# THREAT INTELLIGENCE BRIEFING
Target IP: 152.228.135.87/32
Date: 2026-06-15
Classification: Low Risk / Cloud Infrastructure
---
## EXECUTIVE SUMMARY
IP 152.228.135.87 presents a low-risk profile (Risk Score: 25) and is classified as cloud compute infrastructure hosted by OVH SAS. The address shows no evidence of malicious activity, blacklist listings, or peer-related threats. Network environment is clean with no active sibling threats detected.
---
## OWNERSHIP & GEOLOCATION
| Attribute | Value |
|---|---|
| **ISP/Provider** | OVH SAS (ASN 16276) |
| **Country** | France (FR) |
| **Region** | Europe/Paris |
| **CIDR Block** | 152.228.128.0/17 |
| **Infrastructure Type** | Cloud Compute (VPS) |
| **PTR Hostname** | vps-916a681c.vps.ovh.net |
---
## THREAT ASSESSMENT
- Risk Score: 25/100 (Low Risk)
- Blacklist Count: 0
- Known Campaigns: None detected
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
- Abuse Confidence Score: Not applicable
Network Classification Flags:
- Cloud Infrastructure: โ
- CDN: โ
- VPN: โ
- Proxy: โ
- Tor: โ
- Hosting: โ
- Mobile: โ
- Residential: โ
---
## NETWORK SERVICES & PORTS
- Open Ports: None detected
- TLS Certificate: Not detected
- HTTP Service: No active HTTP banner
- Fingerprint: No distinctive server signature
---
## OBSERVATION HISTORY
Total Signals: 17 observations
Most Recent Activity: 2026-06-15
Key historical signals include:
- DNSSEC and operator validation assessments (June 15, 2026)
- Geolocation validation with 500km accuracy radius
- RTT measurements: avg 110.4ms, min 107ms, max 116ms
- No threat persistence indicators
- Ownership stability: No changes detected
---
## RELATIONSHIP ANALYSIS
Associated Entities: 32 records
- DNS Associations: vps-916a681c.vps.ovh.net
- Network Associations: VPS-SBG6 subnet
Relationship graph shows standard OVH VPS infrastructure patterns with no anomalous connections to known malicious infrastructure.
---
## NEIGHBORHOOD ANALYSIS
Subnet: 152.228.135.87/24
- Abuse Density: 0 (Clean)
- Classification: Clean
- Threat Siblings: 0
- Active Siblings: 0
---
## SECURITY RECOMMENDATIONS
Action: Monitor / Allow based on risk profile
- No immediate blocking required
- Standard logging recommended for cloud VPS traffic
- No specific firewall rules generated due to low-risk classification
- Continue routine traffic monitoring
---
## ANALYST NOTES
This IP represents standard OVH cloud hosting infrastructure. The clean neighborhood profile, absence of blacklist listings, and lack of open services indicate legitimate VPS usage. No correlation with active threat campaigns or malicious peer infrastructure. SOC teams may treat as benign with standard logging practices.
Confidence Level: High
Data Sources: IPDebrief Intelligence Platform
Last Updated: 2026-06-15
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | OVH SAS |
| ASN | AS16276 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | ARIN |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | vps-916a681c.vps.ovh.net |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | vps-916a681c.vps.ovh.net |
๐ DNS Hygiene
| Hygiene Score | 80% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Not configured |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 34% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 8% | 1 | 1 |
| ownership | 24% | 2 | 3 |
| reputation | 32% | 1 | 3 |
| geolocation | 33% | 2 | 3 |
| Overall | 24% | 9 | 14 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-23 18:28:49 UTC |
| Last Seen | 2026-06-28 22:32:49 UTC |
| Profile Built | 2026-06-29 04:36:15 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 22 |
Full dossier details are available via our API.