# IP Intelligence Briefing: 139.162.58.106
## Executive Summary
IP address 139.162.58.106 presents a moderate risk profile (Score: 40) associated with Linode cloud infrastructure in Singapore. The IP is currently classified as a Single-Service Host with SSH service exposure. No active threat indicators, known campaigns, or malicious activity patterns were detected.
---
## Technical Profile
Infrastructure Classification:
- Organization: Linode LLC (ASN 63949)
- Network Block: 139.162.0.0/16 (EU-LINODE-20141229)
- Infrastructure Type: Cloud Compute (Linode hosting)
- Location: Singapore, SG
Network Services:
- Open Ports: TCP/22 (SSH - OpenSSH 9.9)
- DNS Resolution: 139-162-58-106.ip.linodeusercontent.com (forward confirmed)
- HTTP/HTTPS: No web services detected
Control Plane Status:
- Operator Score: 0.2609 (Basic)
- DNSBL Listings: 2 of 8 total lists
- Route Stability: False
- RPKI/IRR Consistency: Not evaluated
---
## Threat Assessment
Current Risk Level: Moderate (40/100)
Threat Indicators:
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
- Blacklist Count: 0
- Known Campaigns: None
Historical Activity:
- Total Observations: 21 signals recorded
- Observation Period: Through August 2026
- Recent Classification: Basic operator classification
- Geolocation Consistency: Consistent Singapore assignment
- Subnet Classification: Clean (abuse density: 0)
Neighborhood Analysis:
- Subnet: 139.162.58.106/24
- Abusive Neighbors: 0
- Threat Siblings: 0
- Overall Subnet Classification: Clean
---
## Recommended Actions
Blocking Rules Available:
| System | Rule |
|---|---|
| iptables | `iptables -A INPUT -s 139.162.58.106 -j DROP` |
| nftables | `nft add rule inet filter input ip saddr 139.162.58.106 drop` |
| nginx | `deny 139.162.58.106;` |
| pfSense | `139.162.58.106/32` |
| Cloudflare WAF | Block IP with expression `ip.src eq 139.162.58.106` |
| AWS WAF | Add IP 139.162.58.106/32 to blacklist |
Risk Mitigation Notes:
- IP operates on cloud infrastructure with standard SSH exposure
- No malicious indicators or campaign associations detected
- Consider context-dependent blocking based on observed inbound/outbound traffic patterns
- Monitor for changes in SSH connection patterns or service availability
---
## Intelligence Conclusion
The IP address 139.162.58.106 is a Linode cloud compute instance with moderate risk classification. While no active threat indicators were observed, the moderate risk score warrants monitoring. The IP shows no evidence of malicious activity, but its SSH service exposure and cloud hosting nature suggest potential for abuse. Implement blocking rules if inbound connections from this IP are not required for business operations.
*Report generated: Intelligence analysis based on IPDebrief data as of August 2026.*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | linode-mnt |
| ASN | AS63949 |
| Network Name | EU-LINODE-20141229 |
| CIDR Block | 139.162.0.0/16 |
| RIR | ARIN |
| Country | US |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | 139-162-58-106.ip.linodeusercontent.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | 139-162-58-106.ip.linodeusercontent.com |
π DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Single-Service Host |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 22 | ssh | tcp | |
| Closed Ports | 25, 80, 443, 3389, 8080, 8443 (1 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
| SSH Version | SSH-2.0-OpenSSH_9.9 |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 24% | 2 | 2 |
| routing | 17% | 1 | 1 |
| services | 24% | 2 | 2 |
| ownership | 35% | 2 | 3 |
| reputation | 17% | 1 | 2 |
| geolocation | 35% | 2 | 3 |
| Overall | 25% | 10 | 13 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-08-02 23:09:54 UTC |
| Last Seen | 2026-08-13 04:11:46 UTC |
| Profile Built | 2026-08-13 04:26:39 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 23 |
Full dossier details are available via our API.