IP Intelligence Briefing: 217.234.81.85
Date: 2026-06-12
---
**1. Risk Profile**
- Overall Risk Score: Low (25/100)
- Provider Score: 0 (No malicious provider associations)
- Authority Score: 0 (Not a known authoritative IP)
- Stability: Unstable (route stability score indicates potential network fluctuations).
---
**2. Ownership & Geolocation**
- Registered Owner: DTAG-NIC (Deutsche Telekom AG, Germany).
- ASN: 3320 (DTAG-DIAL15 network).
- Geolocation:
- Country: United States (US-NY, New York).
- Mobile Carrier: Deutsche Telekom (LTE/5G, Germany).
- Discrepancy Note: Geolocation reports US-based activity, but mobile carrier data links to Germany.
---
**3. Threat & Network Activity**
- Threat Indicators:
- No malicious indicators (no blacklists, spam, or known attacker associations).
- DNS: Resolves to `pd9ea5155.dip0.t-ipconnect.de` (t-ipconnect.de domain).
- Network Role: Mobile device (LTE/5G) with no CDN, cloud, or residential flags.
- Services: No open ports, TLS certificates, or HTTP services detected.
---
**4. Observation History (Last 30 Days)**
- DNS Activity:
- 1 DNS resolution observed for `pd9ea5155.dip0.t-ipconnect.de`.
- No DNSBL listings or email reputation issues.
- Network Changes:
- 0 route changes detected; BGP prefix stability questionable.
---
**5. Relationships & Neighborhood**
- Network Relationships:
- Linked to DTAG-DIAL15 network (ASN 3320).
- No connections to known malicious subnets or organizations.
- Subnet Analysis:
- /24 Subnet: 217.234.81.0/24.
- Abuse Density: 0% (no abusive sibling IPs detected).
---
**6. Recommendations**
- Monitoring: Track for unusual traffic patterns, given the mobile IP nature and geolocation discrepancy.
- Firewall: No immediate blocking required; monitor for deviations from baseline behavior.
- Investigation: Verify geolocation accuracy, as the IPโs mobile carrier (Germany) conflicts with US-based geolocation data.
Conclusion: This IP appears to be a legitimate Deutsche Telekom mobile device with no malicious activity detected. Continue monitoring for anomalies.
---
*Generated using IPDebrief intelligence tools. Data as of 2026-06-12.*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | DTAG-NIC |
| ASN | AS3320 |
| Network Name | DTAG-DIAL15 |
| CIDR Block | 217.224.0.0/13 |
| RIR | RIPE |
| Country | DE |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | pd9ea5155.dip0.t-ipconnect.de |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | pd9ea5155.dip0.t-ipconnect.de |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Mobile |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 0% | 0 | 0 |
| routing | 0% | 0 | 0 |
| services | 0% | 0 | 0 |
| ownership | 27% | 2 | 3 |
| reputation | 0% | 0 | 0 |
| geolocation | 13% | 1 | 1 |
| Overall | 6% | 3 | 4 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-06-01 11:44:32 UTC |
| Last Seen | 2026-06-12 11:34:24 UTC |
| Profile Built | 2026-06-12 11:41:54 UTC |
| Data Freshness | Live |
| Signal Types | 19 |
| Total Observations | 19 |
Full dossier details are available via our API.