IP Intelligence Briefing: 80.187.106.197
*Generated via IPDebrief tools: Profile, History, Relationships, Neighbors*
---
**Core Profile**
- Risk Score: 40 (Moderate Risk)
- Ownership: Registered to Alexander Schloesser (Deutsche Telekom AG, ASN 3320).
- Geolocation: Frankfurt am Main, Germany (51.17°N, 10.45°E).
- Network Role: Mobile carrier (LTE/5G) under Deutsche Telekom.
- Threat Indicators: No detected malicious activity, spam, or known attacker associations.
- DNS: Resolves to `tmo-106-197.customers.d1-online.com` (no email auth records).
- Subnet: 80.187.106.197/24 (clean, abuse density: 0%).
---
**Observation History**
- Risk Stability: Consistent moderate risk score (40) over 30 days.
- Geolocation: Plausible Frankfurt location with 400m accuracy radius.
- Operator Score: "Basic" (0.2609), indicating minimal network risk.
- Threat Signals: No spikes in malicious activity or DNS anomalies.
---
**Relationships**
- DNS Associations: Multiple links to `tmo-106-197.customers.d1-online.com` (likely internal/mobile network).
- Network Affiliation: Part of Deutsche Telekomβs `CUSTOMERS-DE` subnet (ASN 3320).
- No External Threat Links: No correlations to known malicious campaigns, C2 servers, or blacklists.
---
**Neighborhood Analysis**
- Subnet: 80.187.106.197/24
- Neighbor Risk: 0 active IPs detected; subnet classified as "clean."
- Abuse Density: 0% (no malicious or suspicious sibling IPs).
---
**Recommendations**
1. Monitor for Changes: Track geolocation or risk score shifts, as mobile networks may reconfigure.
2. Verify DNS: Confirm `tmo-106-197.customers.d1-online.com` is a legitimate internal/mobile service.
3. Subnet-Wide Scan: Given the clean subnet, consider periodic scans for emerging threats.
Conclusion: This IP is associated with a mobile carrier and shows no immediate malicious indicators. No urgent action required, but ongoing monitoring is advised.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Alexander Schloesser |
| ASN | AS3320 |
| Network Name | CUSTOMERS-DE |
| CIDR Block | 80.187.0.0/18 |
| RIR | RIPE |
| Country | DE |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | tmo-106-197.customers.d1-online.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | tmo-106-197.customers.d1-online.com |
π DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Mobile |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 19% | 2 | 2 |
| routing | 13% | 1 | 1 |
| services | 13% | 1 | 1 |
| ownership | 30% | 2 | 3 |
| reputation | 13% | 1 | 1 |
| geolocation | 13% | 1 | 1 |
| Overall | 17% | 8 | 9 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-20 22:13:53 UTC |
| Last Seen | 2026-06-09 06:57:12 UTC |
| Profile Built | 2026-06-09 07:01:14 UTC |
| Data Freshness | Live |
| Signal Types | 17 |
| Total Observations | 17 |
Full dossier details are available via our API.