# IP Intelligence Briefing: 213.139.63.86/32
## Executive Summary
IP address 213.139.63.86 presents a low risk profile with a risk score of 25/100. The address is associated with organization JO-JTC (ASN 8697) and is classified within a clean subnet environment. While no active malicious indicators were detected, the IP shows geolocation inconsistencies and limited DNSBL presence requiring monitoring awareness.
## Technical Profile
Ownership & Network:
- ASN: 8697 (JTC-MNT)
- Organization: JO-JTC
- Network Block: 213.139.63.64/26
- RIR: RIPE
- CIDR Classification: 213.139.63.86/32
Geolocation:
- Primary Location: New York, US (US-NY)
- Geolocation Confidence: Mixed signals with conflicting data sources
- Geolocation Consensus: Inconsistent (2 sources disagree)
- Secondary Signal: Jordan (JO) coordinates detected in historical observations
Network Role & Services:
- Infrastructure Type: Firewalled / No Services
- Open Ports: None detected
- Cloud/CDN/Proxy: Not identified
- Mobile/Residential: Not identified
DNS Configuration:
- PTR Hostnames: None resolved
- DNSSEC Valid: Yes
- Forward Resolution: 0 records
- Email Authentication: No SPF or DMARC records detected
## Threat Assessment
Risk Score: 25/100 (Low Risk)
Abuse Confidence: Not applicable
Known Campaigns: None detected
Threat Feeds: No associations
DNSBL Status:
- Listed: 1 out of 8 total lists
- Maximum Severity: High
- Implication: Single blacklist presence indicates limited reputation issues
Network Threat Indicators:
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
- Blacklist Count: 0 (primary assessment)
## Observation History
Signal Count: 13 total observations
Latest Activity: 2026-07-25
Temporal Trends:
- No persistent malicious behavior detected
- Ownership changes: 0
- Threat persistence days: 0
- Threat observation count: 0
Recent Signals (2026-07-25):
- Geolocation signals showing both US and JO coordinates with varying confidence levels
- DNSSEC validation confirmed
- Subnet classification signals indicating clean status
## Relationship Analysis
Detected Relationships: 3
- All relationships map to network ownership: JO-JTC
- No certificate or hostname associations detected
- No related subnets beyond immediate network
## Neighborhood Analysis (213.139.63.0/24)
Subnet Classification: Clean
Abuse Density: 0%
Total Siblings: 3
Active Siblings: 1
Threat Siblings: 0
Neighbor Risk Distribution:
- High Risk: 0
- Medium Risk: 0
- Low Risk: 2
Notable Neighbors:
- 213.139.63.21: Risk Score 25, Authority Score 50
- 213.139.63.102: Risk Score 0, Authority Score 50
## Traceroute & Network Behavior
- Hop Count: 30
- First Hop RTT: 0.1ms
- Last Hop RTT: 170ms
- Timed Out Hops: 19
- Transit Networks: Comcast detected
- BGP Prefix: 213.139.63.0/24
## Security Recommendations
Immediate Actions:
1. Monitor geolocation inconsistencies between US and JO signals
2. Investigate DNSBL listing (1/8 lists) with high severity
3. Correlate with neighbor 213.139.63.21 (also risk score 25)
Firewall Considerations:
- No immediate blocking required due to low risk score
- Consider monitoring for service enumeration attempts
- No specific firewall rules generated based on current risk profile
Long-term Monitoring:
- Track geolocation signal consistency
- Monitor for DNSBL additions
- Review for any changes in network classification
## Conclusion
IP 213.139.63.86 is classified as low risk with limited threat indicators. The primary concerns are geolocation signal inconsistency and a single high-severity DNSBL listing. No immediate threat action is warranted, but continued observation of geolocation signals and blacklist status is recommended. The subnet environment appears clean with no associated threat siblings or active malicious neighbors.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | JTC-MNT |
| ASN | AS8697 |
| Network Name | JO-JTC |
| CIDR Block | 213.139.63.64/26 |
| RIR | RIPE |
| Country | JO |
| Abuse Contact | Available via RDAP |
🌐 DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No — PTR hostname does not resolve back to this IP (weak signal) |
🔐 DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
☁️ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown — Insufficient routing data to classify |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | — |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | None |
| Valid From | — |
| Valid Until | — |
🛡️ Public Network Snapshot
| Origin ASN | AS8697 |
| Network Prefix | 213.139.63.0/24 |
| Route mapping | Found |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 0% | 0 | 0 |
| routing | 0% | 0 | 0 |
| services | 0% | 0 | 0 |
| ownership | 25% | 1 | 2 |
| reputation | 0% | 0 | 0 |
| geolocation | 0% | 0 | 0 |
| Overall | 4% | 1 | 2 |
| Data Coherence | Mostly Consistent (80%) — 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-07-09 01:19:32 UTC |
| Last Seen | 2026-08-26 16:36:48 UTC |
| Profile Built | 2026-08-29 07:52:27 UTC |
| Data Freshness | Live |
| Signal Types | 15 |
| Total Observations | 16 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 213.139.63.86
Who owns the IP address 213.139.63.86?
213.139.63.86 is registered to JTC-MNT. The address falls within the 213.139.63.64/26 network block. Registration is held at RIPE.
Where is 213.139.63.86 located?
Geolocation data places 213.139.63.86 in New York, US-NY, United States. The local time zone is America/New_York. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 213.139.63.86 malicious or safe?
213.139.63.86 currently carries a low risk assessment, meaning no significant threat indicators have been observed. This assessment is generated from continuously collected signals and can change over time.