Intelligence Briefing: 86.134.234.59/32
Executive Summary
The IP address 86.134.234.59 was classified as Low Risk with a risk score of 25. The asset was identified as a suspicious host with low-grade risk indicators present, warranting a monitor action.
Ownership and Geolocation
Network ownership was traced to BT CENTRAL PLUS - OPERATIONAL SUPPORT (ASN 2856) under the Ripe registry (BT-CENTRAL-PLUS). The geolocation consensus placed the address in Belfast, Northern Ireland, United Kingdom.
Network Services and Role
The IP was determined to be firewalled with no active services or open ports. It was not identified as infrastructure for cloud, CDN, VPN, proxy, hosting, or mobile traffic.
DNS and Hygiene
Reverse DNS resolution pointed to host86-134-234-59.range86-134.btcentralplus.com. Forward DNS was confirmed. DNS hygiene was rated Poor (Score 20) due to the absence of SPF, DMARC, CAA, and DNSSEC records.
Threat Intelligence
The address was not flagged as a known attacker, spam source, or Tor exit node. Threat indicators were present, but no specific campaigns were matched. While the threat section reported zero blacklists, control plane data indicated one DNSBL listing. Total incidents recorded were zero.
Activity and Recommendation
Observations were recorded as Live within a five-minute window. The threat actor classification remained "Suspicious Host" with no specific attribution. The SOC recommendation was to Monitor the address with low severity.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | BT CENTRAL PLUS - OPERATIONAL SUPPORT |
| ASN | AS2856 |
| Network Name | BT-CENTRAL-PLUS |
| CIDR Block | 86.128.0.0/13 |
| RIR | RIPE |
| Country | GB |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | host86-134-234-59.range86-134.btcentralplus.com |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | host86-134-234-59.range86-134.btcentralplus.com |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Verified |
| DNSSEC | Not signed |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 1 | 1 |
| routing | 25% | 1 | 1 |
| services | 35% | 2 | 2 |
| ownership | 0% | 0 | 0 |
| reputation | 0% | 0 | 0 |
| geolocation | 25% | 1 | 1 |
| Overall | 18% | 5 | 5 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-09-22 00:40:11 UTC |
| Last Seen | 2026-09-22 00:40:11 UTC |
| Profile Built | 2026-09-22 00:51:49 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 20 |
Full dossier details are available via our API.