## INTELLIGENCE BRIEFING: 134.209.250.75
Classification: Moderate Risk / Cloud Infrastructure
Risk Score: 55/100
Status: Active / Requires Monitoring
Ownership & Infrastructure
The target IP belongs to DigitalOcean, LLC (ASN 14061) within the DIGITALOCEAN-134-209-0-0/16 block. Classification confirms cloud compute infrastructure with hosting capabilities enabled. No CDN, proxy, VPN, or residential indicators detected.
Geolocation Data
Primary geolocation data indicates US origin with Frankfurt am Main coordinates. Multiple geolocation sources confirm US country code (geoConsensus: true). Network routing shows 19-hop path with Comcast as transit network.
Threat Assessment
Threat indicators show no known attacker status, no Tor exit node association, and no spam source designation. DNSBL listing count of 3 out of 8 total lists indicates minor reputation concerns. No active campaigns or threat feed correlations identified. Control plane analysis shows minimal operator score (0.1304) with stable route delegation.
Network Neighborhood
Subnet analysis for 134.209.250.0/24 classifies as "clean" with zero abuse density. No active sibling threats detected within the /24 subnet.
Historical Observations
Analysis of 17 historical observations reveals consistent network presence with recent activity showing minimal risk indicators. Most recent observations (2026-06-21) indicate minimal operator risk scores and stable ownership patterns. No persistent malicious behavior detected over the observation period.
Services & DNS
No open ports detected on the target IP. DNS infrastructure shows no PTR hostnames, no forward resolution, and zero hosted domains. TLS certificates and HTTP banners unavailable for fingerprinting.
Recommended Actions
Priority: High
Recommendation: Increase logging verbosity and review recent activity from this IP address.
Firewall Rules (Block if required):
- iptables: `iptables -A INPUT -s 134.209.250.75 -j DROP`
- nftables: `nft add rule inet filter input ip saddr 134.209.250.75 drop`
- nginx: `deny 134.209.250.75;`
- Cloudflare WAF: Block with description "IPDebrief risk score 55"
- AWS WAF: Add address 134.209.250.75/32 with description "IPDebrief risk 55"
Summary
This DigitalOcean cloud compute IP presents moderate risk (55/100) with no confirmed malicious activity. The subnet environment is clean with no correlated threats. Recommended approach is enhanced monitoring rather than immediate blocking unless additional suspicious activity is observed from this source.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | DigitalOcean, LLC |
| ASN | AS14061 |
| Network Name | DIGITALOCEAN-134-209-0-0 |
| CIDR Block | 134.209.0.0/16 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 24% | 2 | 2 |
| routing | 17% | 1 | 1 |
| services | 17% | 1 | 1 |
| ownership | 35% | 2 | 3 |
| reputation | 17% | 1 | 2 |
| geolocation | 35% | 2 | 3 |
| Overall | 24% | 9 | 12 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Fresh
| First Seen | 2026-06-09 20:26:29 UTC |
| Last Seen | 2026-06-26 18:10:35 UTC |
| Profile Built | 2026-06-26 21:41:25 UTC |
| Data Freshness | Fresh |
| Signal Types | 17 |
| Total Observations | 18 |
Full dossier details are available via our API.