IP Address

89.213.174.87

IPv4 Public
RO RO
AS214209
Internet Magnate (Pty) Ltd
502 Reports
This IP is under Observation Suspicious activity detected - monitor closely
5/10 Threat
56% Confidence
502 Reports

Threat Intelligence Analysis

AI-generated security assessment based on aggregated threat data

Below Average Risk
RO
RO Location
Internet Magnate (Pty) Lt... ASN 214209
502 Reports
Honeypot Data Source

Intermediate Threat

IP 89.213.174.87 is a medium-risk address originating from Romania, AS214209 (Internet Magnate (Pty) Ltd), with a threat level of 5/10 assessed primarily through automated honeypot sensors that flagged 502 total reports concentrated on SMTP spam and email abuse activity during September 2025. Despite the moderate overall threat rating, the 56% confidence score and notably low 0/10 activity frequency indicate that this address's malicious behaviour appears to have largely subsided, with recent activity limited exclusively to email spam vectors detected across twenty distinct honeypot sensors.

The report corpus reveals a predominantly historical abuse pattern centred on email spam distribution. The 502 aggregate reports likely accumulated over an extended period, while the recent activity window shows only twenty confirmed Email Spam reports all logged within September 2025. This distribution suggests a single, concentrated campaign rather than sustained persistent abuse. The Romanian IP space allocation combined with a South African-registered network operator (Internet Magnate (Pty) Ltd) warrants attention, as this routing pattern is occasionally associated with bulletproof hosting arrangements or transient abuse infrastructure. The absence of additional threat categories beyond email spam indicates a narrowly focused malicious operation rather than a multi-vector threat actor.

Email spam infrastructure poses concrete risks to exposed mail servers, including reputation damage to legitimate sending domains, resource exhaustion from processing unwanted traffic, and potential payload delivery for phishing or malware distribution campaigns. Even dormant or reduced-activity spam sources remain dangerous because they can be reactivated, rented to different threat actors, or used as secondary infrastructure during larger campaigns. Organizations running publicly accessible SMTP servers without proper hardening face the greatest exposure to this classification of risk.

Site operators should implement layered email authentication protocols—SPF, DKIM, and DMARC—to validate incoming mail and prevent domain spoofing. Deploying reputable email filtering services with real-time blocklist integration will automatically reject connections from known spam sources. Configuring fail2ban or equivalent dynamic firewall rules to auto-ban IPs exceeding SMTP connection thresholds provides automated protection against similar scanning and relay attempts. Regular monitoring of mail server logs for connections originating from this address space, combined with proactive addition to internal blocklists, ensures residual risk remains minimal even if activity frequency increases in future reporting periods.

More threatening than 30% of monitored IPs

Threat Categories

Email Spam 30

Technical Details

Email spam involves mass distribution of unwanted emails, often for advertising, phishing, or malware delivery.

Recommended Mitigations

Implement SPF, DKIM, DMARC, and use reputable email filtering services.

Moderate Network Risk

The network hosting this IP (ASN 214209, operated by Internet Magnate (Pty) Ltd) shows moderate threat indicators. Some concerning activity has been detected from neighboring addresses.

Consider the network context when assessing this individual IP.

Security Recommendations

Continue monitoring for emerging patterns.

This analysis is automatically generated from aggregated, anonymized threat intelligence data. No personal information is displayed or stored. Assessment accuracy depends on available data volume and diversity.

Reputation Summary

Threat Level 5/10 Medium
Medium
Activity Frequency 0/10 Inactive
Confidence Score 55% High Confidence

Confidence History

16. Sep 2025 - 28. Sep 2025
56% Current
Stable Trend

The confidence score shows the reliability of the threat assessment based on the number and quality of reports.

Security Reports (30)

Date Categories Source Confidence
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%
Email Spam Honeypot 75%

Technical Details

Basic Information

IP Address
89.213.174.87
IP Version
IPv4
Network Type
Public
Tor Network
No
Network Class
Class A

Geolocation

Country
RO RO
ASN
AS214209
ISP
Internet Magnate (Pty) Ltd

DNS Information

Reverse DNS
None
PTR Record
No
Connection Type
Static

Statistics

Total Reports
502
First Reported
15 Sep 2025
Last Reported
28 Sep 2025, 14:05

Network Reputation

Analysis of the entire network (ASN) that this IP address belongs to, providing context about the hosting provider and network-wide threat patterns.

Network Identity

AS214209
Internet Magnate (Pty) Ltd
BG BG

Network Threat Assessment

4/10
This network has low threat indicators with minimal suspicious activity.

Network Statistics

29
Total IPs Monitored
3,317
Total Reports
114.4
Reports per IP

Network Context

This IP address belongs to Internet Magnate (Pty) Ltd (AS214209), which manages 29 IP addresses in our monitoring system. Out of these, 3,317 have been reported for suspicious activities, resulting in a network-wide threat level of 4/10.

Network notice: This network shows some suspicious activity patterns. Monitor interactions with IPs from this ASN.

Comparative Analysis

How this IP compares to others in our threat intelligence database

30 %

Global Threat Ranking

This IP is more threatening than 30% of all IPs in our database.

Below Average Threat

Global Comparison

Compared against 199,363 reported IPs worldwide

Threat Level 5/10 avg: 5.3 =
Total Reports 502 avg: 23 ++

Network Comparison

Compared against 39 IPs in ASN 214209

Threat Level 5/10 network avg: 6.8 -
Total Reports 502 network avg: 97 ++
Network Internet Magnate (Pty) Ltd has overall threat level 4/10

Geographic Comparison

Compared against 627 IPs in RO

Threat Level 5/10 country avg: 6.2 -
Total Reports 502 country avg: 259 ++
Indicators:
++ Much Higher + Higher = Similar - Lower -- Much Lower

Geographic Threat Distribution

187,017 threat incidents tracked globally • Last 24h: 18,967 Logs

FEED

Top Threat Sources

  1. 01
    US
    United States US
    38,426 20.5%
  2. 02
    IN
    India IN
    28,977 15.5%
  3. 03
    CN
    China CN
    26,016 13.9%
  4. 04
    BR
    Brazil BR
    10,249 5.5%
  5. 05
    DE
    Germany DE
    7,139 3.8%
  6. 06
    SG
    Singapore SG
    6,475 3.5%
  7. 07
    ID
    Indonesia ID
    5,533 3%
  8. 08
    RU
    Russia RU
    4,701 2.5%
  9. 09
    PK
    Pakistan PK
    4,647 2.5%
  10. 10
    NL
    Netherlands NL
    4,355 2.3%

+40 more countries

THREAT LEVEL
LOW MED HIGH

Geographic data is aggregated and anonymized. No personal information displayed.

Map: simplemaps.com (MIT License)

Related IPs

Other IPs associated with this address through network or behavioral similarity

IPs from the same Autonomous System (AS) network provider.

20 Related IPs
8.5/10 Avg Threat
66% Avg Confidence
16 High Threat
High-risk network: Majority of related IPs are flagged

Export & Firewall Rules

Download threat data or generate firewall rules to block this IP

JSON Report

Structured data format for integration with security tools and SIEM systems.

{
    "ip_address": "89.213.174.87",
    "threat_level": 5,
    "confidence_score": 56,
    "total_reports": 502,
    "country_code": "RO",
    "isp_name": "Internet Magnate (Pty) Ltd",
    "asn": "214209",
    "first_reported": "2025-09-15 06:23:54",
    "last_reported": "2025-09-28 14:05:56",
    "exported_at": "2026-06-09T08:07:46+02:00",
    "source": "https://reportedip.de/ip/89.213.174.87/"
}

GDPR Compliant: Exports contain only IP-related threat data. No personal information or reporter details are included.