# Threat Intelligence Briefing: 143.110.180.186/32
Classification: Low Risk Cloud Infrastructure
Date: June 2026
Analyst: IPDebrief Intelligence Team
## Executive Summary
IP 143.110.180.186/32 operates as a cloud-hosted web server on DigitalOcean infrastructure with a low-risk profile. The IP exhibits standard web hosting behavior with no active threat indicators or malicious campaigns.
## Infrastructure Profile
Network: 143.110.180.186/32 (DigitalOcean, LLC, ASN 14061)
Location: Bengaluru, India (IN)
Infrastructure Type: CloudCompute (DigitalOcean)
Risk Score: 25/100 (Low Risk)
The IP resolved as a cloud infrastructure host with nginx/1.24.0 web server running on Ubuntu. The TLS certificate issued by Let's Encrypt (CN=E7, O=Let's Encrypt, C=US) authenticated the domain control.synngular.com. Open ports include HTTP (80), HTTPS (443), and SSH (22).
## Security Observations
Email Authentication: SPF record present; DMARC configuration absent.
DNSBL Status: Listed on 1 of 8 threat feeds; classified as "Minimal" risk.
Route Stability: BGP route (143.110.176.0/20) marked as unstable.
Reputation: No active threat indicators; not flagged as Tor exit node, known attacker, spam source, or proxy.
## Historical Analysis
Observation history captured 22 signals over the monitoring period. Recent activity confirmed consistent cloud infrastructure classification. Geolocation validation encountered ICMP blocking, though multi-signal inference supported Bengaluru positioning. HTTP fingerprinting identified Express.js-based application stack.
## Network Relationships
Relationship graph identified 14 connections to DigitalOcean network DIGITALOCEAN-143-110-128-0. All relationships classified as "Same Network" with no external entity associations.
## Neighborhood Assessment
Subnet 143.110.180.186/24 classification: "mostly_clean" with abuse density of 1. The subnet contains 1 threat sibling among 1 total active sibling IPs.
## Recommended Actions
- Firewall: Allow standard web traffic (ports 80, 443); restrict SSH (port 22) to authorized IPs only
- Monitoring: No immediate blocking required; maintain baseline logging
- Certificate: Verify Let's Encrypt certificate validity for control.synngular.com
- DNSBL: Review single blacklist listing; confirm legitimacy if legitimate traffic blocked
## Conclusion
IP 143.110.180.186/32 represents legitimate cloud infrastructure with no evidence of malicious activity. Standard web hosting operations observed. Continue routine monitoring with current allow policies, implementing source-based SSH restrictions.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | DigitalOcean, LLC |
| ASN | AS14061 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | ARIN |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No โ PTR hostname does not resolve back to this IP (weak signal) |
๐ DNS Hygiene
| Hygiene Score | 40% (Fair) |
| SPF | Present |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | โ |
| 443 | https | tcp | โ |
| 22 | ssh | tcp | |
| Closed Ports | 25, 3389, 8080, 8443 (3 open / 7 scanned) | ||
| Server | nginx/1.24.0 (Ubuntu) |
| HTTP Title | โ |
| SSH Version | SSH-2.0-OpenSSH_9.6p1 Ubuntu-3ubuntu13.16 |
๐ TLS Certificate
| SANs | control.synngular.com |
| Valid From | 2026-05-05T09:58:54+00:00 |
| Valid Until | 2026-08-03T09:58:53+00:00 |
| TLS Protocol | Tls13 |
| Cipher Suite | TLS_AES_256_GCM_SHA384 |
| Signature Algorithm | sha384ECDSA |
| Validity Period | 89 days |
| Serial Number | 068C5EB01C92B205B4C7842895C880D92C13 |
| Thumbprint | 79324018BEA28823BDAC9064449655EBB9CD6C21 |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 30% | 2 | 3 |
| ownership | 24% | 2 | 3 |
| reputation | 26% | 1 | 3 |
| geolocation | 33% | 2 | 3 |
| Overall | 25% | 10 | 17 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-19 21:39:12 UTC |
| Last Seen | 2026-06-28 09:38:07 UTC |
| Profile Built | 2026-06-29 03:43:35 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 25 |
Full dossier details are available via our API.