IP Intelligence Briefing: 78.43.171.5
Date: 2026-06-08
---
**1. Risk Profile**
- Risk Score: 40 (Moderate Risk)
- Provider: Vodafone GmbH (AS3209)
- Geolocation: Stuttgart, Baden-Württemberg, Germany (48.77°N, 9.18°E)
- Network Role: Mobile Carrier (LTE/5G)
---
**2. Ownership & Infrastructure**
- ASN: 3209 (Vodafone)
- Organization: Unitymedia Administration (KABELBW-06)
- Subnet: 78.43.0.0/16 (Vodafone IP range)
- Abuse Contact: Available via RDAP
---
**3. Threat Indicators**
- No Malicious Activity Detected:
- No indicators in threat feeds, blacklists, or campaigns.
- No DNS-based attacks or TLS certificate anomalies.
- DNS Associations:
- Linked to `vodafone-ip.de` (PTR: `ip-078-043-171-005.um18.pools.vodafone-ip.de`).
- SPF record present; no DMARC or CAA records.
---
**4. Network Behavior**
- Open Ports: None detected.
- Services: No HTTP/HTTPS services or TLS certificates.
- Routing: Stable BGP prefix (78.43.0.0/16) with no recent route changes.
- Mobile Carrier: LTE/5G technology (MCC 262, MNC 02).
---
**5. Observation History**
- Last 30 Days:
- No persistent malicious activity or ownership changes.
- DNSSEC valid; no route instability or spoofing detected.
- Historical Stability:
- Consistent geolocation and network classification.
---
**6. Neighborhood Analysis**
- Subnet: 78.43.171.5/24 (no active neighbors detected).
- Abuse Density: 0% (no malicious siblings or high-risk neighbors).
---
**7. Recommendations**
- Monitor: Track DNS and routing changes, as mobile carrier IPs can be repurposed.
- Verify: Confirm if the IP is part of a legitimate mobile network or dormant infrastructure.
- No Immediate Action Required: No confirmed threats or suspicious activity detected.
---
Source: IPDebrief Threat Intelligence Platform
Note: This IP is associated with a mobile carrier and shows no malicious indicators. SOC teams should prioritize monitoring for unexpected service changes or anomalous traffic patterns.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Unitymedia Administration |
| ASN | AS3209 |
| Network Name | KABELBW-06 |
| CIDR Block | 78.43.0.0/16 |
| RIR | RIPE |
| Country | DE |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | ip-078-043-171-005.um18.pools.vodafone-ip.de |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | ip-078-043-171-005.um18.pools.vodafone-ip.de |
๐ DNS Hygiene
| Hygiene Score | 60% (Good) |
| SPF | Present |
| DMARC | Not configured |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Mobile |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 โ Basic operator with some routing infrastructure |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 13% | 1 | 1 |
| routing | 13% | 1 | 1 |
| services | 13% | 1 | 1 |
| ownership | 35% | 2 | 3 |
| reputation | 0% | 0 | 0 |
| geolocation | 13% | 1 | 1 |
| Overall | 15% | 6 | 7 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-18 15:27:25 UTC |
| Last Seen | 2026-06-08 15:10:42 UTC |
| Profile Built | 2026-06-08 15:19:27 UTC |
| Data Freshness | Live |
| Signal Types | 19 |
| Total Observations | 21 |
Full dossier details are available via our API.