IP Intelligence Briefing: 213.92.222.76
Date: 2026-06-10
---
**1. Core Profile**
- Risk Score: 80 (High Risk)
- Owner: Arkadiusz Suchy (PL-SERVNET4, ASN 29314)
- Geolocation: InowrocΕaw, Kujawsko-Pomorskie, Poland (51.92°N, 19.15°E)
- Network Role: Firewalled / No Services (no open ports, no TLS/HTTP activity)
- Threat Indicators: No direct malicious activity observed.
---
**2. Threat Observations**
- DNSBL Listings: Listed on 4/8 DNSBLs (e.g., Spamhaus, OpenDNS, etc.)
- BGP Anomalies:
- ASN 29314 (VECTRA S.A.) routes prefix 213.92.192.0/18.
- Operator score: "Basic" (0.2609).
- Geolocation Confidence: 0.52 (inferred from multi-signal inference).
---
**3. Network Relationships**
- DNS Associations:
- `213-92-222-76.serv-net.pl` (PTR record).
- No email authentication (no DMARC/SPF).
- Network Affiliation:
- Same subnet (`PL-SERVNET4`) as 14 other IPs.
- No CDN, cloud, or mobile carrier associations.
---
**4. Neighborhood Analysis**
- Subnet: 213.92.222.0/24
- Neighbor Risk Distribution:
- 5 IPs with medium risk (55β60 score).
- 1 IP with low risk (score 0).
- Abuse Density: 0 (no reported abuse in subnet).
---
**5. Temporal Trends**
- Observation History:
- 19 signals recorded over 30 days.
- No persistent malicious activity (threat persistence days: 0).
- Recent DNSBL listings (4/8) suggest potential spam or abuse.
---
**6. Recommended Actions**
- Monitor DNSBL Listings: Investigate why this IP is listed on 4 DNSBLs.
- Check Neighbors: Focus on medium-risk neighbors (e.g., 213.92.222.43, 213.92.222.104).
- Verify BGP Routes: Confirm ASN 29314βs routing policies for anomalies.
- Block/Restrict: Consider blocking the IP if it persists in DNSBLs or shows increased risk.
---
Conclusion:
This IP is part of a low-abuse subnet with no direct malicious indicators. However, its DNSBL listings and mixed BGP signals warrant closer monitoring. SOC teams should prioritize investigating its neighbors and verify the legitimacy of its network operations.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Arkadiusz Suchy |
| ASN | AS29314 |
| Network Name | PL-SERVNET4 |
| CIDR Block | 213.92.222.0/23 |
| RIR | RIPE |
| Country | PL |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | 213-92-222-76.serv-net.pl |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | 213-92-222-76.serv-net.pl |
π DNS Hygiene
| Hygiene Score | 60% (Good) |
| SPF | Present |
| DMARC | Not configured |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 35% | 2 | 2 |
| routing | 25% | 1 | 1 |
| services | 13% | 1 | 1 |
| ownership | 30% | 2 | 3 |
| reputation | 23% | 1 | 2 |
| geolocation | 45% | 2 | 3 |
| Overall | 28% | 9 | 12 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-22 15:19:23 UTC |
| Last Seen | 2026-06-19 11:33:53 UTC |
| Profile Built | 2026-06-10 02:29:40 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 21 |
Full dossier details are available via our API.