IP Address

89.213.174.78

IPv4 Public
RO RO
AS214209
Internet Magnate (Pty) Ltd
498 Reports
This IP is under Observation Suspicious activity detected - monitor closely
5/10 Threat
56% Confidence
498 Reports

Threat Intelligence Analysis

AI-generated security assessment based on aggregated threat data

Below Average Risk
RO
RO Location
Internet Magnate (Pty) Lt... ASN 214209
498 Reports
Honeypot Data Source

Moderate Risk

IP 89.213.174.78, registered in Romania and routed through AS214209 under the network operator Internet Magnate (Pty) Ltd, represents a medium-risk address with a threat level of 5 out of 10 based on 498 total abuse reports. The dominant threat category identified across recent reports is email spam, with all 20 most recent reports attributed to automated honeypot sensors. Despite the moderate threat classification, the IP's activity frequency scores 0 out of 10, indicating that malicious operations have been sporadic or largely ceased since the September 2025 reporting window. The moderate confidence score of 56% suggests some ambiguity in attributing all observed behavior exclusively to this address.

The detection data reveals that 498 community and sensor reports have been filed against 89.213.174.78, with the most recent submissions concentrated in a single-month window during September 2025. All 20 of the most recent threat reports specifically cite email spam activity, pointing to a focused campaign rather than diversified attack types. Automated honeypot sensors placed across multiple vantage points captured SMTP abuse patterns consistent with mass unsolicited email distribution. The discrepancy between the high total report count and the narrow recent activity window may indicate either legacy reports from prior months or a recent escalation that triggered renewed sensor attention.

Email spam represents one of the most prevalent threats in network abuse ecosystems, serving as a delivery mechanism for phishing payloads, credential-harvesting schemes, and malware distribution. Even a sporadic spam operation can cause significant downstream damage if recipients receive convincing lures. The SMTP abuse patterns observed from 89.213.174.78 suggest the address has been used to relay or originate bulk commercial email, potentially in violation of carrier acceptable-use policies. For organizations with publicly exposed mail servers or directory services, such addresses warrant inclusion in blocklists and real-time traffic monitoring to prevent inbound spam from reaching end users.

Network administrators should implement layered defenses to mitigate risks associated with this IP and similar sources. Enforcing strict SMTP authentication mechanisms such as SPF, DKIM, and DMARC protocols substantially reduces the effectiveness of email spoofing and unauthorized relay attempts. Deploying reputation-based filtering that blocks or rate-limits traffic from addresses with established abuse histories provides an additional protective barrier. Tools such as fail2ban can automatically update firewall rules to drop connections from offending IPs after configurable threshold violations. Continuous monitoring of inbound email volumes and implementing anomaly detection alerts ensures rapid identification of renewed spam campaigns originating from addresses such as 89.213.174.78.

More threatening than 29% of monitored IPs

Threat Categories

Email Spam 30

Technical Details

Email spam involves mass distribution of unwanted emails, often for advertising, phishing, or malware delivery.

Recommended Mitigations

Implement SPF, DKIM, DMARC, and use reputable email filtering services.

Moderate Network Risk

The network hosting this IP (ASN 214209, operated by Internet Magnate (Pty) Ltd) shows moderate threat indicators. Some concerning activity has been detected from neighboring addresses.

Consider the network context when assessing this individual IP.

Security Recommendations

Continue monitoring for emerging patterns.

This analysis is automatically generated from aggregated, anonymized threat intelligence data. No personal information is displayed or stored. Assessment accuracy depends on available data volume and diversity.

Reputation Summary

Threat Level 5/10 Medium
Medium
Activity Frequency 0/10 Inactive
Confidence Score 55% High Confidence

Confidence History

16. Sep 2025 - 28. Sep 2025
56% Current
Stable Trend

The confidence score shows the reliability of the threat assessment based on the number and quality of reports.

Security Reports (30)

Date Categories Source Confidence
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%

Technical Details

Basic Information

IP Address
89.213.174.78
IP Version
IPv4
Network Type
Public
Tor Network
No
Network Class
Class A

Geolocation

Country
RO RO
ASN
AS214209
ISP
Internet Magnate (Pty) Ltd

DNS Information

Reverse DNS
None
PTR Record
No
Connection Type
Static

Statistics

Total Reports
498
First Reported
15 Sep 2025
Last Reported
28 Sep 2025, 14:24

Network Reputation

Analysis of the entire network (ASN) that this IP address belongs to, providing context about the hosting provider and network-wide threat patterns.

Network Identity

AS214209
Internet Magnate (Pty) Ltd
BG BG

Network Threat Assessment

4/10
This network has low threat indicators with minimal suspicious activity.

Network Statistics

29
Total IPs Monitored
3,317
Total Reports
114.4
Reports per IP

Network Context

This IP address belongs to Internet Magnate (Pty) Ltd (AS214209), which manages 29 IP addresses in our monitoring system. Out of these, 3,317 have been reported for suspicious activities, resulting in a network-wide threat level of 4/10.

Network notice: This network shows some suspicious activity patterns. Monitor interactions with IPs from this ASN.

Comparative Analysis

How this IP compares to others in our threat intelligence database

29 %

Global Threat Ranking

This IP is more threatening than 29% of all IPs in our database.

Below Average Threat

Global Comparison

Compared against 199,804 reported IPs worldwide

Threat Level 5/10 avg: 5.3 =
Total Reports 498 avg: 23 ++

Network Comparison

Compared against 39 IPs in ASN 214209

Threat Level 5/10 network avg: 6.8 -
Total Reports 498 network avg: 97 ++
Network Internet Magnate (Pty) Ltd has overall threat level 4/10

Geographic Comparison

Compared against 627 IPs in RO

Threat Level 5/10 country avg: 6.2 -
Total Reports 498 country avg: 259 ++
Indicators:
++ Much Higher + Higher = Similar - Lower -- Much Lower

Geographic Threat Distribution

187,517 threat incidents tracked globally • Last 24h: 19,025 Logs

FEED

Top Threat Sources

  1. 01
    US
    United States US
    38,480 20.5%
  2. 02
    IN
    India IN
    29,193 15.6%
  3. 03
    CN
    China CN
    26,035 13.9%
  4. 04
    BR
    Brazil BR
    10,259 5.5%
  5. 05
    DE
    Germany DE
    7,146 3.8%
  6. 06
    SG
    Singapore SG
    6,479 3.5%
  7. 07
    ID
    Indonesia ID
    5,557 3%
  8. 08
    RU
    Russia RU
    4,707 2.5%
  9. 09
    PK
    Pakistan PK
    4,689 2.5%
  10. 10
    NL
    Netherlands NL
    4,361 2.3%

+40 more countries

THREAT LEVEL
LOW MED HIGH

Geographic data is aggregated and anonymized. No personal information displayed.

Map: simplemaps.com (MIT License)

Related IPs

Other IPs associated with this address through network or behavioral similarity

IPs from the same Autonomous System (AS) network provider.

20 Related IPs
8.5/10 Avg Threat
66% Avg Confidence
16 High Threat
High-risk network: Majority of related IPs are flagged

Export & Firewall Rules

Download threat data or generate firewall rules to block this IP

JSON Report

Structured data format for integration with security tools and SIEM systems.

{
    "ip_address": "89.213.174.78",
    "threat_level": 5,
    "confidence_score": 56,
    "total_reports": 498,
    "country_code": "RO",
    "isp_name": "Internet Magnate (Pty) Ltd",
    "asn": "214209",
    "first_reported": "2025-09-15 06:23:09",
    "last_reported": "2025-09-28 14:24:03",
    "exported_at": "2026-06-09T11:35:13+02:00",
    "source": "https://reportedip.de/ip/89.213.174.78/"
}

GDPR Compliant: Exports contain only IP-related threat data. No personal information or reporter details are included.