IPDebrief

108.62.57.119

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP Intelligence Briefing: 108.62.57.119/32

## Executive Summary

IP address 108.62.57.119 is registered to LeaseWeb USA, Inc. Seattle (ASN 396190) and presents a moderate risk profile with a risk score of 65. The IP is located in Seattle, Washington, USA, and is associated with the 3e.vc domain. Despite no active services detected, the IP demonstrates significant neighborhood abuse density and multiple blacklist listings, indicating infrastructure-level risk.

## Risk Assessment

MetricValueClassification
Risk Score65Moderate Risk
Provider Score0N/A
Authority Score0N/A
Abuse ConfidenceN/AN/A
Operator Score0.4783Basic

The IP is classified as "Firewalled / No Services" with zero open ports detected. No TLS certificates or HTTP responses were observed during scanning.

## Network Infrastructure

Ownership & Registration:

Geolocation:

Control Plane:

## Threat Indicators

Blacklist Status:

Threat Classification:

Abuse Context:

## Relationship Analysis

The IP has 62 documented relationships, primarily indicating same-network associations with the 108-62-56-0 network prefix. These relationships suggest the IP operates within a shared hosting or cloud infrastructure environment typical of LeaseWeb's service model.

## Observation History

Analysis of 24 historical observations reveals:

Temporal analysis indicates no persistent malicious behavior pattern, with threat observation count at 1 and threat persistence days at 0.

## Neighborhood Analysis

The /24 subnet (108.62.57.0/24) was analyzed with 100 neighbor IPs:

Risk LevelCountPercentage
High00%
Medium9999%
Low11%

The subnet demonstrates a 0.7656 abuse density with 174 active siblings and 196 threat siblings, indicating systemic infrastructure abuse patterns within the /24 block.

## Recommended Actions

Based on the risk profile and neighborhood context, the following firewall rules are recommended:

1. Default Deny Policy: Consider blocking inbound traffic from this IP range at perimeter firewalls

2. Monitoring: Add to SIEM alerting for any outbound connections to/from this IP

3. Rate Limiting: Implement connection rate limiting to mitigate potential abuse

4. Block List Integration: Add IP to organizational block lists given multiple blacklist listings

## Intelligence Conclusion

IP 108.62.57.119 presents moderate risk primarily due to neighborhood-level abuse patterns rather than direct malicious activity. The high abuse density of the parent subnet (0.7656) and 77% threat sibling ratio suggest this IP may be co-located with compromised infrastructure. While the IP itself shows no active services or direct threat indicators, the organizational risk warrants defensive controls and monitoring.

Threat Level: Moderate

Priority: Monitor

Recommended Action: Implement filtering and monitoring controls

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΊπŸ‡Έ United States
RegionWA
CitySeattle
Timezoneβ€”
Latitude47.61
Longitude-122.33

🏒 Ownership & Registration

OrganizationLeaseWeb USA, Inc. Seattle
ASNAS396190
Network Nameβ€”
CIDR Block108.62.56.0/21
RIRARIN
Countryβ€”
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR108.62.57.119.rdns.3e.vc
Forward ConfirmedNo β€” PTR hostname does not resolve back to this IP (weak signal)
Forward Hostnames108.62.57.119.rdns.3e.vc

πŸ” DNS Hygiene

Hygiene Score40% (Fair)
SPFNot configured
DMARCNot configured
FCrDNSNot verified
DNSSECValid
CAAPresent

☁️ Network Classification

InfrastructureUnknown
Service PurposeFirewalled / No Services
Network TierTier 3 β€” Basic operator with some routing infrastructure
No specific classification

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Serverβ€”
HTTP Titleβ€”

πŸ” TLS Certificate

πŸ”’
No certificate
Issued by β€”
N/A
SANsNone
Valid Fromβ€”
Valid Untilβ€”

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
33%
23
routing
24%
23
services
8%
11
ownership
27%
34
reputation
31%
13
geolocation
27%
23
Overall25%1117
Coverage: 6/6 dimensions Β· Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (50%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-05-07 23:04:53 UTC
Last Seen2026-06-26 18:11:53 UTC
Profile Built2026-06-24 19:12:47 UTC
Data FreshnessLive
Signal Types24
Total Observations27
πŸ” 24 signal types Β· 27 observations collected
This report is generated from 24+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.