## Intelligence Briefing: IP 51.15.149.97/32
Classification: Moderate Risk (Score: 65/100)
Date of Analysis: 2026-06-21
Executive Summary
IP address 51.15.149.97 was analyzed and classified as moderate risk (65/100). The address is assigned to Scaleway CloudCompute infrastructure in France. No active threat indicators, campaigns, or malicious behavior were detected in the current profile.
Network Ownership and Infrastructure
- ASN: 12876
- Organization: Mickael Marchand (SCALEWAY)
- CIDR Block: 51.15.0.0/16
- Registration RIR: ARIN
- Infrastructure Type: CloudCompute (Hosting enabled)
- Geolocation: France (FR), Île-de-France region, Saint-Cloud (500km accuracy radius)
- Timezone: Europe/Paris
Network Role and Services
The IP is classified as cloud infrastructure with no open ports or active services detected. Service purpose is documented as "Firewalled / No Services." The address resolves to reverse DNS hostname 51-15-149-97.rev.poneytelecom.eu. No email authentication records (SPF, DMARC) were found.
Threat Assessment
- Risk Score: 65/100 (Moderate)
- Threat Indicators: None detected
- Abuse Confidence Score: Not available
- Blacklist Status: Listed on 3 of 8 DNSBLs
- Known Campaigns: None
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
The control plane indicates the address is not route-stable and has 3 DNSBL listings. RPKI state, IRR consistency, and MOAS status were not determinable.
Neighborhood Analysis
The /24 subnet (51.15.149.0.0/24) was evaluated with zero abuse density and clean classification. No active or threatening sibling IPs were identified in the neighborhood. Risk inheritance from the subnet is nil.
Historical Observations
Signal history shows 20 observations with the most recent activity on 2026-06-21. No persistent malicious behavior was detected (threat persistence days: 0). Ownership changes recorded: 0. Geographic inference placed the IP in France with 52% confidence (46.23, 2.21 coordinates).
Relationships
Seven relationship records were identified, consisting of:
- Three DNS associations to 51-15-149-97.rev.poneytelecom.eu
- Four same-network associations to SCALEWAY
Traceroute Analysis
Hop count: 14
First hop RTT: 0.2ms
Last hop RTT: 104.9ms
Timed out hops: 3
Transit networks included Comcast.
Recommended Actions
Based on the elevated risk score (65/100), the following security actions were recommended:
Monitoring:
- Increase logging verbosity and review recent activity from this IP
Firewall Rules:
- iptables: `iptables -A INPUT -s 51.15.149.97 -j DROP`
- nftables: `nft add rule inet filter input ip saddr 51.15.149.97 drop`
- nginx: `deny 51.15.149.97;`
- pfSense: Block 51.15.149.97/32
- Cloudflare WAF: Block with expression `ip.src eq 51.15.149.97`
- AWS WAF: Add 51.15.149.97/32 to blocklist
Intelligence Notes
This IP represents cloud infrastructure with moderate risk scoring. The absence of open services and threat indicators suggests this may be a dormant or misconfigured resource rather than an active attack vector. However, the DNSBL listings and elevated risk score warrant continued monitoring. The neighborhood analysis indicates this is an isolated incident within the subnet.
---
*Report generated by IPDebrief Intelligence Platform. Data should be validated against additional sources before taking action.*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Mickael Marchand |
| ASN | AS12876 |
| Network Name | SCALEWAY |
| CIDR Block | 51.15.0.0/16 |
| RIR | ARIN |
| Country | FR |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | 51-15-149-97.rev.poneytelecom.eu |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | 51-15-149-97.rev.poneytelecom.eu |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 โ Basic operator with some routing infrastructure |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 24% | 2 | 2 |
| routing | 17% | 1 | 1 |
| services | 17% | 1 | 1 |
| ownership | 35% | 2 | 3 |
| reputation | 17% | 1 | 2 |
| geolocation | 24% | 2 | 2 |
| Overall | 22% | 9 | 11 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-06-09 14:18:37 UTC |
| Last Seen | 2026-06-26 18:11:26 UTC |
| Profile Built | 2026-06-21 16:42:42 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 25 |
Full dossier details are available via our API.