## IP Intelligence Briefing: 108.62.63.48
Executive Summary
IP 108.62.63.48 is assigned to LeaseWeb USA, Inc. Seattle (ASN 396190) with a moderate risk score of 50. The address shows no active services but resides in a high-abuse density subnet (108.62.63.0/24) with 66% abuse density and 169 threat-identified sibling IPs among 176 active neighbors. The IP is listed on 2 of 8 DNSBLs and exhibits routing instability.
Ownership and Geolocation
- Organization: LeaseWeb USA, Inc. Seattle
- ASN: 396190
- Location: Seattle, Washington, US (3865.3 km from validation point)
- Registration: ARIN RIR
- BGP Prefix: 108.62.56.0/21
Network Activity and Services
- Service Status: Firewalled / No Services detected
- Open Ports: None detected
- DNS Resolution: No PTR hostnames; forward resolution failed
- Email Reputation: No SPF/DMARC records configured
- TLS/Certificates: None observed
Threat Indicators
- DNSBL Listings: 2 of 8 total blacklists
- Known Threats: Not identified as known attacker, Tor exit, or spam source
- Campaign Correlation: No matches to known campaigns
- Threat Persistence: 0 days (not persistently malicious)
Neighborhood Context
The /24 subnet (108.62.63.0/24) exhibits high abuse classification:
- Abuse Density: 0.6602 (high)
- Risk Distribution: 99 medium-risk, 1 low-risk, 0 high-risk neighbors
- Threat Siblings: 169 of 176 active IPs flagged as threats
- Inherited Risk: Score of 26 from neighborhood context
Observation History
27 total observations recorded. Recent operator scores consistently show "Minimal" classification (0.1304). Geolocation signals show moderate confidence (0.35) with US-based location. No significant escalation in threat profile detected.
Recommendations
1. Monitor Closely: IP resides in high-abuse subnet with 66% abuse density
2. Block if Untrusted: Consider blocking at edge if not expected traffic pattern
3. Monitor DNSBL Status: IP listed on 2 DNSBLs; monitor for list growth
4. Subnet-Level Assessment: 169 threat siblings suggest broader abuse campaign may be active
5. Review Routing: Route instability (isRouteStable: false) warrants attention for potential BGP hijack attempts
Actionable Firewall Rules
```
# Block by IP if not expected
iptables -A INPUT -s 108.62.63.48 -j DROP
# Consider subnet-wide caution
iptables -A INPUT -s 108.62.63.0/24 -j LOG --log-prefix "HIGH-RISK-SUBNET: "
```
---
*Report generated via IPDebrief Intelligence Platform. Data current as of 2026-06-24.*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | LeaseWeb USA, Inc. Seattle |
| ASN | AS396190 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Unknown |
| Service Purpose | Firewalled / No Services |
| Network Tier | Unknown β Insufficient routing data to classify |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 23% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 12% | 2 | 2 |
| ownership | 20% | 2 | 3 |
| reputation | 26% | 1 | 3 |
| geolocation | 28% | 2 | 3 |
| Overall | 19% | 10 | 16 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-07 23:05:00 UTC |
| Last Seen | 2026-06-26 18:11:59 UTC |
| Profile Built | 2026-06-26 22:46:44 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 24 |
Full dossier details are available via our API.