IP Intelligence Briefing: 92.249.63.60
Date: 2026-06-10
---
**Risk Profile**
- Risk Score: 80 (High Risk)
- Reputation: High Risk
- Provider: MERIC-MNT (ASN 207459)
- Geolocation: Newark, New Jersey, US (Routed via Comcast)
- Network Role: Firewalled / No Services
---
**Threat Observations**
- DNS Associations: Linked to `hostmaster.narhost.com` (SPF validated, no DMARC).
- Historical Signals:
- Listed in 3/8 threat feeds (high severity) as of 2026-06-10.
- DNSBL listings (6/8) indicate potential abuse.
- No active scans, malware, or known attacker campaigns.
---
**Network Relationships**
- Shared Network: Part of `TEKNOSOS-TR` (92.249.63.0/24).
- Subnet Abuse Density: 0% (no malicious neighbors detected).
- DNS Chain: Resolves to `narhost.com` with SPF validation.
---
**Actionable Insights**
1. Monitor DNS Configuration:
- Missing DMARC records could allow email spoofing.
- Verify `narhost.com` for phishing or malicious activity.
2. Subnet Validation:
- Low abuse density in 92.249.63.0/24, but high-risk IP is isolated.
3. Threat Feed Monitoring:
- Investigate 3/8 high-severity listings (e.g., DNSBLs) for potential spoofing or botnet activity.
4. Geolocation Discrepancy:
- IP registered to the US but geolocated to Turkey (TR). Verify routing anomalies or misconfigurations.
---
Recommendation: Implement DNS filtering for `narhost.com`, monitor for DNSBL-related threats, and validate geolocation inconsistencies. No immediate firewall action required due to lack of active malicious activity.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | MERIC-MNT |
| ASN | AS207459 |
| Network Name | TEKNOSOS-TR |
| CIDR Block | 92.249.63.0/24 |
| RIR | RIPE |
| Country | TR |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | hostmaster.narhost.com |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | hostmaster.narhost.com |
π DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Present |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown β Insufficient routing data to classify |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 13% | 1 | 1 |
| routing | 13% | 1 | 1 |
| services | 13% | 1 | 1 |
| ownership | 30% | 2 | 3 |
| reputation | 0% | 0 | 0 |
| geolocation | 13% | 1 | 1 |
| Overall | 14% | 6 | 7 |
| Data Coherence | Mostly Consistent (80%) β 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-24 18:42:01 UTC |
| Last Seen | 2026-06-10 18:20:19 UTC |
| Profile Built | 2026-06-10 18:28:21 UTC |
| Data Freshness | Live |
| Signal Types | 19 |
| Total Observations | 19 |
Full dossier details are available via our API.