Threat Intelligence Briefing: IP 134.209.40.147/32
1. Core Profile
- Risk Rating: Low Risk (Risk Score: 25)
- Ownership: Owned by DigitalOcean, LLC (AS14061).
- Geolocation: New Jersey, US (Clifton).
- Network Role: Cloud-hosted web server (HTTPS on port 443).
- Certificate: Issued to *malcontent.nss.volexity.com* by NSS.VOLEXITY.COM.
2. Threat Indicators
- No malicious indicators detected (no malware, phishing, or C2 activity).
- No DNSBL listings, spam, or known attacker associations.
- BGP stability: Route stability score indicates minimal routing changes.
3. Historical Observations
- Single observation from June 2, 2026:
- HTTP/1.1 service with status code 200.
- DNSSEC validation passed.
- No signs of recent compromise or anomalous behavior.
4. Network Relationships
- Part of DigitalOceanβs 134.209.0.0/20 subnet.
- Linked to NSS.VOLEXITY.COM via TLS certificate.
- No peer IPs or subnets flagged for abuse.
5. Subnet Context
- /24 Subnet: 134.209.40.0/24.
- Abuse Density: 0% (clean subnet).
- Neighbors: No active sibling IPs detected (likely a small or static subnet).
6. Recommendations
- Monitor: Track certificate validity and ensure *malcontent.nss.volexity.com* is legitimate.
- Firewall: Allow HTTPS traffic (port 443) with strict TLS policies.
- Verify: Confirm NSS.VOLEXITY.COMβs legitimacy, as the certificate domain name suggests potential misconfiguration or spoofing.
Conclusion:
This IP is a low-risk, cloud-hosted web server with no malicious indicators. While the certificateβs domain name (*malcontent.nss.volexity.com*) raises minor concerns, no direct threats are detected. Continue monitoring for unexpected changes in service behavior or certificate validity.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | DigitalOcean, LLC |
| ASN | AS14061 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 60% (Good) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 443 | https | tcp | β |
| Closed Ports | 22, 25, 80, 3389, 8080, 8443 (1 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | malcontent.nss.volexity.com |
| Valid From | 2026-05-12T13:57:33+00:00 |
| Valid Until | 2028-05-12T13:57:33+00:00 |
| TLS Protocol | Tls13 |
| Cipher Suite | TLS_AES_256_GCM_SHA384 |
| Signature Algorithm | sha256RSA |
| Validity Period | 731 days |
| Serial Number | 0298405693 |
| Thumbprint | 6F5C4D53C802B031A5BCFECBC5AE3FBC5ED7B2C1 |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 28% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 28% | 2 | 3 |
| ownership | 24% | 2 | 3 |
| reputation | 26% | 1 | 3 |
| geolocation | 32% | 2 | 3 |
| Overall | 24% | 10 | 17 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-07 23:03:39 UTC |
| Last Seen | 2026-06-26 22:20:17 UTC |
| Profile Built | 2026-06-27 18:33:43 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 28 |
Full dossier details are available via our API.