# IP Intelligence Briefing: 139.162.4.102/32
## Executive Summary
IP 139.162.4.102 operates as a cloud hosting infrastructure node within the Linode provider network in Singapore. The asset presents a low risk profile with a risk score of 25. No active threat indicators, malicious campaigns, or persistent malicious behavior were observed. The IP maintains standard web server functionality with HTTP/HTTPS services and valid TLS certificate configuration.
## Technical Profile
Classification: Cloud Compute Infrastructure
Provider: Linode (ASN 63949)
Geolocation: Singapore (SG) - Coordinates: 1.35, 103.82
Network Role: Web Server/Hosting Platform
Infrastructure Type: CloudCompute
CIDR Block: 139.162.0.0/19
DNS Resolution:
- PTR Hostname: node270.myfcloudsg.com
- Forward Resolution: myfcloudsg.com
- DNSSEC: Valid
- SPF Record: Present (v=spf1 include:spf.efwd.registrar-servers.com ~all)
- DMARC Record: Absent
Open Ports & Services:
- Port 80/TCP: HTTP (Apache)
- Port 443/TCP: HTTPS (Apache)
- HTTP Version: 2.0
- TLS Certificate: Let's Encrypt (R12), Subject: CN=prsmarket.site
## Threat Assessment
Overall Risk Score: 25 (Low Risk)
Abuse Confidence Score: Null (No malicious activity detected)
Blacklist Status: Not listed on major blacklists (0 blacklists)
DNSBL Listings: 1 out of 8 total lists (minor listing)
Known Campaign Associations: None detected
Tor/Proxy/VPN Status: Not a Tor exit node, proxy, or VPN service
Is Known Attacker: False
Is Spam Source: False
Temporal Analysis:
- Threat Observation Count: 1 (single historical observation)
- Is Persistently Malicious: False
- Ownership Changes: 0 (stable ownership record)
## Network Environment & Neighborhood
Subnet: 139.162.4.102/24
Abuse Density: 1 (Low)
Subnet Classification: mostly_clean
Total Sibling IPs: 1
Active Sibling IPs: 1
Threat Sibling IPs: 1
The immediate /24 neighborhood shows minimal abuse concentration. One threat sibling was observed within the subnet, indicating potential for related malicious activity from neighboring addresses.
## Relationship Graph
Total Relationships Identified: 53
Primary Associations:
- DNS associations with node270.myfcloudsg.com
- Network connections to LINODE-AP infrastructure
- Multiple Same Network relationships within Linode provider network
## Control Plane Analysis
BGP Prefix: 139.162.0.0/19
Route Stability: Unstable (route changes observed in last 30 days)
RPKI State: Not validated
IRR Consistency: Not validated
Operator Score: 0.2609 (Basic)
## Geolocation Validation
Geo Plausibility: True
Claimed vs Observed Distance: 10,382.9 km
Minimum Possible RTT: 207.7ms
Observed RTT: 249.6ms (average)
Probe Count: 5
Violation Status: None
## Historical Observations
Total Observations: 22 signals recorded
Most Recent: 2026-06-25T08:15:43+00:00
Key Historical Signals:
- SPF record configuration observed with registrar-servers.com include
- Multiple DNS hostname resolutions for myfcloudsg.com and prsmarket.site
- Consistent Singapore geolocation across all observations
- HTTP 2.0 with Apache server fingerprint maintained
## Recommended Actions
Current Recommendations: None required
Risk Level: Low - Standard monitoring sufficient
Firewall Rules: No blocking recommendations based on current threat profile
The IP address 139.162.4.102 represents a legitimate cloud hosting infrastructure component with no evidence of malicious activity. The single DNSBL listing warrants periodic verification but does not indicate immediate threat. Standard logging and monitoring practices are recommended for compliance and forensic readiness. No blocking or mitigation actions are advised at this time.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Linode Abuse Support |
| ASN | AS63949 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | node270.myfcloudsg.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | node270.myfcloudsg.com |
π DNS Hygiene
| Hygiene Score | 60% (Good) |
| SPF | 1/2 domains |
| DMARC | 0/2 domains |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
| Domains Checked | 2 domains |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | β |
| 443 | https | tcp | β |
| Closed Ports | 22, 25, 3389, 8080, 8443 (2 open / 7 scanned) | ||
| Server | Apache |
| HTTP Title | β |
π TLS Certificate
| SANs | prsmarket.site |
| Valid From | 2026-05-01T15:47:37+00:00 |
| Valid Until | 2026-07-30T15:47:36+00:00 |
| TLS Protocol | Tls13 |
| Cipher Suite | TLS_AES_256_GCM_SHA384 |
| Signature Algorithm | sha256RSA |
| Validity Period | 89 days |
| Serial Number | 06763077B64247523BAC4423948079E19C90 |
| Thumbprint | A3A149955C635E29D03C756BB2AE38657F23C9EF |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 26% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 25% | 2 | 3 |
| ownership | 20% | 2 | 3 |
| reputation | 28% | 1 | 3 |
| geolocation | 31% | 2 | 3 |
| Overall | 24% | 10 | 17 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-08 17:17:35 UTC |
| Last Seen | 2026-06-27 13:29:34 UTC |
| Profile Built | 2026-06-28 07:35:06 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 28 |
Full dossier details are available via our API.