IPDebrief

81.249.252.2

IP Intelligence Dossier
Your IP: 216.73.217.131
{ } JSON 🔧 Full Actions API
🤖 Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP Intelligence Briefing: 81.249.252.2

## Executive Summary

IP address 81.249.252.2 presents a low-risk threat profile with an overall risk score of 25. The address is associated with FT-BRX (ASN 3215) and operates within the IP2000-ADSL-BAS network block. Classification indicates mobile broadband connectivity via Orange S.A. infrastructure. No active threat indicators, malicious campaigns, or blacklist enumerations were identified.

## Technical Profile

Network Classification:

Geolocation:

DNS & Resolution:

Network Services:

## Threat Intelligence

Current Risk Indicators:

Control Plane Analysis:

## Observation History

Signal observation history contains 16 recorded events. Key observations include:

The IP demonstrates temporal stability with no ownership changes and zero threat persistence days. No persistent malicious activity has been observed.

## Neighborhood Analysis

Subnet: 81.249.252.2/24

No neighboring IPs in the immediate /24 subnet exhibited malicious activity or elevated risk scores.

## Relationships

Associated Entities:

No organizational or certificate-based relationships were identified.

## Recommendations

Based on the risk profile:

1. Monitoring: Continue standard monitoring given the low-risk classification

2. Firewall Rules: No specific blocking recommended; standard egress/ingress policies apply

3. Geolocation Discrepancy: Note the mismatch between French RIR registration and US geolocation signals—may indicate routing anomalies or CDN/ISP infrastructure

4. DNSBL: Investigate the single DNSBL listing to understand the basis for the entry

5. Mobile Classification: Treat as mobile broadband endpoint; consider mobile-specific threat indicators

## Conclusion

IP 81.249.252.2 is classified as low-risk with no active threat indicators. The address operates on Orange S.A. mobile broadband infrastructure under FT-BRX management. While geolocation data shows inconsistencies, the overall threat profile remains benign. No immediate defensive actions are required beyond standard security hygiene practices.

---

*Report generated: 2026-07-27 | Intelligence Source: IPDebrief*

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

Country🇺🇸 United States
RegionUS-NY
CityNew York
TimezoneAmerica/New_York
Latitude48.88
Longitude2.59

🏢 Ownership & Registration

OrganizationFT-BRX
ASNAS3215
Network NameIP2000-ADSL-BAS
CIDR Block81.249.248.0/21
RIRRIPE
CountryFR
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTRlfbn-idf3-1-125-2.w81-249.abo.wanadoo.fr
Forward ConfirmedYes — FCrDNS verified
Forward Hostnameslfbn-idf3-1-125-2.w81-249.abo.wanadoo.fr

🔐 DNS Hygiene

Hygiene Score80% (Excellent)
SPFPresent
DMARCPresent
FCrDNSVerified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureMobile
Service PurposeFirewalled / No Services
Network TierTier 3 — Basic operator with some routing infrastructure
Mobile

🔌 Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Server—
HTTP Title—

🔐 TLS Certificate

🔒
No certificate
Issued by —
N/A
SANsNone
Valid From—
Valid Until—

🛡️ Public Network Snapshot

Origin ASNAS3215
Network Prefix81.249.128.0/17
Route mappingFound

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
25%
11
routing
25%
11
services
25%
11
ownership
0%
00
reputation
0%
00
geolocation
25%
11
Overall16%44
Coverage: 4/6 dimensions · Data sufficiency: partial
Data CoherenceConsistent (100%)
AttributionModerate (70%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

📅 Observation Timeline 🔄 Live

First Seen2026-07-14 03:40:40 UTC
Last Seen2026-08-31 19:07:06 UTC
Profile Built2026-08-31 19:56:42 UTC
Data FreshnessLive
Signal Types19
Total Observations22
🔍 19 signal types · 22 observations collected
This report is generated from 19+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API 🔧 Actions API 📧 Enterprise Access

❓ Frequently Asked Questions About 81.249.252.2

Who owns the IP address 81.249.252.2?

81.249.252.2 is registered to FT-BRX. The address falls within the 81.249.248.0/21 network block. Registration is held at RIPE.

Where is 81.249.252.2 located?

Geolocation data places 81.249.252.2 in New York, US-NY, United States. The local time zone is America/New_York. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.

Is 81.249.252.2 malicious or safe?

81.249.252.2 currently carries a low risk assessment, meaning no significant threat indicators have been observed. This assessment is generated from continuously collected signals and can change over time.

What is the hostname for 81.249.252.2?

The reverse DNS (PTR) record for 81.249.252.2 is lfbn-idf3-1-125-2.w81-249.abo.wanadoo.fr. This hostname is forward-confirmed, meaning it resolves back to the same address.

Is 81.249.252.2 a VPN, proxy, or data center address?

81.249.252.2 is classified as a mobile network based on network ownership and behavioural analysis.

🏘️ Related IP Addresses

Browse related networks

ℹ️ About This Report

All data shown is publicly available network metadata — IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.