# IP Intelligence Briefing: 147.135.210.141
## Executive Summary
IP address 147.135.210.141 is a low-risk (score: 25/100) cloud compute VPS hosted by OVH Sp. z o. o. in Wroclaw, Poland. The IP exhibits no malicious indicators but shows evidence of hosting the domain cymcac.playem.io via a Let's Encrypt TLS certificate. No immediate threat action is required based on current data.
## Profile Overview
- Risk Score: 25 (Low Risk)
- Provider: OVH Sp. z o. o. (ASN 16276)
- Location: Wroclaw, Lower Silesia, Poland (Europe/Warsaw)
- Infrastructure Type: Cloud Compute (VPS)
- Classification: Cloud Hosting Provider
- Stability: Stable ownership with no recent changes
## Network Services & Fingerprinting
- Open Ports: TCP/80 (HTTP), TCP/443 (HTTPS), TCP/22 (SSH)
- Web Server: nginx/1.26.3 (Ubuntu)
- TLS Certificate: Let's Encrypt, subject: cymcac.playem.io, issuer: YE1
- Email Authentication: SPF and DMARC records present
- PTR Hostname: vps-f187c9ed.vps.ovh.net
## Threat Indicators
- Blacklist Status: Listed on 1 of 8 DNSBLs checked
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
- Malicious Campaigns: None detected
- Abuse Confidence Score: Not applicable
## Historical Observations
Analysis of 21 historical observations indicates stable behavior with consistent "mostly_clean" classification. Recent scans (2026-06-20) show:
- HTTP response time: 528ms
- Status code: 200
- TLS protocol: TLS 1.3
- SSH version: OpenSSH_9.9p1 Ubuntu-3ubuntu3.2
## Network Relationships
- DNS Associations: vps-f187c9ed.vps.ovh.net
- Same Network: VPS-OVH subnet
- Related Domains: playem.io
## Neighborhood Analysis
Subnet 147.135.210.0/24 shows:
- Abuse Density: Low (1.0)
- Classification: Mostly clean
- Total Siblings: 1
- Active Siblings: 1
- Threat Siblings: 1
## Security Recommendations
Current risk assessment does not warrant immediate blocking. The IP operates as a legitimate cloud VPS with standard web hosting services. Monitor for any changes in:
- TLS certificate validity
- DNSBL listing status
- Neighborhood abuse density trends
Action: No immediate action required. Standard monitoring protocols apply.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | OVH Sp. z o. o. |
| ASN | AS16276 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | ARIN |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | vps-f187c9ed.vps.ovh.net |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | vps-f187c9ed.vps.ovh.net |
๐ DNS Hygiene
| Hygiene Score | 80% (Excellent) |
| SPF | 1/2 domains |
| DMARC | 1/2 domains |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
| Domains Checked | 2 domains |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | โ |
| 443 | https | tcp | โ |
| 22 | ssh | tcp | |
| Closed Ports | 25, 3389, 8080, 8443 (3 open / 7 scanned) | ||
| Server | nginx/1.26.3 (Ubuntu) |
| HTTP Title | โ |
| SSH Version | SSH-2.0-OpenSSH_9.9p1 Ubuntu-3ubuntu3.2 |
๐ TLS Certificate
| SANs | cymcac.playem.io |
| Valid From | 2026-06-10T16:59:18+00:00 |
| Valid Until | 2026-09-08T16:59:17+00:00 |
| TLS Protocol | Tls13 |
| Cipher Suite | TLS_AES_256_GCM_SHA384 |
| Signature Algorithm | sha384ECDSA |
| Validity Period | 89 days |
| Serial Number | 0538331BD3A5A393F95592125FC803194A0F |
| Thumbprint | 5C2D37F26A7EFBD3EC0FB71E93FA8E5A78381842 |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 29% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 30% | 2 | 3 |
| ownership | 24% | 2 | 3 |
| reputation | 26% | 1 | 3 |
| geolocation | 33% | 2 | 3 |
| Overall | 26% | 10 | 17 |
| Data Coherence | Mostly Consistent (80%) โ 1 contradiction(s) |
| Attribution | Moderate (55%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-17 21:14:17 UTC |
| Last Seen | 2026-06-28 05:43:48 UTC |
| Profile Built | 2026-06-28 23:48:49 UTC |
| Data Freshness | Live |
| Signal Types | 23 |
| Total Observations | 27 |
Full dossier details are available via our API.