IP Intelligence Briefing: 108.62.60.107
Date: 2026-06-08
---
**1. Risk Profile**
- Overall Risk: Moderate (Risk Score: 50/100)
- Provider: LeaseWeb USA, Inc. (Seattle, WA, US)
- Geolocation: Seattle, WA, US (plausible, ICMP blocked; 7,883 km from probe).
- Network Role: Firewalled infrastructure with no open services or TLS certificates.
---
**2. Threat Indicators**
- No Direct Threats: No malicious indicators (e.g., spam, Tor, known attackers).
- DNS & Services: No public DNS records, open ports, or active services detected.
- Abuse Context: Subnet 108.62.60.0/24 shows high abuse density (0.68), though the IP itself has no direct abuse signals.
---
**3. Network Relationships**
- Shared Network: Part of 108.62.56.0/21 (LeaseWeb subnet).
- Connected IPs: 100+ neighbors in the same /24 subnet.
- Risk Correlation: 174 of 256 siblings in the subnet are flagged as risky.
---
**4. Historical Observations**
- Signal Stability: Minimal risk (operator score: 0.2174) over 30 days.
- Key Metrics:
- DNSSEC valid, CAA records present.
- No recent threats, scans, or geolocation anomalies.
- ICMP blocked, limiting location validation.
---
**5. Recommended Actions**
- Monitor Subnet: High abuse density in the subnet suggests broader risk. Investigate neighboring IPs for potential compromise.
- Block IP (if unnecessary): Use firewall rules to restrict traffic to this IP.
- Example: `iptables -A INPUT -s 108.62.60.107 -j DROP`
- Verify Hosting Provider: Confirm LeaseWebβs compliance practices, as the IP is part of a shared infrastructure network.
- Enable Logging: Monitor for unexpected traffic patterns or DNS resolution attempts.
---
Conclusion:
The IP exhibits moderate risk due to its association with a high-abuse subnet. While no direct malicious activity is detected, the network context warrants closer scrutiny. Block the IP if it is not required for legitimate operations, and prioritize monitoring the broader subnet for potential threats.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | LeaseWeb USA, Inc. Seattle |
| ASN | AS396190 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown β Insufficient routing data to classify |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 26% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 20% | 2 | 3 |
| ownership | 20% | 2 | 3 |
| reputation | 28% | 1 | 3 |
| geolocation | 33% | 2 | 3 |
| Overall | 24% | 10 | 17 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-07 23:04:57 UTC |
| Last Seen | 2026-06-26 18:11:56 UTC |
| Profile Built | 2026-06-24 21:19:48 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 25 |
Full dossier details are available via our API.