IP Intelligence Briefing: 139.144.31.247
Date: June 14, 2026
---
**1. Core Profile**
- Risk Rating: Moderate Risk (Risk Score: 40)
- Provider: Linode (ASN: 63949)
- Geolocation: Atlanta, GA, US (Geoplausible: False)
- Network Role: Hosting Provider (Firewalled / No Services)
- Threat Indicators: No known malicious activity, no spam, no Tor exit node, no blacklist entries.
---
**2. Observation History**
- First Seen: June 5, 2026
- Last Seen: June 14, 2026
- Key Trends:
- Consistent "Basic" operator risk score (0.3043).
- Subnet abuse density: 85.71% (high abuse classification).
- No persistent malicious behavior detected.
---
**3. Relationships & Network**
- Linked Entities:
- Same network: LINODE (ASN 63949).
- Resolves to domain: `prod-barium-us-southeast-28.li.binaryedge.ninja` (likely hosting/CDN).
- Subnet: `139.144.31.247/24`
- Abuse Density: 85.71% (high risk).
- Threat Neighbors: 6/7 IPs in subnet show moderate risk.
---
**4. Neighbor Analysis**
- High-Risk Neighbors (40%):
- 139.144.31.44 (Risk: 40), 139.144.31.47 (Risk: 40), 139.144.31.174 (Risk: 40), 139.144.31.208 (Risk: 40).
- Low-Risk Neighbors: 139.144.31.96, 139.144.31.132.
- Subnet Classification: High abuse density; potential for lateral movement or shared hosting risks.
---
**5. Recommendations**
- Monitor Neighbors: Focus on high-risk neighbors (e.g., 139.144.31.44, 139.144.31.47) for anomalies.
- DNS Activity: Investigate DNS resolution to `binaryedge.ninja` to confirm legitimate hosting use.
- Network Segmentation: Consider isolating this subnet to mitigate potential lateral movement risks.
- Threat Feeds: Cross-reference with threat intelligence platforms to validate Linode IP reputation.
Note: No direct malicious indicators detected, but the subnet's high abuse density warrants closer scrutiny.
---
*Generated by IPDebrief Intelligence Platform*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Linode |
| ASN | AS63949 |
| Network Name | β |
| CIDR Block | 139.144.16.0/20 |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | prod-barium-us-southeast-28.li.binaryedge.ninja |
π DNS Hygiene
| Hygiene Score | 80% (Excellent) |
| SPF | Present |
| DMARC | Not configured |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 20% | 2 | 4 |
| routing | 20% | 2 | 3 |
| services | 12% | 2 | 2 |
| ownership | 24% | 3 | 4 |
| reputation | 24% | 1 | 3 |
| geolocation | 23% | 2 | 2 |
| Overall | 20% | 12 | 18 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-08 23:18:04 UTC |
| Last Seen | 2026-06-27 14:13:29 UTC |
| Profile Built | 2026-06-28 08:19:39 UTC |
| Data Freshness | Live |
| Signal Types | 27 |
| Total Observations | 32 |
Full dossier details are available via our API.