# IP Intelligence Briefing: 142.93.102.223
## Executive Summary
IP address 142.93.102.223 is classified as Low Risk with a risk score of 25/100. The address operates within DigitalOcean cloud infrastructure in Frankfurt am Main, Germany, and presents minimal threat characteristics. No active malicious indicators were observed.
## Infrastructure Profile
- Organization: DigitalOcean, LLC (ASN 14061)
- Network: 142.93.96.0/20 (CloudCompute infrastructure)
- Location: Frankfurt am Main, Germany (DE)
- Classification: Cloud hosting infrastructure with firewalled/no services detected
- DNS Status: No PTR records, no forward resolution, DNSSEC valid
## Threat Indicators
- Blacklist Status: Listed on 1 of 8 DNSBLs
- Known Campaigns: None detected
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
- Abuse Confidence Score: Not reported
- Recent Threat Observations: 1
## Network Behavior
- Service Exposure: No open ports detected (firewalled)
- HTTP Services: None identified
- TLS Certificates: None detected
- Reverse DNS: No PTR records
- Route Stability: Route changes observed in past 30 days
## Historical Observations
The IP has been observed 18 times since initial signal collection. Key temporal indicators:
- June 20, 2026: DNSSEC validation confirmed (confident: 90%)
- June 15, 2026: Operator score classified as "Minimal"
- June 9, 2026: DNSSEC validation failed in earlier observation
- Threat Persistence: 0 days of persistent malicious behavior
## Neighborhood Analysis
Within the 142.93.102.0/24 subnet:
- Abuse Density: 0%
- Classification: Mostly clean
- Total Siblings: 2
- Active Siblings: 2
- Threat Siblings: 1
- Neighbor IP: 142.93.102.96 (risk score: 25)
## Relationship Graph
The IP maintains 17 relationships, all classified as "Same Network" entries pointing to DIGITALOCEAN-142-93-0-0. No external organizational, hostname, or certificate relationships were identified.
## Recommended Actions
- Standard Monitoring: Continue baseline monitoring for cloud infrastructure
- Firewall Rules: No blocking required based on current risk profile
- Threat Hunting: Monitor for any emergence of service exposure or threat indicators
- Incident Response: Not recommended at this time
## SOC Analyst Notes
This IP address represents a legitimate cloud computing resource with minimal risk characteristics. The single DNSBL listing warrants periodic review but does not indicate immediate threat. The absence of open services suggests proper hardening of the infrastructure. Recommend continuing standard monitoring protocols for DigitalOcean cloud resources.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | DigitalOcean, LLC |
| ASN | AS14061 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | ARIN |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 46% | 2 | 7 |
| routing | 8% | 1 | 1 |
| services | 15% | 2 | 2 |
| ownership | 20% | 2 | 3 |
| reputation | 28% | 1 | 3 |
| geolocation | 25% | 2 | 2 |
| Overall | 24% | 10 | 18 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-21 14:56:13 UTC |
| Last Seen | 2026-06-28 13:34:37 UTC |
| Profile Built | 2026-06-29 07:39:21 UTC |
| Data Freshness | Live |
| Signal Types | 17 |
| Total Observations | 23 |
Full dossier details are available via our API.