Your IP: 216.73.216.123
๐ค Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.
IP Intelligence Briefing: 79.205.116.181
Date: 2026-06-12
---
**1. Risk Profile**
- Risk Score: 25 (Low Risk)
- Provider: Deutsche Telekom AG (AS3320)
- Geolocation: Residential mobile IP in Bernburg, Saxony-Anhalt, Germany (51.17°N, 10.45°E).
- Network: Part of DTAG-DIAL24 network (ASN 3320), registered to Deutsche Telekom.
- Threat Indicators: Minimal. No active malware, phishing, or spam signals. One DNSBL listing (low severity) detected.
---
**2. Observation History**
- Residential Activity: Confirmed as a residential/mobile IP with LTE/5G connectivity.
- DNSBL Listing: Flagged in one of 8 DNSBLs (low severity), suggesting potential spam or abuse history.
- Geolocation Consistency: Plausible Germany location, but inferred with moderate confidence (400km accuracy radius).
---
**3. Network Relationships**
- Associated Hostname: `p4fcd74b5.dip0.t-ipconnect.de` (TIPConnect.de, Deutsche Telekom).
- Network Context: Part of the DTAG-DIAL24 network, which has a history of abuse (18 observations).
- Subnet Cleanliness: No malicious neighbors in the 79.205.116.0/24 subnet.
---
**4. Threat Assessment**
- Current Risk: Low. No active threats, malware, or campaign activity detected.
- Abuse Density: Subnet abuse density is 0% (clean).
- Persistence: No signs of long-term malicious activity.
---
**5. Recommended Actions**
- Monitor: Track DNSBL status and geolocation consistency for anomalies.
- Network Segmentation: Ensure residential IPs are isolated from critical assets.
- Verify DNS: Confirm DNSSEC validity and check for domain reputation risks.
- No Blocking Required: No firewall rules or mitigation actions recommended due to low risk.
---
Conclusion:
This IP is a residential/mobile connection with no active malicious indicators. While it is part of a network with historical abuse, the IP itself shows no current threat. Continued monitoring is advised for any changes in behavior or new threat signals.
Source: IPDebrief Threat Intelligence Platform
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | DTAG-NIC |
| ASN | AS3320 |
| Network Name | DTAG-DIAL24 |
| CIDR Block | 79.192.0.0/11 |
| RIR | RIPE |
| Country | DE |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | p4fcd74b5.dip0.t-ipconnect.de |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | p4fcd74b5.dip0.t-ipconnect.de |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Mobile |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
No certificate
Issued by โ
N/A
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 0% | 0 | 0 |
| routing | 0% | 0 | 0 |
| services | 0% | 0 | 0 |
| ownership | 27% | 2 | 3 |
| reputation | 0% | 0 | 0 |
| geolocation | 13% | 1 | 1 |
| Overall | 6% | 3 | 4 |
Coverage: 2/6 dimensions ยท Data sufficiency: partial
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-31 17:24:49 UTC |
| Last Seen | 2026-06-12 08:50:30 UTC |
| Profile Built | 2026-06-12 09:07:07 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 21 |
๐ 21 signal types ยท 21 observations collected
This report is generated from 21+ independent intelligence signals including
ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds,
behavioral fingerprinting, and more.
Full dossier details are available via our API.
Full dossier details are available via our API.
โน๏ธ About This Report
All data shown is publicly available network metadata โ IP addresses do not reliably identify individuals.
Assessments are probabilistic and should not be used as sole basis for access control decisions.
To report an issue or request data review, contact admin@ipdebrief.com.