Intelligence analysis identified 208.92.225.13 as a low-risk asset with a risk score of 25. Ownership records linked the IP to TELEKOMUNiCASYON_LTD (ASN 209604) within the 208.92.225.0/24 CIDR block in New York, US. Network scans revealed the host was firewalled with no open ports or active services. Threat intelligence reported zero blacklist entries and no association with known campaigns or active attackers. Geolocation data placed the IP in a clean neighborhood with an abuse density of 0. Although the threat actor classification flagged the host as "Suspicious Host" due to observed indicators, no specific campaign was linked. Operational data recorded 27 total observations between 2026-07-16 and 2026-09-05, including one threat observation. DNS hygiene showed a poor score due to missing SPF and DMARC records. The final recommendation was to monitor the address, citing its clean
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | interlir-mnt |
| ASN | AS209604 |
| Network Name | TELEKOMUNiCASYON_LTD |
| CIDR Block | 208.92.225.0/24 |
| RIR | ARIN |
| Country | US |
| Abuse Contact | Available via RDAP |
🌐 DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No — PTR hostname does not resolve back to this IP (weak signal) |
🔐 DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
☁️ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown — Insufficient routing data to classify |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | — |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | None |
| Valid From | — |
| Valid Until | — |
🛡️ Public Network Snapshot
| Origin ASN | AS209604 |
| Network Prefix | 208.92.225.0/24 |
| Route mapping | Found |
| Certificates in transparency logs | 0 certificates |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 30% | 2 | 5 |
| routing | 32% | 2 | 3 |
| services | 12% | 2 | 2 |
| ownership | 25% | 3 | 4 |
| reputation | 26% | 1 | 5 |
| geolocation | 12% | 2 | 2 |
| Overall | 23% | 12 | 21 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-07-16 22:52:12 UTC |
| Last Seen | 2026-09-05 17:33:02 UTC |
| Profile Built | 2026-09-05 17:35:44 UTC |
| Data Freshness | Live |
| Signal Types | 23 |
| Total Observations | 31 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 208.92.225.13
Who owns the IP address 208.92.225.13?
208.92.225.13 is registered to interlir-mnt. The address falls within the 208.92.225.0/24 network block. Registration is held at ARIN.
Where is 208.92.225.13 located?
Geolocation data places 208.92.225.13 in New York, US-NY, United States. The local time zone is America/New_York. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 208.92.225.13 malicious or safe?
208.92.225.13 currently carries a low risk assessment, meaning no significant threat indicators have been observed. This assessment is generated from continuously collected signals and can change over time.