Intelligence Briefing: 82.102.29.224
Executive Summary
The IP address 82.102.29.224 was classified as Low Risk with a risk score of 25. While tagged as a "Suspicious Host" in threat actor assessments, no specific malicious campaigns were correlated. The address was assigned to GLOBALAXS NOC under the M247-INFRA netname (ASN 9009).
Network and Geolocation
Ownership registration occurred within the RIPE RIR, specifically the 82.102.29.128/25 block. Geolocation data primarily mapped the host to the United Kingdom (GB), with DNS records resolving to `hundredgige0-0-0-21.core1n.fra2.de.m247.ro`. Service scanning revealed no open ports, and the network role was identified as firewalled with no active services.
Threat Posture
Observed indicators included a single DNSBL listing within control plane data, despite a general blacklist count of zero. The immediate neighborhood (82.102.29.224/24) was classified as clean with zero abuse density and no threat siblings. Behavioral analysis recorded zero honeypot hits, WAF violations, or total incidents.
Conclusion
The profile was computed on September 18, 2026, based on data observed between September 5, 2026, and September 18, 2026. The recommended action was to Monitor the address, with a severity level of Low due to the clean neighborhood classification and lack of active threat indicators.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | GLOBALAXS NOC |
| ASN | AS9009 |
| Network Name | M247-INFRA |
| CIDR Block | 82.102.29.128/25 |
| RIR | RIPE |
| Country | GB |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | hundredgige0-0-0-21.core1n.fra2.de.m247.ro |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | hundredgige0-0-0-21.core1n.fra2.de.m247.ro |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Present |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Not signed |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 33% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 19% | 2 | 2 |
| ownership | 27% | 2 | 3 |
| reputation | 13% | 1 | 2 |
| geolocation | 27% | 2 | 3 |
| Overall | 22% | 10 | 15 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-09-05 19:44:00 UTC |
| Last Seen | 2026-09-18 09:45:39 UTC |
| Profile Built | 2026-09-18 09:58:41 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 28 |
Full dossier details are available via our API.