# IP Intelligence Briefing: 147.182.166.139/32
Classification: LOW RISK - Clean Infrastructure
Date: 2026-07-30
Prepared For: SOC Operations
---
## EXECUTIVE SUMMARY
IP address 147.182.166.139 is a DigitalOcean cloud compute infrastructure address with a low risk profile (Risk Score: 15). The IP operates in a clean subnet with zero abuse density and shows no active threat indicators. No open services or ports were detected during probing.
---
## OWNERSHIP & INFRASTRUCTURE
- Organization: DigitalOcean, LLC
- ASN: 14061
- Network Block: DIGITALOCEAN-147-182-128-0 (147.182.128.0/17)
- Location: New York, US (America/New_York timezone)
- Infrastructure Type: CloudCompute (Hosting Provider)
- Infrastructure Classification: Cloud-hosted
---
## RISK ASSESSMENT
| Metric | Value | Assessment |
|---|---|---|
| Risk Score | 15 | Low Risk |
| Reputation | Low Risk | Clean |
| Abuse Confidence | N/A | No abuse detected |
| Blacklist Count | 0 | Clean |
| Known Attacker | False | No malicious indicators |
| Tor Exit Node | False | Not a proxy |
| Spam Source | False | Not associated with spam |
Control Plane Analysis:
- BGP Prefix: 147.182.160.0/20
- Route Stability: Stable (0 route changes in 30d)
- RPKI State: Not applicable
- DNSBL Listed: 1 of 8 total lists
- Operator Score: 0.1304 (Minimal)
---
## NETWORK BEHAVIOR
- Open Ports: None detected (Firewalled / No Services)
- DNS Resolution: No PTR records, no forward resolution
- Email Authentication: Not configured (No SPF/DMARC)
- HTTP Services: None detected
- TLS Certificates: None
- Banner Analysis: No service banners observed
---
## OBSERVATION HISTORY (16 Signals)
Recent observations (2026-07-30) indicate:
- Port scanning conducted: No open ports detected
- Traceroute completed: 30 hops (20 timed out), transit via Comcast/Cogent
- Network classification: Clean
- Threat persistence: 0 days (no persistent malicious activity)
- Threat observation count: 0
Temporal Indicators:
- No ownership changes
- Not persistently malicious
- No correlated IPs to malicious campaigns
---
## SUBNET ANALYSIS (147.182.166.0/24)
- Abuse Density: 0 (Clean)
- Subnet Classification: Clean
- Inherited Risk: 0
- Total Siblings: 1
- Active Siblings: 1
- Threat Siblings: 0
- Risk Distribution: High: 0, Medium: 0, Low: 0
---
## RELATIONSHIP MAPPING
- Network Relationships: DIGITALOCEAN-147-182-128-0 (Same Network)
- External Relationships: None detected
- Organization Links: None
- Certificate Links: None
- Hostname Links: None
---
## ACTIONABLE INTELLIGENCE
Threat Level: LOW
Recommendation: No blocking required. IP is legitimate cloud infrastructure.
Firewall/Routing Guidance:
- Allow: Standard traffic permitted (no abuse indicators)
- Monitor: No specific indicators requiring alerting
- Block: N/A
SOC Alerting Considerations:
- No signature-based threats identified
- No reputation-based blacklisting
- No behavioral anomalies detected
- Network behavior consistent with legitimate cloud hosting
Additional Context:
The IP is part of DigitalOcean's cloud infrastructure, which is commonly used for legitimate web hosting, development environments, and enterprise services. The subnet shows zero abuse activity across all sibling addresses. The single DNSBL listing does not indicate active malicious use and may represent a benign listing or data artifact.
---
Sources: IPDebrief Intelligence Platform
Data Freshness: 2026-07-30T06:12:27 UTC
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | DigitalOcean, LLC |
| ASN | AS14061 |
| Network Name | DIGITALOCEAN-147-182-128-0 |
| CIDR Block | 147.182.128.0/17 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 49% | 2 | 5 |
| routing | 13% | 1 | 1 |
| services | 19% | 2 | 2 |
| ownership | 27% | 2 | 3 |
| reputation | 36% | 1 | 3 |
| geolocation | 17% | 1 | 1 |
| Overall | 27% | 9 | 15 |
| Data Coherence | Mostly Consistent (80%) β 1 contradiction(s) |
| Attribution | Low (35%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-07-26 03:08:30 UTC |
| Last Seen | 2026-08-12 20:04:57 UTC |
| Profile Built | 2026-08-12 20:12:18 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 23 |
Full dossier details are available via our API.