IP Intelligence Briefing: 92.208.105.153
Date: 2026-06-08
1. Risk Profile
- Overall Risk: Low Risk (0/100)
- Provider Score: 0
- Authority Score: 0
- Stability Score: 0
- Threat Indicators: None detected (no malware, phishing, or malicious activity).
2. Ownership & Geolocation
- ISP: Vodafone Germany IP Core Backbone
- Location: Frankfurt am Main, Hesse, Germany (50.12°N, 8.64°E)
- ASN: 3209 (VODANET - Vodafone GmbH, DE)
- Network Role: Core backbone infrastructure (no public services, firewalled).
3. Threat Observations
- Historical Signals:
- Linked to `vodafone-ip.de` (DNS and BGP records).
- No malicious campaigns, spam, or blacklisted activity.
- One medium-risk signal (unresolved, likely false positive).
- Behavioral Flags: No honeypot hits, enumeration attempts, or WAF violations.
4. Network Relationships
- Subnet: 92.208.105.0/24 (Vodafone internal network).
- Related Entities:
- Internal DNS hosts (e.g., `ipservice-092-208-105-153.092.208.pools.vodafone-ip.de`).
- BGP prefix: 92.208.0.0/14 (Vodafone backbone).
5. Subnet Neighborhood
- Total Neighbors: 6 IPs in 92.208.105.0/24.
- Risk Distribution:
- 1 medium-risk neighbor (92.208.105.223, 40/100).
- 5 low-risk neighbors.
- Abuse Density: 0% (no malicious activity in subnet).
6. Recommendations
- Monitor Neighbor 92.208.105.223: Investigate medium-risk score for potential anomalies.
- Verify DNS Resolutions: Ensure internal DNS records (e.g., `vodafone-ip.de`) are not being misused.
- Confirm Subnet Segmentation: Confirm 92.208.105.0/24 is properly isolated from public-facing networks.
Conclusion:
The IP is part of Vodafoneβs core backbone infrastructure with no direct malicious activity. However, the presence of a medium-risk neighbor warrants further investigation to rule out lateral movement or compromised internal assets. No immediate action required for the IP itself.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Vodafone Germany IP Core Backbone |
| ASN | AS3209 |
| Network Name | β |
| CIDR Block | β |
| RIR | RIPE |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | ipservice-092-208-105-153.092.208.pools.vodafone-ip.de |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | ipservice-092-208-105-153.092.208.pools.vodafone-ip.de |
π DNS Hygiene
| Hygiene Score | 60% (Good) |
| SPF | Present |
| DMARC | Not configured |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Mobile |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown β Insufficient routing data to classify |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 13% | 1 | 1 |
| routing | 13% | 1 | 1 |
| services | 13% | 1 | 1 |
| ownership | 27% | 2 | 3 |
| reputation | 13% | 1 | 2 |
| geolocation | 13% | 1 | 1 |
| Overall | 16% | 7 | 9 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-17 15:14:07 UTC |
| Last Seen | 2026-06-11 09:04:21 UTC |
| Profile Built | 2026-06-08 09:41:48 UTC |
| Data Freshness | Live |
| Signal Types | 18 |
| Total Observations | 19 |
Full dossier details are available via our API.