IP Intelligence Briefing: 142.93.96.25/32
Date: 2026-06-13
---
**1. Core Profile**
- Risk Score: 30 (Low Risk)
- Provider: DigitalOcean, LLC (ASN 14061)
- Geolocation: Frankfurt am Main, Hesse, Germany (DE)
- Network Role: CloudCompute (DigitalOcean infrastructure)
- Services: HTTP, HTTPS, SSH, HTTPS-alt (port 8443). TLS certificate issued to `cloudpanel.clp`.
- Threat Indicators: No active malicious signals, no known attacker/spam source, no blacklist entries.
---
**2. Observation History**
- Recent Activity (2026-06-13):
- Threat Feed Listings: 1 high-severity listing (8 total feeds checked).
- Geolocation Inference: Confirmed Germany (51.17°N, 10.45°E) with 35% confidence.
- Network Stability: Minimal operator risk (score 0.13).
- Connection Attempts: 1 failed HTTPS connection (low confidence).
---
**3. Relationships**
- Network Affiliation: Part of `DIGITALOCEAN-142-93-0-0` subnet.
- No Direct Links: No associated domains, certificates, or organizations beyond DigitalOcean.
- Hosting: Likely a web server (nginx banner, HTTP services).
---
**4. Subnet Analysis**
- Subnet: 142.93.96.0/24
- Neighbor Risk:
- 142.93.96.111: Medium risk (score 50).
- 142.93.96.149: Low risk (score 0).
- Abuse Density: 0% (subnetwork classified as "mostly clean").
---
**5. Recommendations**
- Monitor Threat Feeds: Investigate the high-severity listing for potential false positives or emerging threats.
- Subnet Visibility: Track the medium-risk neighbor (142.93.96.111) for unusual activity.
- Network Segmentation: Ensure isolation between this server and other DigitalOcean instances to mitigate lateral movement risks.
- Certificate Validity: Verify the TLS certificate (`cloudpanel.clp`) for revoked or compromised status.
---
Conclusion: The IP is a low-risk DigitalOcean cloud server in Germany with no direct malicious indicators. However, the presence of a medium-risk neighbor and a high-severity threat feed listing warrants closer monitoring. No immediate action is required, but ongoing observation is advised.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | DigitalOcean, LLC |
| ASN | AS14061 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | ARIN |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | โ |
| 443 | https | tcp | โ |
| 22 | ssh | tcp | |
| 8443 | https-alt | tcp | โ |
| Closed Ports | 25, 3389, 8080 (4 open / 7 scanned) | ||
| Server | nginx |
| HTTP Title | โ |
| SSH Version | SSH-2.0-OpenSSH_9.6p1 Ubuntu-3ubuntu13 |
๐ TLS Certificate
CN=cloudpanel.clp was found on this IP. This may indicate a previously hosted website, a decommissioned service, or stale infrastructure.| SANs | cloudpanel.clpwww.cloudpanel.clp |
| Valid From | 2019-10-14T13:34:38+00:00 |
| Valid Until | 2020-10-13T13:34:38+00:00 (expired) |
| TLS Protocol | Tls13 |
| Cipher Suite | TLS_AES_256_GCM_SHA384 |
| Signature Algorithm | sha256RSA |
| Validity Period | 365 days |
| Serial Number | 00 |
| Thumbprint | 3BECE07FF14C8422E15E2D725E47F72289009311 |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 41% | 2 | 6 |
| routing | 8% | 1 | 1 |
| services | 28% | 2 | 3 |
| ownership | 24% | 2 | 3 |
| reputation | 26% | 1 | 3 |
| geolocation | 30% | 2 | 3 |
| Overall | 26% | 10 | 19 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-07 23:03:43 UTC |
| Last Seen | 2026-06-26 23:25:35 UTC |
| Profile Built | 2026-06-27 19:39:36 UTC |
| Data Freshness | Live |
| Signal Types | 23 |
| Total Observations | 31 |
Full dossier details are available via our API.