUDONFIRE netname within the 31.42.125.0/24 block. Geolocation data placed the host in India. Technical analysis revealed no open ports or active services, with the service purpose categorized as Firewalled / No Services. DNS records showed a PTR host of static152.infra02.rdns.cloudonfire.com, though forward resolution remained unconfirmed. Threat intelligence feeds returned no indicators, with zero blacklist entries and no association with known campaigns or spam sources. The endpoint was not identified as a Tor exit, proxy, or hosting infrastructure. No specific actions were recommended based on the available evidence.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | IPBNB Abuse Contact |
| ASN | AS152565 |
| Network Name | CLOUDONFIRE |
| CIDR Block | 31.42.125.0/24 |
| RIR | RIPE |
| Country | IN |
| Abuse Contact | Available via RDAP |
🌐 DNS Intelligence
| PTR | static152.infra02.rdns.cloudonfire.com |
| Forward Confirmed | No — PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | static152.infra02.rdns.cloudonfire.com |
🔐 DNS Hygiene
| Hygiene Score | 60% (Good) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
☁️ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown — Insufficient routing data to classify |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | — |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | None |
| Valid From | — |
| Valid Until | — |
🛡️ Public Network Snapshot
| Origin ASN | AS152565 |
| Network Prefix | 31.42.125.0/24 |
| Route mapping | Found |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 0% | 0 | 0 |
| routing | 0% | 0 | 0 |
| services | 0% | 0 | 0 |
| ownership | 0% | 0 | 0 |
| reputation | 0% | 0 | 0 |
| geolocation | 25% | 1 | 1 |
| Overall | 4% | 1 | 1 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-07-03 10:49:20 UTC |
| Last Seen | 2026-08-27 17:33:35 UTC |
| Profile Built | 2026-08-29 04:06:38 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 22 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 31.42.125.152
Who owns the IP address 31.42.125.152?
31.42.125.152 is registered to IPBNB Abuse Contact. The address falls within the 31.42.125.0/24 network block. Registration is held at RIPE.
Where is 31.42.125.152 located?
Geolocation data places 31.42.125.152 in Hong Kong. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 31.42.125.152 malicious or safe?
31.42.125.152 currently carries a low risk assessment, meaning no significant threat indicators have been observed. This assessment is generated from continuously collected signals and can change over time.
What is the hostname for 31.42.125.152?
The reverse DNS (PTR) record for 31.42.125.152 is static152.infra02.rdns.cloudonfire.com. This hostname is not forward-confirmed, so it should be treated as a weak signal.