## IP Intelligence Briefing: 134.199.152.230/32
Classification: Low Risk | Timestamp: 2026-06-18
Executive Summary
IP address 134.199.152.230 is a DigitalOcean cloud compute instance located in Sydney, Australia (AS14061). The IP presents a low-risk profile with a reputation score of 25. No active threat indicators, blacklist entries, or open services were observed. The IP is part of a cloud hosting infrastructure with minimal operator activity scores.
Technical Profile
- Organization: DigitalOcean, LLC (ASN 14061)
- Geolocation: Sydney, NSW, Australia (AU)
- Infrastructure Type: CloudCompute / Hosting
- Service Status: Firewalled / No Services (no open ports)
- DNS: No PTR records, no forward resolution
- Network Role: Cloud infrastructure with no CDN, VPN, or proxy indicators
Threat Indicators
- Risk Score: 25 (Low Risk)
- Blacklist Count: 0
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
- Campaign Associations: None detected
- Threat Persistence: Not persistently malicious (threat observation count: 1)
Observational History
The IP has been observed 22 times across the monitoring period. Key observations include:
- Consistent operator score of 0.1304 (labeled "Minimal")
- Geographic signals consistently indicating AU location
- Routing stability: BGP prefix 134.199.144.0/20 (not route-stable)
- Recent observations from 2026-06-17 to 2026-06-18
Network Neighborhood
- Subnet: 134.199.152.24/24
- Abuse Density: 1 (low)
- Classification: Mostly clean
- Active Siblings: 1
- Threat Siblings: 1 (single threat indicator in neighborhood)
- Neighbor Risk Distribution: High: 0, Medium: 0, Low: 0
Control Plane Analysis
- Origin ASN: 14061 (DigitalOcean)
- BGP Prefix: 134.199.144.0/20
- Route Stability: False (changes detected)
- Route Changes (30d): 0
- RPKI State: Not validated
- DNSSEC: Valid
Recommendations for SOC Analysts
1. Traffic Handling: Monitor but no immediate blocking required. Low-risk profile.
2. Alerting: No specific alert thresholds recommended for this IP.
3. Investigation: Only warranted if this IP appears in incident logs or correlation data.
4. Firewall Rules: No specific rules required based on current risk profile.
Conclusion
This IP represents legitimate cloud infrastructure with minimal threat indicators. The single threat sibling in the neighborhood warrants awareness but does not elevate the risk profile of this specific address. Continue standard monitoring protocols.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | DigitalOcean, LLC |
| ASN | AS14061 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | ARIN |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 42% | 2 | 6 |
| routing | 8% | 1 | 1 |
| services | 15% | 2 | 2 |
| ownership | 24% | 2 | 3 |
| reputation | 26% | 1 | 3 |
| geolocation | 21% | 2 | 2 |
| Overall | 23% | 10 | 17 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-07 23:03:39 UTC |
| Last Seen | 2026-06-26 22:17:35 UTC |
| Profile Built | 2026-06-27 18:31:28 UTC |
| Data Freshness | Live |
| Signal Types | 19 |
| Total Observations | 28 |
Full dossier details are available via our API.