IPDebrief

107.170.65.169

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# INTELLIGENCE BRIEFING: 107.170.65.169/32

Classification: High Risk | Date: June 26, 2026 | Source: IPDebrief Intelligence Platform

---

## EXECUTIVE SUMMARY

Target IP 107.170.65.169 operates on DigitalOcean cloud infrastructure in the United States with an elevated risk profile (80/100). The address is DNSBL-listed across 4 of 8 threat feeds and requires defensive monitoring despite showing no direct malicious indicators.

---

## OWNERSHIP & INFRASTRUCTURE

AttributeValue
**ASN**14061 (DigitalOcean, LLC)
**RIR**ARIN
**Geolocation**New York, NY, US
**Infrastructure Type**CloudCompute
**Network Role**Multi-Service Host, Cloud Provider

The IP resides within the 107.170.0.0/17 BGP prefix under DigitalOcean's control plane. Route stability is confirmed with 4,987 days of delegation history.

---

## THREAT PROFILE

Risk Assessment: 80/100 (High Risk)

Threat Indicators:

Control Plane Analysis:

---

## NETWORK BEHAVIOR

Open Services:

DNS Configuration:

HTTP Fingerprint:

---

## TEMPORAL ANALYSIS

Observation History: 27 signals recorded

The IP shows no persistent malicious behavior across the observation window. Recent signals indicate standard hosting activity with HTTP redirects.

---

## NEIGHBORHOOD ANALYSIS

Subnet: 107.170.65.169/24

The /24 subnet demonstrates clean neighborhood characteristics with no inherited risk signals from adjacent addresses.

---

## RELATIONSHIP MAPPING

Identified Associations:

---

## RECOMMENDED ACTIONS

Immediate Mitigation:

```bash

# iptables

iptables -A INPUT -s 107.170.65.169 -j DROP

# nftables

nft add rule inet filter input ip saddr 107.170.65.169 drop

```

WAF Configuration:

Monitoring Enhancement:

---

## INTELLIGENCE JUDGMENT

While the IP lacks direct malicious indicators (Tor, known attacker, spam source), the elevated risk score (80/100) and multiple DNSBL listings warrant defensive posture. The DigitalOcean hosting context combined with the suspicious domain association (tidalcoinage.internet-measurement.com) suggests potential abuse infrastructure. Recommend blocking at perimeter and enhanced logging for correlation analysis.

Confidence Level: High | Action Priority: Critical

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΊπŸ‡Έ United States
RegionNY
CityNew York
Timezoneβ€”
Latitude40.79
Longitude-74.06

🏒 Ownership & Registration

OrganizationDigitalOcean, LLC
ASNAS14061
Network Nameβ€”
CIDR Block107.170.0.0/17
RIRARIN
Countryβ€”
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR136cc241.tidalcoinage.internet-measurement.com
Forward ConfirmedYes β€” FCrDNS verified
Forward Hostnames136cc241.tidalcoinage.internet-measurement.com

πŸ” DNS Hygiene

Hygiene Score80% (Excellent)
SPFPresent
DMARCPresent
FCrDNSVerified
DNSSECValid
CAANot configured

☁️ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeMulti-Service Host
Network TierHosting β€” Infrastructure provider without advanced routing
CloudHosting

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
80httptcpβ€”
22sshtcp
Closed Ports25, 443, 3389, 8080, 8443 (2 open / 7 scanned)
Serverβ€”
HTTP Titleβ€”
SSH VersionSSH-2.0-OpenSSH_9.6p1 Ubuntu-3ubuntu13.16

πŸ” TLS Certificate

πŸ”’
No certificate
Issued by β€”
N/A
SANsNone
Valid Fromβ€”
Valid Untilβ€”

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
24%
24
routing
20%
23
services
25%
24
ownership
22%
34
reputation
26%
13
geolocation
25%
22
Overall24%1220
Coverage: 6/6 dimensions Β· Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (70%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-05-07 23:03:29 UTC
Last Seen2026-06-26 22:03:03 UTC
Profile Built2026-06-27 18:15:28 UTC
Data FreshnessLive
Signal Types25
Total Observations31
πŸ” 25 signal types Β· 31 observations collected
This report is generated from 25+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.