# IP Intelligence Briefing: 79.215.163.97/32
## Executive Summary
On 2026-07-30, 79.215.163.97 was observed with a low-risk profile. The IP belongs to Deutsche Telekom's mobile infrastructure network and shows no current threat indicators. No security actions are recommended based on available intelligence.
---
## Network Identity & Ownership
| Attribute | Value |
|---|---|
| IP Address | 79.215.163.97/32 |
| ASN | 3320 (DTAG-NIC) |
| Organization | DTAG-DIAL24 |
| Network Block | 79.192.0.0/11 |
| RIR | RIPE |
| Abuse Contact | Available via RDAP |
Mobile Carrier: Deutsche Telekom AG (MCC: 262, MNC: 01)
Connection Type: LTE/5G Mobile
---
## Geolocation
| Attribute | Value |
|---|---|
| Country | Germany (DE) |
| Region | Saxony-Anhalt |
| City | Teuchern |
| Coordinates | 51.17°N, 10.45°E |
| Timezone | Europe/Berlin |
| GeoSource Count | 1 |
| GeoConsensus | Validated |
---
## Risk Assessment
| Metric | Score | Status |
|---|---|---|
| Overall Risk Score | 0 | Low Risk |
| Provider Score | 0 | Clean |
| Authority Score | 0 | Clean |
| Abuse Confidence | N/A | Not Applicable |
| Blacklist Count | 0 | Clean |
Threat Indicators:
- Known Attacker: No
- Spam Source: No
- Tor Exit Node: No
- Cloud/CDN/Proxy: No
- Hosting Provider: No
---
## DNS & Network Services
| Attribute | Value |
|---|---|
| PTR Hostname | p4fd7a361.dip0.t-ipconnect.de |
| Forward Resolution | Confirmed |
| Hosted Domains | None |
| Open Ports | None Detected |
| TLS Certificate | None |
| HTTP Title | None |
| Service Status | Firewalled / No Services |
Email Authentication:
- SPF Record: Not Configured
- DMARC Record: Not Configured
---
## Control Plane Data
| Attribute | Value |
|---|---|
| BGP Origin | 79.192.0.0/10 |
| DNSSEC Valid | Yes |
| DNSBL Listed | 0/8 Lists |
| Route Stability | Unstable |
| IRR Consistency | Not Evaluated |
---
## Neighborhood Analysis
Subnet: 79.215.163.97/24
Abuse Density: 0% (Clean)
Classification: Clean
Total Siblings: 1
Active Siblings: 1
Threat Siblings: 0
Risk Distribution: No high-risk or medium-risk neighbors detected.
---
## Observation History (19 Signals)
Latest Observation: 2026-07-30T05:51:51+00:00
Recent Signal Summary:
- Geolocation: Germany (DE) - Confidence: 52%
- Subnet Classification: Clean - Confidence: 40%
- Port Scan: No open ports detected - Confidence: 70%
- ASN Resolution: AS3320 Deutsche Telekom AG - Confidence: 75%
Threat Persistence: None observed (0 threat observation days)
---
## Relationship Graph
Associated Entities:
- Network: DTAG-DIAL24 (4 instances)
- DNS: p4fd7a361.dip0.t-ipconnect.de (3 instances)
No malicious entity relationships detected.
---
## Recommended Security Actions
Current Status: No actions required
Firewall Rules: None generated (IP poses no immediate threat)
Recommendation: This IP represents standard mobile infrastructure from Deutsche Telekom. No blocking or rate-limiting rules are warranted unless this IP is observed in the context of a specific threat campaign or anomalous traffic pattern.
---
## Intelligence Assessment
This IP address is a residential/mobile endpoint within Deutsche Telekom's German network infrastructure. The absence of open services, lack of threat indicators, and clean neighborhood classification indicate legitimate use. SOC analysts should treat this as benign unless correlated with other threat intelligence indicating malicious activity.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | DTAG-NIC |
| ASN | AS3320 |
| Network Name | DTAG-DIAL24 |
| CIDR Block | 79.192.0.0/11 |
| RIR | RIPE |
| Country | DE |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | p4fd7a361.dip0.t-ipconnect.de |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | p4fd7a361.dip0.t-ipconnect.de |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Mobile |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 0% | 0 | 0 |
| routing | 0% | 0 | 0 |
| services | 0% | 0 | 0 |
| ownership | 50% | 2 | 3 |
| reputation | 0% | 0 | 0 |
| geolocation | 0% | 0 | 0 |
| Overall | 8% | 2 | 3 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-07-25 21:01:19 UTC |
| Last Seen | 2026-07-30 05:46:10 UTC |
| Profile Built | 2026-07-30 05:54:50 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 21 |
Full dossier details are available via our API.