IP Intelligence Briefing: 80.223.202.238
Date: 2026-06-03
---
**1. Risk Profile**
- Risk Score: 15 (Low Risk)
- Provider: DATANET-NOC (Telia Finland)
- Geolocation: Vaasa, Finland (FI)
- Network Role: Residential/Business (no CDN, VPN, or hosting detected)
---
**2. Threat Indicators**
- No Malicious Activity: No indicators of spam, attacks, or known malicious campaigns.
- DNS Associations: Linked to `dsl-hkibng42-50dfca-238.dhcp.inet.fi` (residential ISP).
- ICMP Validation: Failed due to firewall blocking, suggesting a secure network.
---
**3. Network Relationships**
- Subnet: 80.223.202.0/24 (Telia Finland ASN: 1759).
- Neighbors: No active IPs in subnet (abuse density: 0%).
- BGP Context: Part of `80.220.0.0/14` prefix, managed by Telia.
---
**4. Historical Observations**
- Recent Activity:
- ICMP probing failed (distance ~1,489 km from probe).
- Geolocation inferred via multi-signal analysis (accuracy ±500m).
- No persistent threats or ownership changes detected.
---
**5. Security Recommendations**
- No Immediate Action Required: Low risk profile and no malicious indicators.
- Monitor: Track for unexpected DNS changes or network behavior.
- Firewall Rules: No rules generated due to low risk.
---
**6. Summary**
This IP belongs to Telia Finland and is registered for residential use in Vaasa. It shows no signs of malicious activity, but its firewalled nature (ICMP block) and lack of active services suggest a private or secure setup. No further action is needed unless contextually linked to a broader threat.
SOC Analyst Note: Contextualize with internal traffic patterns. If this IP is part of a larger network, ensure alignment with known Telia infrastructure.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | DATANET-NOC |
| ASN | AS1759 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | RIPE |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | dsl-hkibng42-50dfca-238.dhcp.inet.fi |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | dsl-hkibng42-50dfca-238.dhcp.inet.fi |
๐ DNS Hygiene
| Hygiene Score | 80% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 โ Basic operator with some routing infrastructure |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 37% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 8% | 1 | 1 |
| ownership | 24% | 2 | 3 |
| reputation | 15% | 1 | 2 |
| geolocation | 30% | 2 | 3 |
| Overall | 21% | 9 | 13 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-07 23:04:35 UTC |
| Last Seen | 2026-06-23 22:10:05 UTC |
| Profile Built | 2026-06-23 22:12:11 UTC |
| Data Freshness | Live |
| Signal Types | 19 |
| Total Observations | 20 |
Full dossier details are available via our API.