# IP INTELLIGENCE BRIEFING
Target IP: 129.212.236.215/32
Date: 2026-06-22
Classification: Low Risk / Cloud Infrastructure
## Executive Summary
IP address 129.212.236.215 is a DigitalOcean cloud compute instance located in Singapore. The IP demonstrates low-risk characteristics with a risk score of 25. Historical analysis indicates declining threat activity over the observation period, with the subnet classification shifting from "mostly_clean" (abuse density 0.5) to "clean" (abuse density 0).
## Ownership and Infrastructure
- Organization: DigitalOcean, LLC (ASN 14061)
- Geolocation: Singapore (1.35°N, 103.82°E)
- Network Block: 129.212.224.0/20
- Infrastructure Type: Cloud Compute (Multi-Service Host)
- Control Plane: BGP prefix 129.212.224.0/20, route stable, operator score 0.2609
## Network Services and Fingerprints
- Open Ports: TCP/80 (HTTP), TCP/22 (SSH)
- Server Banner: nginx/1.24.0 (Ubuntu)
- Server Fingerprint: LiteSpeed (HTTP header analysis)
- Status Code: 302 (Redirect)
- Response Time: 480ms average TTFB
## DNS and Domain Activity
- PTR Hostname: copa-928.club
- Forward Resolution: copa-928.club (1 reverse DNS record)
- Email Authentication: No SPF, DMARC, or TXT records configured
- DNSBL Listings: 1 of 8 lists (dnsblListedCount: 1)
## Threat Indicators
- Risk Score: 25 (Low Risk)
- Threat Indicators: None detected
- Known Campaigns: None
- Tor Exit Node: No
- Spam Source: No
- Known Attacker: No
## Neighborhood Analysis
Subnet 129.212.236.0/24 contains 2 active siblings:
- 129.212.236.215: Risk Score 25 (Low Risk)
- 129.212.236.209: Risk Score 50 (Moderate Risk)
- Subnet Abuse Density: 0 (Clean classification)
- Threat Siblings: 0
The neighboring IP (129.212.236.209) shows moderate risk with no open services and is classified as "firewalled / no services."
## Historical Observations
31 total observations tracked. Notable temporal trends:
- 2026-06-18: Classification "mostly_clean," abuse density 0.5, 1 threat sibling observed
- 2026-06-22: Classification "clean," abuse density 0, no threat siblings
Risk trajectory demonstrates decreasing threat activity over the observation window.
## Network Relationships
47 identified relationships, predominantly network-level associations with DIGITALOCEAN-129-212-128-0. No certificate-based or hostname-based relationships detected.
## Recommended Actions
No immediate firewall or mitigation actions recommended. The IP's low-risk profile (score 25) and clean classification support continued monitoring without blocking. Standard organizational policies for cloud infrastructure apply.
---
Analyst Notes: This IP represents legitimate cloud infrastructure on the DigitalOcean platform. The associated domain copa-928.club requires continued monitoring for domain reputation changes. The neighbor IP 129.212.236.209 warrants separate review due to elevated risk scoring (50) and lack of service activity.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | DigitalOcean, LLC |
| ASN | AS14061 |
| Network Name | β |
| CIDR Block | 129.212.224.0/20 |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | copa-928.club |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
| Forward Hostnames | copa-928.club |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Multi-Service Host |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | β |
| 22 | ssh | tcp | |
| Closed Ports | 25, 443, 3389, 8080, 8443 (2 open / 7 scanned) | ||
| Server | nginx/1.24.0 (Ubuntu) |
| HTTP Title | β |
| SSH Version | SSH-2.0-OpenSSH_9.6p1 Ubuntu-3ubuntu13.16 |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 24% | 2 | 4 |
| routing | 20% | 2 | 3 |
| services | 31% | 2 | 5 |
| ownership | 22% | 3 | 4 |
| reputation | 26% | 1 | 3 |
| geolocation | 35% | 2 | 3 |
| Overall | 26% | 12 | 22 |
| Data Coherence | Mostly Consistent (80%) β 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-07 23:03:39 UTC |
| Last Seen | 2026-06-26 22:09:02 UTC |
| Profile Built | 2026-06-27 18:21:15 UTC |
| Data Freshness | Live |
| Signal Types | 26 |
| Total Observations | 36 |
Full dossier details are available via our API.