# IP Intelligence Briefing: 89.244.84.177
Classification: LOW RISK / MONITOR
Date: Intelligence compiled from current signal observations
---
## Executive Summary
IP address 89.244.84.177 is classified as low risk with a risk score of 0. The address shows no active threat indicators, no blacklist presence, and no evidence of malicious activity. The IP is currently firewalled with no open services detected. While the broader /24 neighborhood exhibits moderate abuse density, the target IP remains isolated from active threat patterns.
---
## Network Profile
Risk Assessment:
- Risk Score: 0
- Provider Score: 0
- Authority Score: 0
- Stability Score: 0
Geolocation:
- Country: Germany (DE)
- Region: Düsseldorf/NW area
- Coordinates: ~51.17°N, 10.45°E
- Multiple geolocation sources indicate German infrastructure
Network Ownership:
- ASN: Not resolved
- Organization: Not identified
- Registration: No authoritative data
Network Role:
- Classification: Firewalled / No Services
- Not identified as: CDN, Cloud, VPN, Proxy, Tor, or Hosting infrastructure
- Mobile Carrier: None
---
## Threat Intelligence
Threat Indicators:
- Blacklist Count: 0
- Is Tor Exit: False
- Is Known Attacker: False
- Is Spam Source: False
- Known Campaigns: None
Behavioral Signals:
- Honeypot Hits: 0
- Enumeration Strikes: 0
- WAF Violations: 0
- Total Incidents: 0
- Active Attacker Status: False
Control Plane:
- BGP Prefix: Not detected
- Origin ASN: Not resolved
- Route Stability: False
- RPKI State: Not validated
- DNSBL Listed: 0
---
## Observation History
Eight signal observations recorded, most recent from July 2026. Key observations include:
1. Geolocation Signals: Multiple sources confirm German infrastructure (Düsseldorf/Rüsselsheim am Main area)
2. ISP Identification: AS8881 (1&1 Versatel Deutschland GmbH) referenced in signals
3. Risk Scoring: Minimal/Medium risk classifications across sources
4. Signal Confidence: Variable (0.04 to 0.75), indicating inconsistent data quality
Temporal Analysis: No persistent malicious behavior detected. Threat observation count: 0.
---
## Neighborhood Analysis
Subnet: 89.244.84.0/24
Abuse Density: 0 (Low)
Neighbor Distribution:
- Total Siblings: 5
- High Risk: 0
- Medium Risk: 3 (Risk Score: 40)
- Low Risk: 2 (Risk Score: 0)
Neighbor IPs:
| IP Address | Risk Score | Authority Score |
|---|---|---|
| 89.244.84.7 | 40 | 60 |
| 89.244.84.16 | 40 | 60 |
| 89.244.84.179 | 0 | 60 |
| 89.244.84.181 | 40 | 60 |
| 89.244.84.190 | 0 | 50 |
*Note: Target IP 89.244.84.177 is not included in neighbor count.*
---
## Relationships
No direct relationships detected to:
- Related subnets
- Hostnames
- Organizations
- Certificates
---
## DNS Analysis
- PTR Hostnames: None
- Forward Resolution: 0 records
- Hosted Domains: 0
- Email Authentication: No SPF/DMARC records
- Forward Hostnames: Empty
---
## Recommended Actions
No immediate action required. Based on current risk profile and behavioral signals, this IP does not warrant blocking or special handling.
Monitoring Recommendations:
- Continue standard observation
- Monitor for emergence of open ports or service changes
- Watch for any relationship development with known malicious entities
Firewall Rules: None required at this time
---
## Conclusion
IP 89.244.84.177 presents no immediate threat to the network. The address is a dormant infrastructure endpoint with no active services, no threat indicators, and no evidence of malicious use. While the surrounding /24 subnet shows some moderate risk activity, the target IP remains isolated from those patterns. No firewall rules or blocking measures are recommended. Standard monitoring practices should suffice.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
🏢 Ownership & Registration
| Organization | 1&1 Versatel GmbH |
| ASN | AS8881 |
| Network Name | DE-VERSATEL-20060504 |
| CIDR Block | 89.244.0.0/14 |
| RIR | RIPE |
| Country | DE |
| Abuse Contact | Available via RDAP |
🌐 DNS Intelligence
| PTR | i59F454B1.versanet.de |
| Forward Confirmed | Yes — FCrDNS verified |
| Forward Hostnames | i59F454B1.versanet.de |
🔐 DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | 2/2 domains |
| DMARC | 0/2 domains |
| FCrDNS | Verified |
| DNSSEC | Not signed |
| CAA | Not configured |
| Domains Checked | 2 domains |
☁️ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown — Insufficient routing data to classify |
🔌 Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | — |
| HTTP Title | — |
🔐 TLS Certificate
| SANs | None |
| Valid From | — |
| Valid Until | — |
🛡️ Public Network Snapshot
| Origin ASN | AS8881 |
| Network Prefix | 89.244.80.0/20 |
| Route mapping | Found |
🎯 Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 12% | 2 | 2 |
| routing | 8% | 1 | 1 |
| services | 8% | 1 | 1 |
| ownership | 17% | 2 | 3 |
| reputation | 8% | 1 | 2 |
| geolocation | 23% | 2 | 2 |
| Overall | 13% | 9 | 11 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
📅 Observation Timeline 🔄 Live
| First Seen | 2026-07-06 06:02:06 UTC |
| Last Seen | 2026-10-07 06:42:02 UTC |
| Profile Built | 2026-10-07 06:44:47 UTC |
| Data Freshness | Live |
| Signal Types | 24 |
| Total Observations | 26 |
Full dossier details are available via our API.
❓ Frequently Asked Questions About 89.244.84.177
Who owns the IP address 89.244.84.177?
89.244.84.177 is registered to 1&1 Versatel GmbH. The address falls within the 89.244.0.0/14 network block. Registration is held at RIPE.
Where is 89.244.84.177 located?
Geolocation data places 89.244.84.177 in Rüsselsheim am Main, Hesse, Germany. The local time zone is Europe/Berlin. IP geolocation is approximate and indicates the network's registered or routed location rather than a precise physical address.
Is 89.244.84.177 malicious or safe?
89.244.84.177 currently carries a moderate risk assessment, meaning some indicators warrant caution, but the evidence is mixed. This assessment is generated from continuously collected signals and can change over time.
What is the hostname for 89.244.84.177?
The reverse DNS (PTR) record for 89.244.84.177 is i59F454B1.versanet.de. This hostname is forward-confirmed, meaning it resolves back to the same address.