# IP Intelligence Briefing: 15.204.212.99/32
## Executive Summary
IP address 15.204.212.99 is a low-risk infrastructure endpoint hosted by OVH US LLC. The IP demonstrates cloud-hosted characteristics with no active threat indicators, no blacklist associations, and no malicious campaign correlations. Neighborhood analysis shows clean subnet classification with zero abuse density.
## Infrastructure Profile
- Organization: OVH US LLC (ASN 16276)
- Network Block: 15.204.212.0/24
- Infrastructure Type: Cloud Compute (OVH hosting infrastructure)
- Geolocation: Virginia, United States
- Registration: ARIN RIR
## Risk Assessment
- Overall Risk Score: 25 (Low Risk)
- Abuse Confidence: Not elevated
- Blacklist Status: 0 blacklists
- Known Attacker: False
- Spam Source: False
- Tor Exit Node: False
## Network Services
- Port 80/TCP: HTTP service operational
- Port 22/TCP: SSH service (OpenSSH 8.0)
- HTTP Status: 404 Not Found
- TLS Certificate: None observed
## DNS Analysis
- PTR Record: ns1019421.ip-15-204-212.us
- Forward Resolution: Confirmed
- Hosted Domain: ip-15-204-212.us
- DNSBL Listings: 1 of 8 lists flagged
## Control Plane Intelligence
- BGP Prefix: 15.204.128.0/17
- Route Stability: Not stable
- Operator Score: 0.2609 (Basic)
- RPKI/IRR: No anomalies detected
## Neighborhood Analysis
- Subnet: 15.204.212.0/24
- Abuse Density: 0 (Clean)
- Threat Siblings: 0
- Active Siblings: 0
- Classification: Clean
## Historical Observations
- Total Observations: 23 signals
- Recent Activity: June 2026
- Threat Persistence: None
- Campaign Likelihood: None
- Observation Pattern: Consistent HTTP 404 responses with 57ms TTFB
## Related Entities
- DNS Associations: ns1019421.ip-15-204-212.us
- Network Context: SD-VIN-V100A03-MAGGIE-INFRA-002 (OVH infrastructure)
## Recommended Actions
No immediate security actions required. IP demonstrates standard cloud-hosted infrastructure behavior with no malicious indicators. Routine monitoring recommended for cloud hosting environments.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | OVH US LLC |
| ASN | AS16276 |
| Network Name | SD-VIN-V100A03-MAGGIE-INFRA-002 |
| CIDR Block | 15.204.212.0/24 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | ns1019421.ip-15-204-212.us |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | ns1019421.ip-15-204-212.us |
π DNS Hygiene
| Hygiene Score | 60% (Good) |
| SPF | Present |
| DMARC | Not configured |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Multi-Service Host |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | β |
| 22 | ssh | tcp | |
| Closed Ports | 25, 443, 3389, 8080, 8443 (2 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
| SSH Version | SSH-2.0-OpenSSH_8.0 |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 35% | 2 | 3 |
| routing | 17% | 1 | 1 |
| services | 35% | 2 | 3 |
| ownership | 35% | 2 | 3 |
| reputation | 17% | 1 | 2 |
| geolocation | 17% | 1 | 1 |
| Overall | 26% | 9 | 13 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-06-09 14:17:28 UTC |
| Last Seen | 2026-06-21 16:14:01 UTC |
| Profile Built | 2026-06-21 16:22:03 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 25 |
Full dossier details are available via our API.