IP Intelligence Briefing: 93.195.94.204
Date: June 11, 2026
---
**1. Core Profile**
- Risk Score: Moderate (50/100)
- Ownership: Registered to DTAG-NIC (AS3320) under the US-NY region.
- Geolocation:
- Reported Location: New York, US (via geolocation).
- Mobile Carrier: Deutsche Telekom (Germany), LTE/5G.
- Discrepancy: A historical observation (June 2, 2026) indicates the IP was geolocated to Stuttgart, Germany.
- Network Role: Mobile device (no public services or infrastructure).
- Threat Indicators: No malicious activity, spam, or known attacker associations.
---
**2. Observation History**
- Temporal Trends:
- No persistent malicious behavior; threat observation count is zero.
- Recent signals (June 11, 2026) show basic risk with low confidence (0.60).
- Historical data (June 1โ4, 2026) includes geolocation inconsistencies and minor network stability flags.
---
**3. Relationships & Context**
- Network Associations:
- Linked to DTAG-DIAL25 subnet (same provider).
- DNS records point to p5dc35ecc.dip0.t-ipconnect.de (Telekom-hosted).
- No Known Malicious Connections: No correlations to threat feeds, campaigns, or compromised entities.
---
**4. Neighborhood Analysis**
- Subnet: 93.195.94.204/24.
- Neighbor Data: No active or risky sibling IPs detected. Subnet abuse density is zero.
---
**5. Recommendations**
- Monitor Geolocation Discrepancies: Investigate the inconsistent location data (US vs. Germany) to confirm if the IP is mobile or misattributed.
- Check DNS Hostname: Validate p5dc35ecc.dip0.t-ipconnect.de for any historical malicious activity.
- Watch for Subnet Changes: Since the subnet has no neighbors, isolate the IP if it exhibits unexpected behavior.
---
Conclusion: This IP poses no immediate threat but warrants monitoring for geolocation anomalies or unexpected network activity. No firewall rules or actions are recommended at this time.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | DTAG-NIC |
| ASN | AS3320 |
| Network Name | DTAG-DIAL25 |
| CIDR Block | 93.192.0.0/11 |
| RIR | RIPE |
| Country | DE |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | p5dc35ecc.dip0.t-ipconnect.de |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | p5dc35ecc.dip0.t-ipconnect.de |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Mobile |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 โ Basic operator with some routing infrastructure |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 13% | 1 | 1 |
| routing | 13% | 1 | 1 |
| services | 13% | 1 | 1 |
| ownership | 27% | 2 | 3 |
| reputation | 0% | 0 | 0 |
| geolocation | 13% | 1 | 1 |
| Overall | 13% | 6 | 7 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-26 06:51:58 UTC |
| Last Seen | 2026-06-11 04:28:18 UTC |
| Profile Built | 2026-06-11 04:38:09 UTC |
| Data Freshness | Live |
| Signal Types | 19 |
| Total Observations | 19 |
Full dossier details are available via our API.