# INTELLIGENCE BRIEFING: 86.1.150.50/32
Date: 2026-06-24
Classification: Moderate Risk
Primary Risk Score: 50/100
## Executive Summary
IP address 86.1.150.50 is a residential infrastructure endpoint associated with Virgin Media Limited (AS5089), operating within the Brighton, England geographic region. The IP exhibits moderate-risk characteristics primarily due to DNSBL listings and intermittent connection failures. No active threat campaigns or malicious indicators were detected in the full profile assessment.
## Technical Profile
Network Ownership:
- ASN: 5089 (Virgin Media Limited)
- RIR: RIPE
- Network: 86.1.0.0/16
- Control Plane: BGP prefix 86.1.0.0/16, origin AS5089, AS path 37721 6830 5089
- Route Stability: Stable (isRouteStable=true, 0 route changes in 30 days)
Geolocation:
- Country: United Kingdom (GB)
- Region: ENG
- City: Brighton
- Coordinates: 50.8309°N, -0.1635°W
- Geolocation Confidence: Consensus from 2 sources
DNS Configuration:
- PTR Hostname: 86-1-150-50.pon.virginmedia.net
- Forward Resolution: 86-1-150-50.pon.virginmedia.net
- DNSSEC: Valid
- CAA Records: Present
- Email Auth: SPF and DMARC records present
Network Services:
- Open Ports: TCP/443 (HTTPS)
- TLS Certificate: Not available
- Banner: No HTTP title/server banner detected
## Threat Assessment
Risk Indicators:
- Reputation Score: Moderate Risk (50/100)
- DNSBL Listings: 2 of 8 total lists
- Known Campaigns: None
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
Temporal Analysis:
- Observation Count: 25 historical signals
- Threat Persistence: 0 days
- Ownership Changes: 0
- Last Observed: 2026-06-23
Historical Signal Summary:
- 2026-06-23: Domain resolution to virginmedia.net (confidence 0.80)
- 2026-06-22: HTTPS connection failure (confidence 0.30)
- 2026-06-18: ASN allocation confirmation, BGP routing validation, geolocation correlation with 22 external threat pulses
## Neighborhood Context
Subnet Analysis (86.1.150.0/24):
- Abuse Density: 0
- Total Siblings: 1
- Active Siblings: 1
- Threat Siblings: 1
- Classification: Mostly Clean
- Inherited Risk: 2
Relationship Graph:
- 95 total relationships identified
- Primary type: Same network (VMCBBUK)
- No direct threat-related relationships detected
## Recommended Actions
Firewall Rules:
- iptables: `iptables -A INPUT -s 86.1.150.50 -j DROP`
- nftables: `nft add rule inet filter input ip saddr 86.1.150.50 drop`
- nginx: `deny 86.1.150.50;`
- pfSense: `86.1.150.50/32`
WAF Recommendations:
- Cloudflare WAF: Block with expression `ip.src eq 86.1.150.50`
- AWS WAF: Include 86.1.150.50/32 in IP list with description "IPDebrief risk 50"
Operational Guidance:
- Monitor for connection failures to virginmedia.net domains
- No immediate threat escalation recommended
- Consider context-dependent blocking based on internal threat tolerance
---
*Analysis generated using IPDebrief threat intelligence platform data.*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | AS5089-MNT |
| ASN | AS5089 |
| Network Name | โ |
| CIDR Block | 86.1.0.0/16 |
| RIR | RIPE |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | 86-1-150-50.pon.virginmedia.net |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | 86-1-150-50.pon.virginmedia.net |
๐ DNS Hygiene
| Hygiene Score | 80% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Web Server |
| Network Tier | Tier 3 โ Basic operator with some routing infrastructure |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 443 | https | tcp | โ |
| Closed Ports | 22, 25, 80, 3389, 8080, 8443 (1 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 20% | 2 | 4 |
| routing | 26% | 2 | 3 |
| services | 25% | 2 | 4 |
| ownership | 26% | 3 | 4 |
| reputation | 18% | 1 | 3 |
| geolocation | 21% | 2 | 2 |
| Overall | 23% | 12 | 20 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-07 23:04:39 UTC |
| Last Seen | 2026-06-26 14:32:05 UTC |
| Profile Built | 2026-06-25 08:04:13 UTC |
| Data Freshness | Live |
| Signal Types | 25 |
| Total Observations | 27 |
Full dossier details are available via our API.