IPDebrief

91.217.249.51

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

IP Intelligence Briefing: 91.217.249.51

Date: 2026-06-11

---

**1. Core Profile**

- ASN: 206092

- Organization: VPN Consumer Frankfurt, Germany

- Network: FRANKFURT-AM-MAIN-DE-91-217-249-0

- Country: United States (NY)

- Region: New York

- City: New York

- Coordinates: Unresolved (latitude/longitude null)

- Consensus: Conflicting data (geolocated in US but owned by Germany-based provider)

- No malicious activity, spam, or known attacker associations.

- Not listed in DNSBLs or threat feeds.

---

**2. Observation History**

- June 11, 2026:

- Geolocation inferred to Germany (Frankfurt) with 40% confidence.

- DNSSEC validation confirmed.

- June 4, 2026:

- Stable ownership with no recent changes.

- June 2, 2026:

- Geolocation resolved to Frankfurt am Main, Germany.

- No persistent malicious behavior detected.

- Geolocation inconsistencies suggest potential spoofing or misconfigured routing.

---

**3. Relationships**

- Subnet: 91.217.249.0/24

- Shared network with VPN Consumer Frankfurt (ASN 206092).

- No direct ties to campaigns, domains, or certificates.

- BGP route stability: Unstable (route changes in last 30 days).

---

**4. Neighborhood Analysis**

- Medium Risk: 39 IPs (51%)

- Low Risk: 37 IPs (49%)

- Abuse Density: 0% (no malicious activity detected in subnet).

- IPs 91.217.249.10, 27, 29โ€“31 show medium risk (25โ€“50 score).

---

**5. Actionable Insights**

- IP is geolocated in the US but owned by a German provider. Investigate potential spoofing or misconfigured routing.

- BGP route instability may indicate transit issues or network misconfigurations.

- Track geolocation consistency and subnet activity for anomalies.

- Validate DNSSEC and routing policies to prevent spoofing.

Conclusion:

91.217.249.51 presents moderate risk due to geolocation inconsistencies and network instability. No direct malicious activity detected, but ongoing monitoring is advised to address potential spoofing or misconfiguration risks.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ฉ๐Ÿ‡ช Germany
RegionHesse
CityFrankfurt am Main
TimezoneEurope/Berlin
Latitude51.62
Longitude8.04

๐Ÿข Ownership & Registration

OrganizationVPN Consumer Frankfurt, Germany
ASNAS206092
Network NameFRANKFURT-AM-MAIN-DE-91-217-249-0
CIDR Block91.217.249.0/24
RIRRIPE
CountryDE
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTR RecordNo PTR
Forward ConfirmedNo โ€” PTR hostname does not resolve back to this IP (weak signal)

๐Ÿ” DNS Hygiene

Hygiene Score20% (Poor)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECValid
CAANot configured

โ˜๏ธ Network Classification

InfrastructureUnknown
Service PurposeFirewalled / No Services
Network TierUnknown โ€” Insufficient routing data to classify
No specific classification

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Serverโ€”
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
No certificate
Issued by โ€”
N/A
SANsNone
Valid Fromโ€”
Valid Untilโ€”

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
13%
11
routing
13%
11
services
13%
11
ownership
30%
23
reputation
0%
00
geolocation
13%
11
Overall14%67
Coverage: 5/6 dimensions ยท Data sufficiency: partial
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-05-25 18:48:47 UTC
Last Seen2026-06-11 00:55:54 UTC
Profile Built2026-06-11 01:04:05 UTC
Data FreshnessLive
Signal Types16
Total Observations16
๐Ÿ” 16 signal types ยท 16 observations collected
This report is generated from 16+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.