INTELLIGENCE BRIEFING: 152.42.193.3
Classification: Moderate Risk (Score: 40)
Provider: DigitalOcean, LLC (ASN 14061)
Network: DO-13 / 152.42.128.0/17
Geolocation: Singapore (SG)
Infrastructure Type: CloudCompute / Virtual Private Server
---
**Executive Summary**
The target IP address 152.42.193.3 is hosted on DigitalOcean cloud infrastructure in Singapore with a moderate risk profile (score 40). The IP shows cloud compute characteristics with no detected open ports or active services. The address appears in 2 out of 8 DNSBL listings and exhibits routing instability. No direct threat indicators were identified, but the IP warrants monitoring due to cloud hosting nature and DNSBL presence.
---
**Risk Assessment**
- Overall Risk Score: 40/100 (Moderate)
- Provider Score: 0 (DigitalOcean)
- Authority Score: 0
- Stability Label: Not applicable
- Abuse Confidence: Not reported
- Campaign Association: No known campaigns correlated
---
**Network Profile**
| Attribute | Value |
|---|---|
| ASN | 14061 (DigitalOcean) |
| CIDR Block | 152.42.128.0/17 |
| Network Classification | CloudCompute |
| Is Cloud Infrastructure | Yes |
| Is CDN/Proxy/VPN/Tor | No |
| Is Hosting/Residential | No |
---
**Threat Indicators**
- DNSBL Listings: 2 of 8 total lists
- Blacklist Count: 0
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
- Known Campaigns: None detected
- Threat Feeds: No matches
---
**Observation History**
Analysis of 17 historical observations reveals:
- No persistent malicious activity detected
- Risk indicators show stability over time
- Operator score: 0.1304 (Minimal)
- Routing stability flagged as unstable
- Geo validation: ICMP blocked, unable to validate physical location
---
**Neighborhood Analysis**
- Subnet: 152.42.193.3/24
- Abuse Density: 0 (Clean)
- Active Siblings: 1
- Threat Siblings: 0
- Inherited Risk: 0
The immediate /24 neighborhood shows no abuse activity, indicating this IP operates in isolation within its subnet.
---
**Relationship Graph**
Seven relationship entries identified, all pointing to same network designation (DO-13). No external organization, hostname, or certificate relationships detected.
---
**Service Analysis**
- Open Ports: None detected
- TLS Certificate: Not detected
- HTTP Title: Not detected
- Hosted Domains: 0
- Reverse DNS: None
- Email Authentication: SPF/DMARC not configured (no email services detected)
---
**Recommended Security Actions**
The following rules are recommended for defensive infrastructure:
iptables:
```
iptables -A INPUT -s 152.42.193.3 -j DROP
```
nftables:
```
nft add rule inet filter input ip saddr 152.42.193.3 drop
```
nginx:
```
deny 152.42.193.3;
```
Cloudflare WAF:
```json
{
"description": "Block 152.42.193.3 β IPDebrief risk score 40",
"action": "block",
"filter": {
"expression": "ip.src eq 152.42.193.3"
}
}
```
AWS WAF:
```json
{
"Addresses": ["152.42.193.3/32"],
"Description": "IPDebrief risk 40"
}
```
---
**Analysis Notes**
The IP address 152.42.193.3 presents a moderate risk profile typical of cloud infrastructure. While no active threat indicators were observed, the presence in DNSBL listings and routing instability warrant continued monitoring. The clean neighborhood profile suggests this is not part of a coordinated abuse campaign. Recommended defensive posture: monitor inbound traffic patterns and consider blocking if suspicious behavior is observed.
Report Generated: 2026-08-13
Intel Source: IPDebrief Intelligence Platform
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | DigitalOcean, LLC |
| ASN | AS14061 |
| Network Name | DO-13 |
| CIDR Block | 152.42.128.0/17 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR Record | No PTR |
| Forward Confirmed | No β PTR hostname does not resolve back to this IP (weak signal) |
π DNS Hygiene
| Hygiene Score | 20% (Poor) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Not verified |
| DNSSEC | Valid |
| CAA | Not configured |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 24% | 2 | 2 |
| routing | 17% | 1 | 1 |
| services | 24% | 2 | 2 |
| ownership | 35% | 2 | 3 |
| reputation | 17% | 1 | 2 |
| geolocation | 35% | 2 | 3 |
| Overall | 25% | 10 | 13 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (50%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-08-05 18:27:50 UTC |
| Last Seen | 2026-08-13 07:50:55 UTC |
| Profile Built | 2026-08-13 08:02:36 UTC |
| Data Freshness | Live |
| Signal Types | 16 |
| Total Observations | 17 |
Full dossier details are available via our API.