IPDebrief

51.75.35.120

IP Intelligence Dossier
Your IP: 216.73.216.5
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

## Intelligence Briefing: 51.75.35.120/32

Classification: Tor Exit Node / Moderate Risk

Date: Current observation cycle

Risk Score: 60/100

Ownership and Geolocation

The IP address 51.75.35.120 is registered to OVH Sp. z o. o. (ASN 16276) under the network name OVH-DEDICATED-FO. The address is located in Warsaw, Mazovia, Poland (country code: PL), within the 51.75.35.64/26 subnet.

Network Role and Threat Indicators

The IP was classified as a Tor Exit Node during analysis. Tor exit node indicators were observed, and the IP is currently flagged on one blacklist. The address resolved to SSH port 22/tcp on TCP. Forward DNS resolution confirmed the hostname ip120.ip-51-75-35.eu.

Routing and Control Plane Data

The IP originates from ASN 16276 with a BGP prefix of 51.75.0.0/16. Route stability was assessed as unstable with two route changes in the past 30 days. RPKI validation returned as valid. The IP is listed on two DNSBL lists out of eight total lists checked. Operator scoring returned a moderate rating of 0.5652.

Neighborhood Assessment

The /24 subnet (51.75.35.0/24) showed an abuse density of 1 with one active sibling IP. The neighborhood classification was mostly_clean. One threat sibling was identified within the subnet.

Historical Observations

Analysis revealed 34 total observations. Recent signals included identification as a Tor exit node, operator scores of 0.5652, and abuse density of 1. The IP was not flagged as persistently malicious. The threat observation count remained at 1 during the observation period.

Recommended Actions

Given the Tor exit node classification and blacklist presence, the IP should be considered for blocking or rate-limiting policies. The SSH service on port 22/tcp may require additional scrutiny for unauthorized access attempts.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ต๐Ÿ‡ฑ Poland
RegionMazovia
CityWarsaw
TimezoneEurope/Warsaw
Latitude52.23
Longitude21.01

๐Ÿข Ownership & Registration

OrganizationOVH Sp. z o. o.
ASNAS16276
Network NameOVH-DEDICATED-FO
CIDR Block51.75.35.64/26
RIRARIN
CountryPL
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTRip120.ip-51-75-35.eu
Forward ConfirmedYes โ€” FCrDNS verified
Forward Hostnamesip120.ip-51-75-35.eu

๐Ÿ” DNS Hygiene

Hygiene Score60% (Good)
SPFPresent
DMARCNot configured
FCrDNSVerified
DNSSECValid
CAANot configured

โ˜๏ธ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeFirewalled / No Services
Network TierTier 2 โ€” Moderate operator sophistication with routing hygiene
CloudHosting

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverโ€”
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
No certificate
Issued by โ€”
N/A
SANsNone
Valid Fromโ€”
Valid Untilโ€”

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
45%
25
routing
38%
34
services
24%
22
ownership
45%
36
reputation
31%
14
geolocation
35%
23
Overall36%1324
Coverage: 6/6 dimensions ยท Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionHigh (85%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-08-04 19:33:58 UTC
Last Seen2026-08-13 06:55:24 UTC
Profile Built2026-08-13 07:08:24 UTC
Data FreshnessLive
Signal Types31
Total Observations38
๐Ÿ” 31 signal types ยท 38 observations collected
This report is generated from 31+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.