IPDebrief

85.76.13.230

IP Intelligence Dossier
Your IP: 216.73.217.131
{ } JSON 🔧 Full Actions API
🤖 Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# INTELLIGENCE BRIEFING: IP Address 85.76.13.230

## Executive Summary

IP 85.76.13.230 is a low-risk mobile carrier endpoint associated with Elisa Oyj (ASN 719), a major Finnish telecommunications provider. The IP operates within a clean subnet with no observed threat indicators, active attacks, or abuse activity. No security actions are recommended at this time.

---

## 1. Ownership & Registration

FieldValue
**ASN**719
**Organization**ELISA-MNT (Elisa Oyj)
**Network Block**85.76.8.0/21
**RIR**RIPE
**Country**Finland (FI)
**Region**Uusimaa
**City**Helsinki

---

## 2. Network Classification

---

## 3. Risk Assessment

MetricValueAssessment
**Risk Score**25Low Risk
**Reputation**Low RiskClean
**Abuse Confidence**Not CalculatedN/A
**Blacklist Count**0Clean
**DNSBL Listed**1 of 8Minimal
**Known Campaigns**0None
**Is Tor Exit**FalseNo
**Is Known Attacker**FalseNo
**Is Spam Source**FalseNo

---

## 4. DNS & Hostname Resolution

---

## 5. Control Plane & Routing

---

## 6. Subnet Neighborhood Analysis (/24)

MetricValue
**Subnet**85.76.13.0/24
**Abuse Density**0
**Classification**Clean
**Total Siblings**1
**Active Siblings**0
**Threat Siblings**0

Finding: The /24 subnet shows zero abuse activity and no threat siblings, indicating a clean local network segment.

---

## 7. Relationship Graph

---

## 8. Historical Observations (17 total)

---

## 9. Threat Indicators

---

## 10. Recommended Security Actions

Status: No actions recommended

CategoryRecommendation
**Firewall**No rules generated (low risk)
**WAF/Cloudflare**No blocking rules recommended
**AWS WAF**No rules recommended
**General**Monitor as passive traffic source

---

## Assessment & Intelligence Narrative

IP 85.76.13.230 is a legitimate mobile carrier endpoint belonging to Elisa Oyj, Finland's largest telecommunications operator. The IP is classified as a mobile network address with no open services, no active threat indicators, and zero abuse activity within its /24 neighborhood.

The control plane data shows minimal route changes and DNSSEC validation, indicating stable infrastructure. Historical observations confirm consistent mobile carrier classification over the monitoring period with no emergence of malicious activity.

Threat Posture: Low risk. The IP represents normal mobile carrier traffic from Elisa's LTE/5G network infrastructure. No blocking or mitigation actions are warranted. If observed in traffic logs, classify as legitimate carrier traffic and allow passage with standard mobile network filtering.

Monitoring Recommendation: No active monitoring required. Include in passive observation lists if comprehensive carrier IP monitoring is in place.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

Country🇫🇮 Finland
RegionUusimaa
CityHelsinki
TimezoneEurope/Helsinki
Latitude60.25
Longitude24.89

🏢 Ownership & Registration

OrganizationELISA-MNT
ASNAS719
Network NameSL-CGN
CIDR Block85.76.8.0/21
RIRRIPE
CountryFI
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR85-76-13-230-nat.elisa-mobile.fi
Forward ConfirmedYes — FCrDNS verified
Forward Hostnames85-76-13-230-nat.elisa-mobile.fi

🔐 DNS Hygiene

Hygiene Score40% (Fair)
SPFNot configured
DMARCNot configured
FCrDNSVerified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureMobile
Service PurposeFirewalled / No Services
Network TierTier 3 — Basic operator with some routing infrastructure
Mobile

🔌 Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Server—
HTTP Title—

🔐 TLS Certificate

🔒
No certificate
Issued by —
N/A
SANsNone
Valid From—
Valid Until—

🛡️ Public Network Snapshot

Origin ASNAS719
Network Prefix85.76.0.0/14
Route mappingFound

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
25%
11
routing
25%
11
services
25%
11
ownership
0%
00
reputation
0%
00
geolocation
0%
00
Overall12%33
Coverage: 3/6 dimensions · Data sufficiency: partial
Data CoherenceConsistent (100%)
AttributionModerate (70%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

📅 Observation Timeline 🔄 Live

First Seen2026-07-09 01:20:10 UTC
Last Seen2026-08-27 05:58:15 UTC
Profile Built2026-08-29 05:38:42 UTC
Data FreshnessLive
Signal Types18
Total Observations19
🔍 18 signal types · 19 observations collected
This report is generated from 18+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API 🔧 Actions API 📧 Enterprise Access

❓ Frequently Asked Questions About 85.76.13.230

Who owns the IP address 85.76.13.230?

85.76.13.230 is registered to ELISA-MNT. The address falls within the 85.76.8.0/21 network block. Registration is held at RIPE.

Where is 85.76.13.230 located?

Geolocation data places 85.76.13.230 in Helsinki, Uusimaa, Finland. The local time zone is Europe/Helsinki. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.

Is 85.76.13.230 malicious or safe?

85.76.13.230 currently carries a low risk assessment, meaning no significant threat indicators have been observed. This assessment is generated from continuously collected signals and can change over time.

What is the hostname for 85.76.13.230?

The reverse DNS (PTR) record for 85.76.13.230 is 85-76-13-230-nat.elisa-mobile.fi. This hostname is forward-confirmed, meaning it resolves back to the same address.

Is 85.76.13.230 a VPN, proxy, or data center address?

85.76.13.230 is classified as a mobile network based on network ownership and behavioural analysis.

🏘️ Related IP Addresses

Browse related networks

ℹ️ About This Report

All data shown is publicly available network metadata — IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.