IP Intelligence Briefing: 85.215.175.242
Date: 2026-06-10
---
**1. Core Profile**
- Risk Score: 25 (Low Risk)
- Ownership:
- AS: AS8560 (IONOS Cloud)
- Registrar: RIPE NCC
- Netname: `de-ber-ionos-cloud-txl`
- Geolocation:
- Country: United Kingdom (GB)
- City: London
- Coordinates: Not explicitly resolved
- Threat Indicators:
- No malicious activity detected (no malware, phishing, or C2 indicators).
- DNSBL Listing: 1 high-severity listing (likely false positive due to low confidence).
- Network Role:
- Firewalled / No Services
- No CDN, VPN, or proxy detection.
---
**2. Observation History (30-Day Window)**
- Total Signals: 14
- Key Findings:
- DNSBL Alert: 1 high-severity DNSBL listing (confidence: 85%).
- Geolocation: Consistent with London, UK (235 km from probe, 108 ms RTT).
- Routing Stability: Subnet `85.215.175.242/24` shows no abuse density or threats.
- Low Activity: No scans, honeypot hits, or anomalous behavior.
---
**3. Relationships & Network Context**
- Linked Entities:
- Network: `de-ber-ionos-cloud-txl` (IONOS Cloud infrastructure).
- No Subnet Overlaps: No sibling IPs or shared subnets detected.
- Subnet Analysis:
- 85.215.175.242/24: 0 abusive neighbors, 0 active threats.
---
**4. Recommendations**
- Monitor DNSBL Listing: Investigate the high-severity DNSBL entry (e.g., Spamhaus, Barracuda) for false positives or misconfigurations.
- Verify Ownership: Confirm IONOS Cloudโs compliance with security standards for cloud infrastructure.
- Baseline Behavior: No immediate action required due to low risk, but maintain monitoring for unexpected changes.
Conclusion: The IP is associated with a legitimate cloud provider and shows no active malicious behavior. The DNSBL listing warrants further investigation but does not indicate an immediate threat.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | AS8560-MNT |
| ASN | AS8560 |
| Network Name | de-ber-ionos-cloud-txl |
| CIDR Block | 85.215.160.0/19 |
| RIR | RIPE |
| Country | DE |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown โ Insufficient routing data to classify |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 13% | 1 | 1 |
| routing | 13% | 1 | 1 |
| services | 13% | 1 | 1 |
| ownership | 27% | 2 | 3 |
| reputation | 0% | 0 | 0 |
| geolocation | 27% | 2 | 2 |
| Overall | 15% | 7 | 8 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-24 12:35:56 UTC |
| Last Seen | 2026-06-10 16:29:22 UTC |
| Profile Built | 2026-06-10 16:36:56 UTC |
| Data Freshness | Live |
| Signal Types | 18 |
| Total Observations | 18 |
Full dossier details are available via our API.